India CERT-In Cyber Security Directions 2022
CERT-In Coordination + Cross-Regulator

India CERT-In Cyber Security Directions 2022 CERTIN-Coord-RBI-SEBI-IRDAI-I4C-DPDPAct-SectoralCERTs-NCIIPC-IndiaStack: CERT-In Coordination - RBI + SEBI + IRDAI Cyber Frameworks + DPDP Act 2023 DPBI + I4C Cybercrime + Sectoral CERTs + NCIIPC CII Protection + DPI India Stack + International CSIRTs

Coordination positions CERT-In Directions within the broader Indian + international cyber ecosystem. (1) RBI Cyber Security Framework: RBI Cyber Security Framework for Banks (June 2016) + Cyber Resilience Framework for NBFCs + Master Direction on IT Outsourcing + sectoral RBI cyber resilience requirements + reporting timelines (RBI 2-6 hour windows often shorter than CERT-In 6 hour). (2) SEBI System Audit Framework: SEBI System Audit + Cyber Resilience Framework + Surveillance and Risk Management + reporting to SEBI in addition to CERT-In. (3) IRDAI Information and Cyber Security Guidelines for Insurance Companies + cyber drills for insurance sector. (4) DPDP Act 2023: Digital Personal Data Protection Act passed 11 August 2023 + Rules 2025 + breach notification within 72 hours to Data Protection Board of India (DPBI) under Section 8(6) + obligation runs alongside CERT-In 6-hour reporting + DPO/SDF obligations + Significant Data Fiduciary determination. (5) I4C Indian Cyber Crime Coordination Centre: under Ministry of Home Affairs + 7 components - National Cybercrime Threat Analytics Unit + Specialised Cybercrime Forensic Laboratories + Joint Cyber Crime Coordination Team + National Cybercrime Reporting Portal + Cybercrime Ecosystem Management Unit + Platform for Joint Cybercrime Investigation Team + National Cybercrime Training Centre + cybercrime.gov.in + reporting cyber-enabled financial fraud + sextortion + ransomware. (6) NCIIPC National Critical Information Infrastructure Protection Centre: under National Technical Research Organisation NTRO + designated sectors including Power + Banking + Telecom + Transport + Strategic Public Enterprises + Government + reporting requirements + audit requirements. (7) Sectoral CERTs: CERT-Fin (financial sector under RBI) + CERT-Power (power sector under Ministry of Power) + CERT-Healthcare (under Ministry of Health) + CERT-Telecom + CSIRT-Coal + sectoral coordination with CERT-In. (8) DPI India Stack: Aadhaar + UPI + DigiLocker + AA + ONDC + OCEN + BBPS + India Stack security coordination + Sahamati + ReBIT. (9) International Coordination: FIRST.org Forum of Incident Response and Security Teams + AsiaPacific CSIRT Association (APCERT) + Quad Cyber Security Partnership + Indo-Pacific cyber dialogues + Five Eyes intelligence sharing where applicable + UN GGE + Open-Ended Working Group on ICT Security. (10) International AA equivalents + cyber reporting equivalents in EU NIS2 + US CIRCIA 2022 + Australia SOCI + Singapore Cybersecurity Act + UK NIS Regulations. Coordinates with multi-regulator landscape spanning RBI + SEBI + IRDAI + PFRDA + TRAI + DoT + I4C + NCIIPC + DPBI (under DPDP Act) + MeitY + Ministry of Home Affairs + sectoral ministries + international CSIRTs. CERT-In Coordination + Cross-Regulator + DPI applies.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.