The Indian Computer Emergency Response Team (CERT-In) is India’s national agency for performing specified functions in the area of cybersecurity. It plays an important role in identifying cyber threats, analysing cybersecurity incidents, issuing alerts and advisories, coordinating incident-response activities, and helping organisations improve their security practices. For UPSC Civil Services aspirants, CERT-In is a significant topic under UPSC Mains General Studies Paper III, particularly the syllabus areas covering internal security, cybersecurity, communication networks, and the role of security agencies.
As India increasingly depends on digital payments, online public services, telecommunications, cloud computing and interconnected information systems, cybersecurity has become essential for economic stability and national security. Cyber incidents can expose sensitive information, disrupt essential services, cause financial losses and undermine public confidence. CERT-In contributes to India’s cybersecurity framework by supporting timely incident reporting, threat analysis, technical guidance and coordinated response.
CERT-In: Key Facts for UPSC
- Full form: Indian Computer Emergency Response Team.
- Operational history: CERT-In began functioning in 2004.
- Statutory basis: Section 70B of the Information Technology Act, 2000.
- Formal appointment under Section 70B: 27 October 2009.
- Administrative ministry: Ministry of Electronics and Information Technology (MeitY), Government of India.
- Principal role: National agency for cybersecurity incident response.
- Core functions: Cyber-incident information collection and analysis, security alerts, emergency measures, incident-response coordination, guidelines, advisories and vulnerability notes.
- Important policy development: Cyber Security Directions issued on 28 April 2022 under Section 70B(6) of the IT Act.
- UPSC relevance: GS Paper III — internal security, cybersecurity, communication networks and security agencies.
Exam tip: Distinguish between CERT-In’s operational history and its formal appointment under Section 70B. Also remember that Section 70B relates to CERT-In, while Section 70A provides for the national nodal agency for critical information infrastructure protection, NCIIPC.
What Is CERT-In?
CERT-In is a specialised organisation functioning under MeitY with the objective of improving the security of India’s cyberspace. It serves as a national coordination point for specified cybersecurity incidents and provides technical information that can help organisations prevent attacks, reduce damage and recover more effectively. Its work supports government departments, public-sector organisations, private companies, service providers, research institutions and other stakeholders within its mandate.
A computer security incident may involve unauthorised access, malware infection, ransomware, data compromise, website defacement, denial-of-service attacks or exploitation of software vulnerabilities. Such incidents differ in their methods and consequences, but many require rapid assessment, technical containment, reliable information-sharing and coordinated response. CERT-In contributes to these activities through its statutory functions and cybersecurity services.
CERT-In should not be understood as an agency that independently investigates every cybercrime or prosecutes every cybercriminal. Its principal role is cybersecurity incident response, analysis, coordination and technical guidance. Criminal investigation and prosecution fall to the appropriate law-enforcement and judicial institutions under the applicable legal framework.
Establishment and Legal Framework of CERT-In
CERT-In began functioning in 2004 as India’s national computer emergency response organisation. It was formally appointed as the national agency for cybersecurity under Section 70B of the Information Technology Act, 2000, through a notification dated 27 October 2009. The legal framework was strengthened through the Information Technology (Amendment) Act, 2008, which introduced Section 70B.
Section 70B provides for the national agency responsible for specified cybersecurity functions. These include collecting, analysing and disseminating information on cyber incidents; forecasting and issuing alerts; taking emergency measures for handling incidents; coordinating incident-response activities; and publishing guidelines, advisories, vulnerability notes and white papers relating to information security.
Section 70B also empowers CERT-In to call for information and issue directions to relevant service providers, intermediaries, data centres, body corporates and other persons for carrying out its statutory functions, subject to the applicable law. This authority is significant because effective incident response often depends on timely access to technical information from the systems and services involved.
For UPSC, the key point is that CERT-In has a statutory mandate under Section 70B. It is not merely a voluntary cybersecurity awareness organisation, nor is it the same as a police agency responsible for investigating every cybercrime.
Mandate and Functions of CERT-In
1. Collection, Analysis and Dissemination of Cyber-Incident Information
CERT-In collects and analyses information relating to cyber incidents and disseminates relevant findings to support security awareness and response. Technical information may help identify attack patterns, compromised systems, vulnerabilities and indicators associated with malicious activity. Analysing incidents can also help organisations understand how attacks occur and what measures may reduce the risk of recurrence.
2. Forecasts and Cybersecurity Alerts
Cyber threats can spread quickly across interconnected networks. CERT-In issues alerts and advisories to communicate relevant vulnerabilities, emerging threats and recommended protective measures. Timely warnings can help organisations update systems, review security controls, investigate suspicious activity and prepare for possible attacks.
3. Emergency Measures for Cyber Incidents
When a cybersecurity incident threatens information systems or digital services, prompt action can reduce damage. CERT-In performs functions relating to emergency measures for handling cybersecurity incidents under its mandate. Appropriate responses may include technical guidance, containment recommendations, mitigation advice and coordination with relevant stakeholders.
4. Coordination of Cyber-Incident Response
Cyber incidents frequently involve multiple organisations, service providers and technical systems. A compromised account, for example, may lead to unauthorised access to business systems or the exposure of information held by third parties. CERT-In helps coordinate incident-response activities within its remit so that relevant organisations can exchange information and take appropriate action.
5. Security Guidelines and Advisories
CERT-In publishes guidelines, advisories, vulnerability notes and other technical material relating to information security practices and procedures. Such material can help organisations improve their security posture, manage vulnerabilities, respond to incidents and adopt better cybersecurity practices. Its advisories are particularly useful when a vulnerability or attack pattern affects multiple systems or organisations.
6. Vulnerability Information and Technical Awareness
Software and digital infrastructure can contain weaknesses that attackers may exploit. Timely vulnerability information helps system administrators, software developers and security teams understand risks and take corrective action. CERT-In also contributes to wider cybersecurity awareness by disseminating information intended to help organisations and users adopt safer practices.
7. Collaboration with Domestic and International Stakeholders
Cyber threats often cross geographical boundaries, and the systems involved may be operated by organisations in different countries. CERT-In works with relevant domestic stakeholders, including government departments, public-sector organisations, law-enforcement agencies, academic institutions, service providers and security organisations. International cooperation can also support the exchange of technical information and improve understanding of threats that affect multiple jurisdictions.
CERT-In Cyber Security Directions of 28 April 2022
The Cyber Security Directions issued by CERT-In on 28 April 2022 under Section 70B(6) of the Information Technology Act, 2000, are an important topic for UPSC. They address information security practices, prevention, response and the reporting of specified cyber incidents. The directions were designed to improve cyber-incident analysis, strengthen coordination and make relevant technical information available in a timely manner.
1. Mandatory Reporting of Specified Cyber Incidents
The directions require specified entities to report listed cyber incidents to CERT-In within six hours of noticing the incident or being brought to notice of it. The reporting requirement applies to the entities and incident categories covered by the directions. It is important to read the actual directions and associated clarifications rather than assuming that every technical fault or ordinary online problem automatically falls within the same reporting requirement.
2. Maintenance of ICT System Logs
The directions require covered entities to maintain ICT system logs securely for a rolling period of 180 days and to ensure that the logs are maintained within Indian jurisdiction, as specified in the directions. Logs can help establish the sequence of events during a cyber incident, identify affected systems, support technical analysis and assist appropriate authorities in understanding what occurred.
3. Synchronisation of System Clocks
The directions address the synchronisation of information and communication technology system clocks with specified reliable time sources. Consistent timestamps are important because cyber investigations often involve comparing logs from different devices and organisations. If system clocks differ significantly, it may be difficult to reconstruct the sequence of events or establish the relationship between related activities.
4. Information Maintained by Certain Service Providers
The directions also contain requirements concerning the maintenance of specified subscriber or customer information by certain categories of service providers, including data centres, virtual private server providers, cloud service providers and VPN service providers. They also address specified record-keeping requirements for covered virtual-asset service providers and related entities. The precise requirements depend on the category of entity and the applicable directions.
These provisions are important because incident analysis may require relevant technical records and other information to understand how an attack occurred. However, aspirants should not interpret the directions as a blanket authorisation for unlimited or continuous access to every user’s personal information. The directions, associated FAQs and applicable legal requirements should be read together.
5. Importance of the Directions
The directions aim to improve the availability of information needed for cybersecurity incident analysis, strengthen coordination and support timely mitigation. They also raise broader governance questions concerning compliance costs, record management, data protection, privacy and the responsibilities of digital service providers. In a Mains answer, candidates should discuss both the operational benefits of timely reporting and the need for proportionate implementation, legal clarity and secure handling of information.
What Is a Cybersecurity Incident?
A cybersecurity incident is an event that threatens or compromises the confidentiality, integrity or availability of information or information systems. Confidentiality concerns preventing unauthorised access to information, integrity concerns protecting information from unauthorised alteration, and availability concerns ensuring that systems and information remain accessible to authorised users when needed.
Examples include unauthorised access to a server, ransomware affecting business operations, theft of login credentials, exploitation of a software vulnerability, denial-of-service attacks and the compromise of digital infrastructure. Some incidents may have only a limited effect, while others can disrupt essential services, expose sensitive information or cause substantial financial losses.
For UPSC, it is useful to connect these incidents with the broader objectives of cybersecurity. Effective security involves prevention, detection, response, recovery and learning from incidents. CERT-In contributes to this wider process through its statutory functions and technical guidance.
Difference Between CERT-In and NCIIPC
CERT-In and the National Critical Information Infrastructure Protection Centre (NCIIPC) are both important components of India’s cybersecurity framework, but their primary mandates differ. CERT-In is associated with cybersecurity incident response under Section 70B of the Information Technology Act, 2000. NCIIPC is the national nodal agency for protecting critical information infrastructure under Section 70A.
| Basis | CERT-In | NCIIPC |
|---|---|---|
| Full form | Indian Computer Emergency Response Team | National Critical Information Infrastructure Protection Centre |
| Legal basis | Section 70B of the IT Act, 2000 | Section 70A of the IT Act, 2000 |
| Principal role | National cybersecurity incident response | Protection of critical information infrastructure |
| Core activities | Incident information analysis, alerts, emergency measures, response coordination and security advisories | Critical infrastructure protection, threat intelligence, situational awareness and vulnerability reduction |
| Primary focus | Cybersecurity incidents within its mandate | Critical information infrastructure and relevant protected systems |
The organisations have complementary responsibilities. A cyber incident affecting an essential service may require both incident-response coordination and measures to protect critical infrastructure. Their precise roles depend on the nature of the incident, the systems affected and the applicable legal and operational arrangements.
CERT-In, NCIIPC, NTRO and I4C: Understand the Differences
UPSC aspirants should distinguish cybersecurity incident response from technical intelligence, critical infrastructure protection and cybercrime coordination. Although these activities may overlap during a major incident, the institutions involved do not have identical mandates.
| Organisation | Broad responsibility |
|---|---|
| CERT-In | Cybersecurity incident response under Section 70B of the IT Act. |
| NCIIPC | Protection of critical information infrastructure under Section 70A of the IT Act. |
| NTRO | Specialised technical intelligence supporting national security. |
| I4C | Coordination and support for law-enforcement agencies dealing with cybercrime under the Ministry of Home Affairs framework. |
| NIA | Investigation of specified offences within its statutory jurisdiction. |
The distinction matters because cybersecurity incidents and cybercrimes are not synonymous in every context. An incident may require technical mitigation even before a criminal offence is established. Where criminal conduct is suspected, the relevant law-enforcement agency may investigate under applicable law, while technical organisations perform their respective response or coordination functions.
Importance of CERT-In for India’s National Security
1. Protection of Digital Infrastructure
Government departments, banks, hospitals, businesses and essential service providers depend on digital systems. Cyber incidents can interrupt services, compromise sensitive information or impose significant recovery costs. CERT-In’s alerts, technical guidance and incident-response coordination support the protection of this increasingly important digital infrastructure.
2. Early Warning and Threat Awareness
Early awareness of a vulnerability or attack pattern can give organisations time to assess their exposure and apply suitable protective measures. CERT-In’s advisories and alerts contribute to threat awareness and can help reduce the time between identifying a risk and taking action.
3. Reducing the Impact of Cyberattacks
Not every cyberattack can be prevented, so the ability to respond effectively is essential. Timely analysis, coordinated mitigation and recovery planning can reduce disruption and help organisations restore services. CERT-In’s incident-response role supports this broader objective of cybersecurity resilience.
4. Support for Digital Governance
Digital public services can improve accessibility and administrative efficiency, but they also depend on reliable and secure systems. Cybersecurity preparedness helps maintain trust in digital platforms and supports the continuity of government services. CERT-In contributes to the institutional framework that helps organisations address cyber risks.
5. Economic and Financial Security
Cyber incidents can affect payment systems, business operations, customer information and commercial confidence. The cost of an incident may include direct financial losses, service interruption, recovery expenditure and reputational damage. Improving incident awareness and response can help limit these consequences.
Major Challenges Faced by India’s Cybersecurity Framework
1. Rapidly Evolving Cyber Threats
Attackers continuously adapt their techniques, exploiting software weaknesses, stolen credentials, insecure configurations and trusted third-party services. Security organisations must keep pace with these changes while ensuring that alerts and guidance are accurate, timely and actionable.
2. Shortage of Skilled Professionals
Cybersecurity requires expertise in network security, digital forensics, software vulnerabilities, incident management, cryptography and related fields. Shortages of experienced professionals can make it difficult for organisations to monitor systems continuously, analyse incidents and implement recommended safeguards. Training and workforce development are therefore important.
3. Fragmented Information-Sharing
Cyber incidents can affect multiple organisations, but relevant information may be distributed across different technical teams, service providers and institutions. Delayed reporting or incomplete records can make it harder to understand an attack and coordinate mitigation. Clear reporting procedures and secure information-sharing arrangements can improve response.
4. Legacy Systems and Vulnerable Infrastructure
Some organisations continue to rely on older hardware, software and operational systems that are difficult to update without disrupting services. Such systems may have limited security features or depend on technologies that no longer receive adequate support. Organisations must balance operational continuity with the need to reduce known vulnerabilities.
5. Compliance Costs and Organisational Capacity
Maintaining secure logs, reporting incidents, updating systems and improving security controls can require substantial financial and technical resources. Smaller organisations may have limited cybersecurity capacity. Practical guidance, training, scalable security tools and clear compliance expectations can help improve implementation.
6. Privacy and Data Protection
Incident response can require access to technical logs and other relevant information. Such information may sometimes contain personal or sensitive data. Effective cybersecurity governance should therefore combine timely incident response with appropriate access controls, data minimisation where applicable, secure handling, and compliance with the relevant legal framework.
7. Cross-Border Nature of Cyberattacks
Cyberattacks may involve infrastructure, service providers and actors located in different jurisdictions. This can complicate attribution, evidence collection and enforcement. Cooperation with relevant domestic and international stakeholders can improve the exchange of technical information and support coordinated responses within applicable legal arrangements.
Measures to Strengthen India’s Cybersecurity Framework
India should strengthen the cybersecurity capacity of government institutions, essential service providers and private organisations. Regular vulnerability assessments, timely software updates, multi-factor authentication, secure configuration, network monitoring and tested backup arrangements can reduce the likelihood and impact of cyber incidents. Security measures should be proportionate to the risks and criticality of the systems involved.
Organisations should develop and test incident-response plans that clearly assign responsibilities for detection, reporting, containment, recovery and communication. Relevant personnel should understand when an incident must be reported and what technical information is needed. Tabletop exercises and realistic simulations can help identify weaknesses before a serious incident occurs.
Coordination between CERT-In, NCIIPC, law-enforcement agencies, sectoral regulators, infrastructure operators and other relevant institutions should be strengthened within their respective mandates. Secure information-sharing channels and clear escalation procedures can reduce delays and improve situational awareness. International cooperation is also important because cyber threats frequently cross national borders.
India should invest in cybersecurity research, indigenous technology development and specialised training. Stronger domestic capabilities can support the development of secure systems, reduce dependence on external expertise and improve the country’s ability to assess emerging threats. Partnerships among government, industry, universities and research institutions can help build a larger pool of skilled professionals.
Finally, cybersecurity policy should balance operational effectiveness with privacy, legal clarity and accountability. Reporting and record-keeping requirements should be implemented in accordance with applicable directions and laws. Organisations should protect sensitive information, limit unauthorised access and maintain suitable internal governance so that cybersecurity measures strengthen public trust as well as technical resilience.
CERT-In and the UPSC Syllabus
CERT-In is primarily relevant to General Studies Paper III, particularly internal security, cybersecurity, communication networks and the role of security agencies. It can also be connected with science and technology, digital governance, economic security and questions concerning the regulation of emerging technologies.
- GS Paper III: Challenges to internal security through communication networks.
- GS Paper III: Basics of cybersecurity and measures to protect digital systems.
- GS Paper III: Various security forces and agencies and their mandate.
- GS Paper III: Science and technology and their applications in national security.
- Essay: Digital transformation, cybersecurity and trust in public institutions.
- Interview: Cyber preparedness, incident reporting, privacy and India’s digital resilience.
UPSC Previous Year Questions Related to CERT-In
Important clarification: The questions below concern broader cybersecurity and internal-security themes relevant to CERT-In. They are not presented as questions that specifically name CERT-In. Verify the exact wording in the official UPSC papers before reproducing them as verbatim quotations.
UPSC CSE Mains 2017 — GS Paper III
Question: Discuss the potential threats of cyberattack and the security framework to prevent it.
Relevance to CERT-In: This question provides an opportunity to discuss cyber threats, early warning, vulnerability management, incident response and coordination among cybersecurity institutions. CERT-In can be used as an example of India’s institutional response framework.
UPSC CSE Mains 2021 — GS Paper III
Question: Keeping in view India’s internal security, analyse the impact of cross-border cyber-attacks. Also discuss defensive measures against these sophisticated attacks.
Relevance to CERT-In: Candidates can discuss cyber-incident analysis, alerts, response coordination, security advisories and the need for domestic and international cooperation.
UPSC CSE Mains 2023 — GS Paper III
Question: What are the internal security challenges being faced by India? Give out the role of Central Intelligence and Investigative Agencies tasked to counter such threats.
Relevance to CERT-In: This question relates to India’s broader internal-security framework. CERT-In can be discussed as a specialised cybersecurity institution, while distinguishing its technical incident-response mandate from the functions of intelligence and investigative agencies.
Refer to the official UPSC Previous Question Papers portal to verify original question wording.
Practice MCQs on CERT-In for UPSC Prelims
Question 1
With reference to the Indian Computer Emergency Response Team (CERT-In), consider the following statements:
1. It is the national agency for performing specified cybersecurity functions under Section 70B of the Information Technology Act, 2000.
2. It issues cybersecurity alerts and advisories.
3. It is the sole agency responsible for investigating every cybercrime in India.
Which of the statements given above are correct?
- (a) 1 only
- (b) 1 and 2 only
- (c) 2 and 3 only
- (d) 1, 2 and 3
Correct answer: (b) 1 and 2 only.
Explanation: CERT-In performs specified national cybersecurity functions under Section 70B and issues alerts and advisories. It is not the sole agency responsible for investigating every cybercrime.
Question 2
Section 70B of the Information Technology Act, 2000, is primarily associated with:
- (a) Appointment of the national nodal agency for critical information infrastructure protection.
- (b) Cybersecurity functions of CERT-In.
- (c) Establishment of the Election Commission of India.
- (d) Regulation of monetary policy.
Correct answer: (b).
Explanation: Section 70B provides for the national agency performing specified cybersecurity functions, namely CERT-In.
Question 3
Which of the following is a function of CERT-In?
- (a) Conducting civil services examinations.
- (b) Setting the repo rate.
- (c) Collecting, analysing and disseminating information on cyber incidents.
- (d) Investigating every criminal offence in India.
Correct answer: (c).
Explanation: Collection, analysis and dissemination of cyber-incident information are among CERT-In’s statutory functions.
Question 4
Consider the following pairs:
1. Section 70A of the IT Act — National nodal agency for critical information infrastructure protection
2. Section 70B of the IT Act — CERT-In
3. NCIIPC — Critical information infrastructure protection
How many of the pairs given above are correctly matched?
- (a) Only one
- (b) Only two
- (c) All three
- (d) None
Correct answer: (c) All three.
Explanation: Section 70A concerns the national nodal agency for critical information infrastructure protection, while Section 70B concerns CERT-In. NCIIPC performs the critical infrastructure protection role.
Question 5
Under CERT-In’s Cyber Security Directions issued on 28 April 2022, covered entities are generally required to report specified cyber incidents within which period after noticing them or being brought to notice of them?
- (a) 24 hours
- (b) 48 hours
- (c) Six hours
- (d) 30 days
Correct answer: (c) Six hours.
Explanation: The directions require specified entities to report the listed cyber incidents within six hours. The requirement applies to the entities and incident categories covered by the directions.
Question 6
Which of the following best distinguishes CERT-In from a law-enforcement agency?
- (a) CERT-In’s primary role is cybersecurity incident response and technical coordination, while law-enforcement agencies investigate offences within their jurisdiction.
- (b) CERT-In has exclusive authority to prosecute all cybercriminals.
- (c) Law-enforcement agencies are prohibited from investigating digital evidence.
- (d) Both perform exactly the same statutory functions.
Correct answer: (a).
Explanation: Cybersecurity incident response and criminal investigation are different functions, although they may complement each other during a cybercrime investigation.
UPSC Mains Long-Answer Questions on CERT-In
The following are original practice questions for answer-writing preparation. They are not claimed to be actual UPSC previous-year questions.
Question 1 — 10 Marks, 150 Words
What is CERT-In? Explain its mandate under Section 70B of the Information Technology Act, 2000.
Question 2 — 10 Marks, 150 Words
Distinguish between CERT-In and NCIIPC with reference to their legal basis and primary responsibilities.
Question 3 — 15 Marks, 250 Words
Cybersecurity is no longer merely a technical issue but an important component of national security. Discuss the role of CERT-In in strengthening India’s cyber resilience.
Question 4 — 15 Marks, 250 Words
Examine the significance of CERT-In’s Cyber Security Directions of 28 April 2022. Discuss their potential benefits and implementation challenges.
Question 5 — 15 Marks, 250 Words
Cyberattacks increasingly cross national boundaries and affect interconnected digital systems. Examine the challenges faced by India’s cybersecurity framework and suggest measures to improve incident response.
Question 6 — 15 Marks, 250 Words
Discuss how India can balance timely cybersecurity incident reporting with privacy, data protection and the legitimate interests of digital service users.
Model Answer Framework for UPSC Mains
Question: Cybersecurity is no longer merely a technical issue but an important component of national security. Discuss the role of CERT-In in strengthening India’s cyber resilience.
Introduction: India’s increasing dependence on digital public services, financial systems, communications and online platforms has made cybersecurity essential for national security and economic stability. CERT-In is the national agency performing specified cybersecurity functions under Section 70B of the Information Technology Act, 2000.
Role of CERT-In: It collects, analyses and disseminates information on cyber incidents, issues forecasts and alerts, performs functions relating to emergency measures, coordinates incident-response activities, and publishes guidelines, advisories and vulnerability notes. Its Cyber Security Directions of 28 April 2022 address specified incident-reporting and information-security requirements.
Challenges: India’s cybersecurity framework faces rapidly evolving threats, shortages of skilled professionals, legacy systems, fragmented information-sharing, compliance costs and the cross-border nature of cyberattacks. Timely response can also require sensitive technical information, making secure information management and legal clarity important.
Way forward: India should improve organisational preparedness, incident-response exercises, vulnerability management, skilled workforce development, indigenous cybersecurity research and coordination among CERT-In, NCIIPC, law-enforcement agencies and infrastructure operators. Reporting and information-sharing arrangements should be implemented with appropriate safeguards and accountability.
Conclusion: CERT-In is an important pillar of India’s cybersecurity framework. Its effectiveness depends on timely threat information, coordinated incident response, capable institutions and responsible implementation of cybersecurity measures. A resilient digital ecosystem is essential for protecting public services, economic activity and national security.
Conclusion
The Indian Computer Emergency Response Team is an important institution in India’s cybersecurity architecture. Its statutory mandate under Section 70B of the Information Technology Act, 2000, covers incident information, alerts, emergency measures, response coordination and security guidance. The Cyber Security Directions of 28 April 2022 are especially relevant for understanding incident reporting and the information needed for effective cyber-response activities.
For UPSC aspirants, the most useful approach is to understand CERT-In’s legal basis, distinguish it from NCIIPC and law-enforcement agencies, and connect its functions with the broader challenges of cyber resilience. A strong Mains answer should explain not only what CERT-In does but also why timely reporting, technical expertise, institutional coordination and appropriate legal safeguards are essential for India’s national security.
Official Sources and Further Reading
- CERT-In — Official Charter, Mission and Functions
- CERT-In — Directions under Section 70B, IT Act, 2000
- CERT-In — FAQs on Cyber Security Directions of 28 April 2022
- Press Information Bureau — CERT-In Cyber Security Directions, 28 April 2022
- UPSC — Previous Question Papers
Revision tip: Remember that CERT-In is linked to Section 70B, NCIIPC to Section 70A, and the 2022 CERT-In Directions require covered entities to report specified cyber incidents within six hours. Revise these alongside the functions of NTRO, I4C and the NIA.


