India's national CERT directives on cybersecurity incident reporting.
CERT-In (Indian Computer Emergency Response Team) directions require organizations to report specified categories of cyber security incidents within 6 hours of detection, maintain ICT system logs for 180 days within India, and synchronize system clocks to NTP servers.
Rapid, mandatory incident reporting is designed to help India build a national picture of cyber threats in near real-time. For organizations, it means incident response processes must be fast and well-documented — 6 hours is a tight window if you haven't prepared for it in advance.
All Indian organizations, especially those operating critical digital infrastructure, data centers, and service providers.
Non-compliance can attract action under the IT Act, 2000, including imprisonment up to 1 year or fines, under Section 70B provisions.
Our compliance consultants can guide you from gap assessment to audit-ready.
Partner with CyberK7 for robust security, compliance and peace of mind.