India CERT-In Cyber Security Directions 2022
CERT-In Compliance + Cooperation (Dir 14-17)

India CERT-In Cyber Security Directions 2022 CERTIN-Compliance-Cooperation-CERTInOrders-Penalties-Applicability-Dir14to17-Section44-IT-Act: CERT-In Directions 14-17 Compliance and Cooperation - Mandatory Cooperation with CERT-In + Information Requests + Action Directives + Applicability + Penalties for Non-Compliance + Sec 44 + Sec 70B(7) IT Act

Directions 14-17 establish the cooperation regime + enforcement framework. Direction 14: When required by CERT-In + service providers + intermediaries + data centres + body corporates + government organisations shall provide information sought + take such action as directed by CERT-In within stipulated time + the said information and actions are critical for analysis + investigations + coordination as per the provisions of sub-section (6) of section 70B of IT Act 2000 + Rules notified thereunder + relate to cyber security in the country. Direction 15: CERT-In may seek information + carry out compliance verification + issue further specific orders + directives for compliance + service providers + intermediaries + data centres + body corporates + government organisations shall extend complete cooperation + provide all support + assistance to CERT-In and its officers including for collection of information + evidence + log files + system data + traffic data + content data + subscriber information + technical assistance + facilitate access to systems and premises where necessary. Direction 16: These Directions shall apply mutatis mutandis to all service providers + intermediaries + data centres + body corporates + government organisations + regardless of whether they have their physical presence + registered office in India + so long as their services are being provided to Indian customers + users + clients (effectively extraterritorial application). Direction 17: Any service provider + intermediary + data centre + body corporate + government organisation shall be punishable with imprisonment for a term which may extend to 1 year or with fine which may extend to 1 lakh rupees or with both for any contravention or for any failure to comply with the provisions of these directions per Section 70B(7) IT Act 2000. Additional liability under Section 44 IT Act 2000 (Penalty for failure to furnish information return etc.) - INR 5000 per day continuing default + Section 79 (Intermediary safe harbour) - non-compliance may be lost as defense. Operational implementation: CERT-In Coordination Officer role + cooperation playbook + information request workflow + legal review for sensitive requests + production-of-documents authority + premise access procedures + extraterritorial counsel for non-Indian entities + penalty mitigation through demonstrable good-faith compliance + voluntary disclosure programs. Coordinates with IT Act 2000 Sec 70B + Sec 44 + Sec 79 + IT Rules 2013 + DPDP Act 2023 + Sec 91 CrPC + Indian Evidence Act + Companies Act + Code of Civil Procedure + Indian Penal Code (cybercrime sections 379B + 411 + 466 + 468 + 471). CERT-In Dir 14-17 Compliance applies.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.