The Information Technology Act, 2000
CHAPTER V: SECURE ELECTRONIC RECORDS AND SECURE ELECTRONIC SIGNATURE
Section 16: Security Procedures And Practices
Bare Act
16. Security procedures and practices - The Central Government may, for the purposes of sections 14 and 15, prescribe the security procedures and practices:
Provided that in prescribing such security procedures and practices, the Central Government shall have regard to the commercial circumstances, nature of transactions and such other related factors as it may consider appropriate.
Simplified Act
16. Security procedures and practices (Simplified) - The Central Government has the power to establish rules for protecting electronic records and signatures, as mentioned in sections 14 and 15 of the law.
However, when creating these rules, the government will take into account the business environment, the types of transactions being conducted, and any other relevant factors that might influence the security measures needed.
Explanation using examples
Let's consider a hypothetical scenario. Suppose there is a major e-commerce company in India called "BuyItAll". This company conducts millions of online transactions every day. However, there have been increasing instances of data breaches and cyber thefts.
Under Section 16 of The Information Technology Act, 2000, the Central Government, acknowledging the commercial circumstances and nature of transactions, decides to prescribe new security procedures and practices. These might include stricter data encryption, two-factor authentication, or mandatory periodic password changes.
This is done to ensure the security of online transactions and protect the sensitive information of customers, thus demonstrating the application of Section 16 of The Information Technology Act, 2000.

