Create a bespoke document in minutes, Â or upload and review your own.
Get your first 2 documents free
Your data doesn't train Genie's AI
You keep IP ownership of your information
Data Controller To Data Controller Agreement
"I need a Data Controller to Data Controller Agreement for my healthcare technology company sharing patient diagnostic data with a research institution in Mumbai, with specific provisions for handling sensitive medical information and compliance with healthcare sector regulations in India."
1. Parties: Identification of the data controllers entering into the agreement, including their registered addresses and company details
2. Background: Context of the data sharing relationship and purpose of the agreement
3. Definitions: Detailed definitions of key terms used in the agreement, including technical terms and those defined under Indian law
4. Scope and Purpose: Detailed description of the data sharing arrangement and legitimate purposes for data processing
5. Roles and Responsibilities: Specific obligations of each controller regarding data collection, processing, and sharing
6. Legal Basis for Processing: Establishment of legal grounds for data processing and sharing under Indian law
7. Data Protection Compliance: Commitments to comply with Indian data protection laws and implementation of required safeguards
8. Security Measures: Technical and organizational security measures required for data protection
9. Data Breach Notification: Procedures for handling and notifying data breaches
10. Data Subject Rights: Procedures for handling data subject requests and ensuring their rights
11. Confidentiality: Obligations regarding confidentiality of shared data
12. Liability and Indemnification: Allocation of liability and indemnification obligations between controllers
13. Term and Termination: Duration of the agreement and conditions for termination
14. Post-Termination Obligations: Obligations regarding data handling after agreement termination
15. Governing Law and Jurisdiction: Specification of Indian law as governing law and jurisdiction for disputes
1. Cross-Border Data Transfers: Required if data will be transferred outside India, specifying compliance with data localization requirements
2. Audit Rights: Optional section for mutual audit rights to ensure compliance
3. Insurance: Requirements for insurance coverage, if needed for high-risk data processing
4. Force Majeure: Provisions for unforeseen circumstances affecting data processing operations
5. Sub-processing: Terms for engaging sub-processors, if allowed
6. Dispute Resolution: Alternative dispute resolution mechanisms like arbitration or mediation
7. Data Localization Compliance: Specific provisions for compliance with RBI or other sectoral data localization requirements
1. Schedule 1 - Categories of Data: Detailed list of personal data categories being shared
2. Schedule 2 - Purpose and Legal Basis: Detailed description of processing purposes and legal basis for each data category
3. Schedule 3 - Technical and Organizational Measures: Specific security measures and controls implemented by both parties
4. Schedule 4 - Data Breach Response Plan: Detailed procedures for handling data breaches
5. Schedule 5 - Contact Details: Key contacts for operational, legal, and breach notification purposes
6. Schedule 6 - Processing Activities: Detailed record of processing activities as required by law
7. Appendix A - Data Flow Diagram: Visual representation of data flows between controllers
8. Appendix B - Security Standards Compliance: Documentation of compliance with required security standards
Authors
Technology and Software
Healthcare and Medical Services
Financial Services
E-commerce
Telecommunications
Insurance
Education
Professional Services
Manufacturing
Retail
Market Research
Transportation and Logistics
Legal
Compliance
Information Security
Privacy
Risk Management
Information Technology
Data Governance
Operations
Contract Management
Corporate Affairs
Chief Privacy Officer
Data Protection Officer
Legal Counsel
Compliance Manager
Information Security Manager
Chief Information Security Officer
Risk Manager
Chief Technology Officer
Privacy Manager
Contracts Manager
Chief Legal Officer
Data Governance Manager
Information Technology Director
Chief Operating Officer
Chief Executive Officer
Find the exact document you need
Third Party Processing Agreement
An Indian law-governed agreement establishing terms for third-party processing of personal and sensitive data, ensuring compliance with IT Act and Rules.
Controller To Controller Agreement
An Indian law-governed agreement establishing terms for personal data sharing between independent data controllers, ensuring compliance with DPDP Act 2023.
Product Development Non Disclosure Agreement
An Indian law-compliant Non-Disclosure Agreement for protecting confidential information during product development activities and collaborations.
Joint Controller Data Processing Agreement
An Indian law-compliant agreement establishing roles and responsibilities between joint controllers for personal data processing activities.
Standard Data Processing Agreement
Indian-law compliant Data Processing Agreement governing the processing of personal data between controllers and processors, aligned with IT Act and DPDP Act requirements.
Dpia Agreement
An Indian law-governed agreement documenting the systematic assessment of data processing risks and protection measures under the Digital Personal Data Protection Act 2023.
Data Agreement
An Indian law-governed Data Agreement establishing terms for data sharing and processing, compliant with Indian data protection regulations.
Data Addendum
An Indian law-governed document that sets out data processing terms and compliance requirements under Indian data protection legislation.
Controller Processor Contract
An Indian law-compliant agreement governing the processing of personal data between a controller and processor under the Digital Personal Data Protection Act 2023.
DPA Contract
An Indian law-governed Data Processing Agreement establishing terms for personal data processing between controller and processor, ensuring compliance with Indian data protection regulations.
Third Party Processor Agreement
An Indian law-governed agreement establishing terms for third-party processing of personal data, ensuring compliance with Indian data protection regulations.
Personal Data Collection Agreement
An India-compliant Personal Data Collection Agreement governing the collection and processing of personal data under Indian data protection laws.
International Data Protection Agreement
An Indian law-governed agreement regulating international personal data transfers and processing, ensuring compliance with India's data protection regulations.
Processor To Processor DPA
An Indian law-compliant Data Processing Agreement between two processors, governing personal data processing activities and security measures under the Digital Personal Data Protection Act 2023.
Master Data Protection Agreement
An Indian law-governed agreement establishing data processing obligations between controller and processor under DPDP Act 2023.
Intra Group Data Transfer Agreement
A comprehensive agreement governing intra-group data transfers in India, ensuring compliance with Indian data protection laws and establishing data handling protocols between group entities.
Data Management Agreement
An Indian law-governed agreement establishing terms for data management and processing between organizations, ensuring compliance with Indian data protection regulations.
Data Controller To Data Controller Agreement
An Indian law-governed agreement establishing terms for personal data sharing between two independent data controllers, ensuring compliance with Indian data protection regulations.
Commissioned Data Processing Agreement
An Indian law-governed agreement establishing terms for commissioned data processing, ensuring compliance with Indian data protection regulations.
Intercompany Data Processing Agreement
An Indian law-governed agreement regulating intra-group personal data processing activities, ensuring compliance with Indian data protection regulations.
DPA Agreement
An Indian law-compliant agreement governing the processing of personal data between a controller and processor, ensuring compliance with the Digital Personal Data Protection Act, 2023.
Third Party Data Processing Agreement
An Indian law-governed agreement regulating third-party personal data processing activities, ensuring compliance with India's data protection regulations.
Data Transfer Addendum
A legal addendum governing data transfers under Indian law, ensuring compliance with the DPDP Act 2023 and establishing data protection requirements between parties.
Supplier Data Processing Agreement
An India-compliant data processing agreement governing the processing of personal data by suppliers, aligned with the DPDP Act 2023 and related regulations.
Personal Data Transfer Agreement
A legally binding agreement for personal data transfer between organizations, compliant with Indian data protection laws and regulations.
Personal Data Protection Agreement
Indian law-compliant Personal Data Protection Agreement governing the processing of personal data between parties under DPDP Act 2023.
Order Processing Agreement
An Indian law-governed agreement establishing terms for order processing services between a service provider and business client.
Data Protection Agreement For Employees
An India-compliant agreement governing the protection and processing of employee personal data under Indian data protection laws.
Affiliate Addendum
An India-compliant addendum governing affiliate marketing relationships, specifying commission structures and regulatory compliance requirements under Indian law.
Data Privacy Addendum
An Indian law-compliant addendum governing personal data processing and protection obligations between contracting parties.
Sub Processing Agreement
An Indian law-compliant agreement governing data handling between a processor and sub-processor, ensuring adherence to Indian data protection regulations.
International Data Transfer Agreement
An Indian law-governed agreement for secure and compliant international transfer of personal data, ensuring adherence to the Digital Personal Data Protection Act, 2023.
Data Protection Addendum
A legal document under Indian law that sets out data protection obligations and requirements between parties handling personal data, ensuring compliance with the DPDP Act 2023.
Download our whitepaper on the future of AI in Legal
³Ò±ð²Ô¾±±ð’s Security Promise
Genie is the safest place to draft. Here’s how we prioritise your privacy and security.
Your documents are private:
We do not train on your data; ³Ò±ð²Ô¾±±ð’s AI improves independently
All data stored on Genie is private to your organisation
Your documents are protected:
Your documents are protected by ultra-secure 256-bit encryption
Our bank-grade security infrastructure undergoes regular external audits
We are ISO27001 certified, so your data is secure
Organizational security
You retain IP ownership of your documents
You have full control over your data and who gets to see it
Innovation in privacy:
Genie partnered with the Computational Privacy Department at Imperial College London
Together, we ran a £1 million research project on privacy and anonymity in legal contracts
Want to know more?
Visit our for more details and real-time security updates.
Read our Privacy Policy.