Skip to main content

Govt unveils draft security rules for e wallet firms

The Centre has releasedaset of draft guidelines for digital wallet companies as part of its efforts to promote electronic payments while ensuring the security of transactions.

The Ministry of Electronics and Information Technology issued on Wednesday the draft Information Technology (Security of Prepaid Payment Instruments) Rules 2017 for public consultation, and will take suggestions until March 20.

The draft rules underline security parameters that digital wallet companies, such as Paytm, FreeCharge and Mobikwik, will have to follow.

They also stipulate standards for data protection and customer grievance redressal.

Every prepaid payment instrument (PPI), or digital wallet, has been asked to developasecurity policy based on the rules and standards set by the government.

“Every ePPI issuer shall review the security measures at least onceayear, and after any major security incident or breach or beforeamajor change to its infrastructure or procedures,” read the draft rules.

Besides, the rules also mandate that digital wallets identify and authenticate every customer at the time of issuance, and adopt twofactor authentication for transactions.

The government may by notification “exempt” digital wallets from requiring twofactor authentication in specific use cases.

The regulations could hurt wallet companies, as one of their biggest advantages over traditional credit and debit cards is the seamlessness of transactions in the absence of multiplefactor authentication.

However, like the Reserve Bank of India rules for exempting smallvalue card transactions from multiplefactor authentication, digital wallets could enjoy the same treatment.

Moreover, wallets will now have to disclose the kind of information they are collecting from customers and with whom they are sharing such information, and will be allowed to store it only foraperiod specified by the government.

This data will also have to be encrypted endtoend in order to safeguard customer data, especially financial data, such as bank balances.

“Every ePPI issuer shall adopt security measures to protect the security, confidentiality and integrity of the personal information…(and) shall contractually require merchants handling any authentication data to have security measures in place to protect such data,” the rules say.

While the draft rules have been long awaited by digital wallet companies, experts say the guidelines could put extra pressure on such firms which have so far enjoyedafree run.

If the final government rules are heavy handed, it could take away some of the advantage these firms have had over traditional banks.
Business Standard N ew Delhi,10th March 2017

Comments

Popular posts from this blog

Credit card spending growth declines on RBI gaze, stress build-up

  Credit card spends have further slowed down to 16.6 per cent in the current financial year (FY25), following the Reserve Bank of India’s tightening of unsecured lending norms and rising delinquencies, and increased stress in the portfolio.Typically, during the festival season (September–December), credit card spends peak as several credit card-issuing banks offer discounts and cashbacks on e-commerce and other platforms. This is a reversal of trend in the past three financial years stretching to FY21 due to RBI’s restrictions.In the previous financial year (FY24), credit card spends rose by 27.8 per cent, but were low compared to FY23 which surged by 47.5 per cent. In FY22, the spending increased 54.1 per cent, according to data compiled by Macquarie Research.ICICI Bank recorded 4.4 per cent gross credit losses in its FY24 credit card portfolio as against 3.2 per cent year-on-year. SBI Cards’ credit losses in the segment stood at 7.4 per cent in FY24 and 6.2 per cent in FY23, the...

SFBs should be vigilant, proactive to mitigate risks: RBI deputy guv

  The Reserve Bank of India’s Deputy Governor Swaminathan J on Friday instructed the directors of small finance banks (SFBs) to be vigilant and proactive in identifying emerging risks in the sector.Speaking at a conference for directors on the boards of SFBs, Swaminathan highlighted the role of governance in guiding SFBs towards sustainable growth with stability. He also emphasised the importance of sustainable business models.Additionally, he highlighted the need for strengthening cybersecurity to protect the entities against digital threats and urged for a stronger focus on financial inclusion, customer service, and grievance redressal to ensure a broader reach of banking services.Executive Directors S C Murmu, Rohit Jain, and R L K Rao, along with other senior officials representing the Supervision, Regulation, and Enforcement Departments of the RBI, also participated in the conference.   -  Business Standard  30 th  September, 2024

Brigade Hotel Ventures files draft papers with Sebi for Rs 900 crore IPO

  Brigade Hotel Ventures Ltd, owner and developer of hotels in South India, has filed draft papers with capital markets regulator Sebi to raise Rs 900 crore through an initial public offering (IPO).The proposed IPO is entirely a fresh issue of equity shares with no Offer-for-Sale (OFS) component, according to the draft red herring prospectus (DRHP).Proceeds from the issue to the tune of Rs 481 crore will go towards payment of debt, Rs 412 crore will be allocated to the company and Rs 69 crore to its material subsidiary, SRP Prosperita Hotel Ventures Ltd.Additionally, Rs 107.52 crore will be used to purchase an undivided share of land from the Promoter, BEL, and the remaining funds will support acquisitions, other strategic initiatives, and general corporate purposes.The company may raise up to Rs 180 crore through a Pre-IPO Placement.   If the placement is undertaken, the issue size will be reduced.Brigade Hotel Ventures Ltd is a wholly-owned subsidiary of Brigade Enterprises ...