The Indian government has introduced a new data localisation requirement that prohibits communication infrastructure providers from sharing or storing telecom-related data outside the country. The directive, issued by the Department of Telecommunications (DoT) under a new authorisation framework aligned with the Telecommunications Act, 2023, applies to providers operating cloud-based telecom networks, mobile towers, satellite gateways, submarine cable landing stations, and other critical communications infrastructure.

Under the new rules, all telecommunication data, network logs, operational records, and associated information generated through telecom infrastructure must be stored and processed within India. The move is intended to strengthen national security, enhance oversight of critical telecom infrastructure, and reinforce India’s broader push toward data sovereignty.

Government Mandates Telecom Data Localisation

The new authorisation framework requires communication infrastructure providers to:

  • Store all telecom-related data within India.
  • Refrain from sharing telecom data with entities outside the country.
  • Ensure network logs and operational information remain within Indian jurisdiction.
  • Comply with enhanced security and monitoring obligations under the Telecommunications Act, 2023.

Policy Snapshot

ItemDetails
RegulatorDepartment of Telecommunications (DoT)
Applies ToCommunication infrastructure providers
RequirementTelecom-related data must remain in India
Data SharingCross-border sharing prohibited
Legal BasisTelecommunications Act, 2023

Who Is Covered?

The framework applies to a broad range of entities involved in telecom infrastructure, including:

  • Cloud-based telecom network providers.
  • Mobile tower infrastructure companies.
  • Satellite gateway operators.
  • Submarine cable landing station operators.
  • Other authorised communication infrastructure providers supporting telecom networks.

What Data Must Stay in India?

According to the notification, the localisation requirement covers:

  • Telecommunication data.
  • Network logs.
  • Operational records.
  • Information associated with telecom networks.
  • Other data generated through authorised communication infrastructure.

Data Covered

CategoryLocal Storage Required
Telecommunication DataYes
Network LogsYes
Operational InformationYes
Telecom Infrastructure RecordsYes

Why the Government Introduced the Rule

The notification forms part of India’s transition from the previous telecom licensing regime to a new authorisation-based framework under the Telecommunications Act, 2023.

The government aims to:

  • Strengthen national security.
  • Improve oversight of critical telecom infrastructure.
  • Reduce dependence on overseas data storage.
  • Enhance resilience of India’s communication networks.
  • Ensure sensitive telecom information remains under Indian jurisdiction.

Industry Impact

The new requirement is expected to have significant implications for telecom infrastructure providers and cloud service operators.

Companies may need to:

  • Expand domestic data centre capacity.
  • Modify global cloud architectures.
  • Update compliance and data governance processes.
  • Review contracts involving overseas data storage or processing.

The policy could also benefit India’s growing domestic data centre industry by increasing demand for local hosting and storage infrastructure.

Relationship With India’s Data Protection Framework

The new telecom-specific localisation requirement is separate from India’s broader Digital Personal Data Protection (DPDP) Act framework.

While the DPDP regime generally permits cross-border transfers of personal data unless specifically restricted by the government, the DoT’s latest notification imposes a stricter requirement for telecom infrastructure providers by mandating that specified telecom data remain within India.

Looking Ahead

The Department of Telecommunications’ decision to prohibit communication infrastructure providers from sharing or storing telecom-related data outside India marks a significant step in the country’s data localisation strategy. By requiring telecom data, network logs, and operational information to remain within Indian borders, the government aims to strengthen national security, improve regulatory oversight, and safeguard critical communications infrastructure as the sector transitions to the new authorisation framework under the Telecommunications Act, 2023.

Looking ahead, telecom infrastructure providers will need to adapt their technology and compliance frameworks to meet the new localisation requirements, potentially accelerating investments in domestic data centres and cloud infrastructure. The policy is also expected to influence how global telecom and cloud service providers structure their India operations, reinforcing the country’s broader emphasis on digital sovereignty and secure telecom networks.

Get the day’s top stories in your inbox

One concise email. No spam, unsubscribe anytime.