1. The Personal Data Protection Bill: http://meity.gov.in/writereaddata/files/Personal_Data_Protection_Bill,2018.pdf (2018). Last accessed 22 Sept 2018
2. ISO/IEC 29134:2017: Information technology—Security techniques—Guidelines for privacy impact assessment, 1st edn. ISO/IEC, Switzerland (2017)
3. ISO/IEC 27005:2011: Information technology—Security techniques—Information security risk management, 2nd edn. ISO/IEC, Switzerland (2011)
4. Bhattacharjee, J., Sengupta, A., Barik, M.S., Mazumdar, C.: A study of qualitative and quantitative approaches for information security risk management. In: Gupta, M., Sharman, R., Walp, J. (eds.) Information Technology Risk Management and Compliance in Modern Organizations, pp. 1–20. IGI-Global, USA (2017)
5. Bhattacharjee, J., Sengupta, A., Mazumdar, C.: A Quantitative methodology for security risk assessment of enterprise business processes. In: Proceedings of the 2nd International Conference on Information Systems Security and Privacy (ICISSP), pp. 388–399. SCITEPRESS, Italy (2016)