Tech, AI & Cyber

Technology, AI & Cyber Law

Guidance on AI, SaaS, cybersecurity, and emerging technologies.

Technology outpaces regulation — and getting caught on the wrong side is expensive. We advise on AI governance, SaaS product terms, cyber incident response, IT Act obligations, and CERT-In directions so you can ship fast without legal exposure.

Scope of work

  • AI governance frameworks, model cards, and use-case risk classification
  • SaaS terms of service, acceptable use, and DPA suite
  • IT Act compliance — intermediary obligations, grievance officer, takedowns
  • CERT-In directions — logging, retention, and 6-hour incident reporting
  • Cyber incident response — breach notifications and regulator liaison
  • eCommerce Rules, consumer protection, and dark-pattern advisory

Deliverables

  • AI governance policy and product-launch review
  • SaaS ToS, DPA, and acceptable-use policy
  • IT Act compliance pack including grievance mechanism
  • Incident response playbook with contact tree

Timeline

  1. 01. Diagnostic

    Week 1

    Map products, data flows, and regulatory touchpoints.

  2. 02. Documentation

    Week 2–4

    Deploy policies, contracts, and playbooks.

  3. 03. Retainer

    Ongoing

    Ad-hoc queries, launch reviews, and incident support.

Timelines are indicative. Regulatory processing times and third-party responses may vary.

Frequently asked questions

Do you review AI features before launch?

Yes — we run pre-launch risk reviews covering IP, privacy, IT Act, and consumer-protection exposure for AI features.

What are CERT-In reporting timelines?

Cyber incidents must be reported to CERT-In within 6 hours of noticing. We build the playbook, template, and escalation tree.

Do you help with US and EU tech regulations?

Yes — including CCPA, GDPR, EU AI Act, and DSA — through our cross-border network.

Explore adjacent workstreams we handle under the same single-window engagement.

Ready to get started?

Book a consultation with Vrushali Borade to discuss your requirements and get a fixed-scope proposal.