• About
  • Subscribe
  • Contact
Thursday, May 8, 2025
    Login
  • Management Leadership
    • Growth Strategies
    • Finance
    • Operations
    • Sales and Marketing
    • Careers
  • Technology
    • Infrastructure and Platforms
    • Business Applications and Databases
    • Big Data, Analytics and Intelligence
    • Security
  • Industry Verticals
    • Finance and Insurance
    • Manufacturing
    • Logistics and Transportation
    • Retail and Wholesale
    • Hospitality and Tourism
    • Government and Public Services
    • Utilities
    • Media and Telecommunications
  • Resources
    • Whitepapers
    • PodChats
    • Videos
  • Events
No Result
View All Result
  • Management Leadership
    • Growth Strategies
    • Finance
    • Operations
    • Sales and Marketing
    • Careers
  • Technology
    • Infrastructure and Platforms
    • Business Applications and Databases
    • Big Data, Analytics and Intelligence
    • Security
  • Industry Verticals
    • Finance and Insurance
    • Manufacturing
    • Logistics and Transportation
    • Retail and Wholesale
    • Hospitality and Tourism
    • Government and Public Services
    • Utilities
    • Media and Telecommunications
  • Resources
    • Whitepapers
    • PodChats
    • Videos
  • Events
No Result
View All Result
No Result
View All Result
Home Management Leadership Finance Governance, Risk and Compliance

Importance of data sovereignty in Asia

Allan Tan by Allan Tan
February 6, 2023
Photo by Artem Podrez: https://www.pexels.com/photo/man-and-a-woman-on-a-business-meeting-5716035/

Photo by Artem Podrez: https://www.pexels.com/photo/man-and-a-woman-on-a-business-meeting-5716035/

IDC has predicted that the idea of digital sovereignty will gain greater traction in the coming years. In Europe, 2022 has already seen new product developments and heightened interest from all the major global cloud vendors as well as key local players.

In META, Asia-Pacific, and North America, while the focus is largely on data sovereignty, as cloud usage continues to grow and markets mature, broader discussions about sovereignty and in particular cloud sovereignty will begin to evolve.

Importance of data sovereignty in Asia

Acknowledging the priority businesses are placing on data sovereignty, Deepika Giri, associate vice president for data & analytics at IDC Asia/Pacific, explains that organisations are looking to innovate, quicken the go-to-market process with new solutions, offer better customer experience, and embrace digital transformation.

She adds that for these companies, operating in the cloud way forward. Hence, in Asia, there is an upward trend of more public and private sectors shifting IT workloads to the cloud. Accompanying this trend are concerns over data privacy and security continue to increase.

According to FERS survey wave 12, almost 80% of Asia-Pacific excluding Japan (APEJ) respondents agreed with the statement: "Unified Security first: we are prioritising the use of unified security technologies that allow us to more effectively address new threats (ransomware) and address privacy/digital sovereignty requirements", and in the AP Cloud Survey 2022, 1 in 10 APEJ respondents ranked fulfilling digital sovereignty requirements as a main advantage of using local (in-country) cloud providers, over global or regional providers.

According to IDC Asia/Pacific analysts, these findings support the observation that data sovereignty is among the top priority for many organisations in Asia.

Data sovereignty as practised in Asia

Giri comments that digital transformation implies greater reliance on data. “Countries across Asia intensifying efforts to develop data governance strategies and legislation, and enforce new laws focused on data privacy, protection, and security,” she adds.

China implemented the 2021 Personal Information Protection Law, India is overhauling regulations to improve the security of transferring and storing sensitive personal data overseas, and Thailand is enforcing the Personal Data Protection Act that protects persons from the unauthorised or unlawful collection, use, or disclosure of personal data.

According to IDC, the public sector deals with business-critical intellectual property high-security data sets and data sets that have local criticality. Hence, telco/cloud provider sovereign cloud platform will be attractive and could evolve to become the basis of de facto national industry clouds.

The banking sector is also greatly impacted by digital sovereignty issues, as transactions (and the data generated) comprise the majority of the workloads.

Photo by Miguel Á. Padriñán from Pexels: https://www.pexels.com/photo/close-up-shot-of-keyboard-buttons-2882638/

Top challenges for executing data privacy and data protection

Giri warns that violations of data governance regulations due to outdated/misalignment of company governance policies to government regulations, and legacy infrastructure that is not conducive for storing and transforming large volumes of data of different types and from disparate sources are among the top challenges organisations will face.

Deepika Giri

“It is a priority for organisations to work closely with regulators, bringing greater alignment of company and government regulations to ensure compliance. IT departments will need to overhaul the digital infrastructure and consider introducing local clouds for greater compliance.”

Deepika Giri

She posits that this may lower the risk of receiving hefty fines for violations as well as increase confidence and trust in data due to updated infrastructure that supports data sovereignty, protection, and security.

Impact of multi-cloud adoption

The accelerating adoption of hybrid and multi-cloud technologies in Asia has the potential to complicate compliance for organisations in the region. The question becomes how are compliance/risk officers working with CIOs/CTOs to ensure that innovations are pursued while remaining compliant with evolving regulations?

Giri acknowledges that a transition to a hybrid or multi-cloud environment adds to the already complex compliance requirements of organisations. Among the many technical challenges that organisations will face, she cites data movement/migration and integration, data silos (rendering data sharing and innovation difficult), working with traditional and proprietary security technologies, security/compliance KPIs and associated processes, lack of data lineage and governance mechanisms, lack of enterprise-wide visibility, and a greater risk of cybersecurity attacks.

“Compliance and risk officers must collaborate with the CIOs/CTOs/CISOs to ensure proactive careful considerations for security, risk management, and compliance related aspects during the design and implementation phases,” recommends Giri.

She observes a thrust to build and audit processes and invest in modern security technologies suited to the highly evolving security, compliance, and data sovereignty requirements (data at rest, in motion, and across multiple IT environments).

Advice for CCOs/CROs/CIOs

According to IDC, the compliance must actively design and build KPIs and processes to strengthen risk management, and overall compliance & cybersecurity. End-to-end visibility of the IT environment/infrastructure is the key- necessary investments must be made in observability solutions.

In addition, security policies (usage, identity & access, network, data protection, etc.) must be standardised across the organisation.

“Organisations must leverage best-of-the-solutions for data migration, governance, and cybersecurity (technologies such as unified security, IAM, threat lifecycle management, data encryption, BCDR). The compliance function must work in tandem with the IT function and must plan for adaptability to the ever-changing regulatory landscape,” concludes Giri.

Related:  AI redefines enterprise applications
Tags: data privacydata sovereigntyIDC
Allan Tan

Allan Tan

Allan is Group Editor-in-Chief for CXOCIETY writing for FutureIoT, FutureCIO and FutureCFO. He supports content marketing engagements for CXOCIETY clients, as well as moderates senior-level discussions and speaks at events. Previous Roles He served as Group Editor-in-Chief for Questex Asia concurrent to the Regional Content and Strategy Director role. He was the Director of Technology Practice at Hill+Knowlton in Hong Kong and Director of Client Services at EBA Communications. He also served as Marketing Director for Asia at Hitachi Data Systems and served as Country Sales Manager for HDS’ Philippines. Other sales roles include Encore Computer and First International Computer. He was a Senior Industry Analyst at Dataquest (Gartner Group) covering IT Professional Services for Asia-Pacific. He moved to Hong Kong as a Network Specialist and later MIS Manager at Imagineering/Tech Pacific. He holds a Bachelor of Science in Electronics and Communications Engineering degree and is a certified PICK programmer.

No Result
View All Result

Recent Posts

  • Agentic AI-powered AppSec platform launched for the AI era
  • IDC forecasts GenAI alone will grow at a 59.2% CAGR
  • Dataiku brings new AI capabilities to create and control AI agents
  • Microsoft reveals the rise of a new kind of organisation in the AI era
  • St Luke’s ElderCare enhances data security and user experience with Juniper

Live Poll

Categories

  • Big Data, Analytics & Intelligence
  • Business Applications & Databases
  • Business-IT Alignment
  • Careers
  • Case Studies
  • CISO
  • CISO strategies
  • Cloud, Virtualization, Operating Environments and Middleware
  • Computer, Storage, Networks, Connectivity
  • Corporate Social Responsibility
  • Customer Experience / Engagement
  • Cyber risk management
  • Cyberattacks and data breaches
  • Cybersecurity careers
  • Cybersecurity operations
  • Education
  • Education
  • Finance
  • Finance & Insurance
  • FutureCISO
  • General
  • Governance, Risk and Compliance
  • Government and Public Services
  • Growth Strategies
  • Hospitality & Tourism
  • HR, education and Training
  • Industry Verticals
  • Infrastructure & Platforms
  • Insider threats
  • Latest Stories
  • Logistics & Transportation
  • Management Leadership
  • Manufacturing
  • Media and Telecommunications
  • News Stories
  • Operations
  • Opinion
  • Opinions
  • People
  • Process
  • Remote work
  • Retail & Wholesale
  • Sales & Marketing
  • Security
  • Tactics and Strategies
  • Technology
  • Utilities
  • Videos
  • Vulnerabilities and threats
  • White Papers

Strategic Insights for Chief Information Officers

FutureCIO is about enabling the CIO, his team, the leadership and the enterprise through shared expertise, know-how and experience - through a community of shared interests and goals. It is also about discovering unknown best practices that will help realize new business models.

Quick Links

  • Videos
  • Resources
  • Subscribe
  • Contact

Cxociety Media Brands

  • FutureIoT
  • FutureCFO
  • FutureCIO

Categories

  • Privacy Policy
  • Terms of Use
  • Cookie Policy

Copyright © 2022 Cxociety Pte Ltd | Designed by Pixl

Login to your account below

or

Not a member yet? Register here

Forgotten Password?

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Management Leadership
    • Growth Strategies
    • Finance
    • Operations
    • Sales and Marketing
    • Careers
  • Technology
    • Infrastructure and Platforms
    • Business Applications and Databases
    • Big Data, Analytics and Intelligence
    • Security
  • Industry Verticals
    • Finance and Insurance
    • Manufacturing
    • Logistics and Transportation
    • Retail and Wholesale
    • Hospitality and Tourism
    • Government and Public Services
    • Utilities
    • Media and Telecommunications
  • Resources
    • Whitepapers
    • PodChats
    • Videos
  • Events
Login

Copyright © 2022 Cxociety Pte Ltd | Designed by Pixl

Subscribe