PaWrito’ 2025 – Final Submission
Participant Name: Arkadev Chakrabarti
Participant Number: Pw/B/49
Topic: Data Privacy and Protection: Challenges in securing personal information in a
digital economy.
University Of Engineering and Management, Kolkata
Year of Study: 1st (Batch of 2024-2028)
In the modern digital economy, personal data has become a valuable asset, often referred to as
the "new oil." With the rapid expansion of digital services, from social media to e-commerce and
cloud computing, vast amounts of personal data are generated, stored, and processed daily.
While this transformation has made a significant impact to our economy globally, data privacy
and protection are also emerging as pressing issues which we all need to address. Individuals,
corporations, and governments are facing mounting challenges in ensuring that personal
information remains secure in an era of frequent cyber threats and data breaches.
With an enormous amount of data available at hand, sometimes referred to as “The Big Data”,
the surge in cyber-attacks and online financial scams are constantly upscaling. In 2024, the cost
of data breaches in India escalated to over two million U.S. dollars, underscoring the financial
impact on businesses and individuals.1
Looking at the recent statistics, data breaches at BSNL, Angel One, and a substantial $235
million hack of WazirX collectively resulted in losses amounting to nearly ₹12,000 crore, with
the healthcare, hospitality, and banking industries being major targets.2 If we look at the
education sector, hacking of government exam portals and pre-access to the results of 25 lakh
candidates in a split-second of time, are not uncommon.
Cybercriminals are continuously developing advanced techniques to exploit vulnerabilities in
data security systems. Phishing attacks, ransomware, and malware are common methods used to
gain unauthorized access to sensitive data. The rise of artificial intelligence (AI) and machine
1
learning has also enabled hackers to launch more sophisticated attacks, making traditional
security measures inadequate.
In response to these concerns, many nations have enacted data protection laws, such as the
European Union’s General Data Protection Regulation (GDPR) and the California Consumer
Privacy Act (CCPA), to regulate the collection, storage, and use of personal information. Despite
the implementation of data protection laws, many regions still lack comprehensive legal
frameworks to address emerging privacy challenges. In some cases, existing laws are outdated
and fail to address modern technological advancements, such as AI-driven data processing and
blockchain.
But, if we stop thinking for a second and fuel our brains, we should reiterate the fact that the duty
to protect personal data and information, partially lie in the hands of the consumers too. Many
internet users remain unaware of how their data is collected, stored, and manipulated by
companies. The lack of transparency in data collection practices limits consumers' ability to
exercise their rights over their personal information.
Not all data breaches occur due to external cyberattacks; many are caused by internal threats and
human errors. Employees with access to sensitive information may intentionally or
unintentionally expose data due to negligence, lack of training, or malicious intent.
Organizations need robust access controls, regular training, and monitoring mechanisms to
mitigate insider threats.
While data protection is crucial, excessive restrictions can hinder technological innovation and
business growth. Striking a balance between privacy and innovation is an ultimate challenge that
regulators and businesses must navigate carefully.
But are these problems never solvable – not at all! The solution is pretty easy and simple.
Organizations should implement stronger encryption, multi-factor authentication, and advanced
security protocols to protect sensitive data. Regular security audits can help identify and address
vulnerabilities before they are exploited. Data collection and handling should be ethical and
transparent. AI-driven security solutions can help detect anomalies, identify potential threats, and
automate responses to cyberattacks. Machine learning algorithms can analyze patterns in data
2
breaches and improve predictive security measures. As the hearing goes – “Technology is a boon
for mankind – why not use it for the good?”
To conclude, from getting the tag for “the highest number of UPI transactions in the world”,
India’s digital economy is continuously growing, making data privacy and protection more
critical than ever. Addressing these challenges requires a collaborative effort from the
government, businesses and individuals. By prioritizing data privacy and implementing robust
security practices, we can create a safer and more trustworthy digital ecosystem for future
generations.
______________________________________________________________________________
References:
1
Cyber Crime in India – Statistics and facts (https://www.statista.com) – October 25, 2024.
2
Biggest Cyberattacks in India – The Economic Times
(https://www.economictimes.indiatimes.com) – December 30, 2024.
3