CERT-In (Indian Computer Emergency Response Team) has mandated strict cybersecurity reporting under its April 2022 directives. Organizations must report cyber incidents within 6 hours, maintain logs for 180 days, and synchronize system clocks with NTP. Non-compliance can result in penalties and loss of regulatory standing.
CERT-In compliance requires incident reporting mechanisms, centralized log management (180-day retention), NTP synchronization, VPN user logging, and virtual asset service provider KYC. Organizations need SIEM/log management, incident response plans, and automated compliance monitoring to meet these requirements consistently.
We audit your current compliance posture against all CERT-In directives, identify gaps in logging, incident response, and reporting. We implement automated log collection, configure 6-hour incident alerting workflows, and establish compliance dashboards. Typical advisory: ₹5-25 lakh depending on organization size.
Security information & event mgmt
Security intelligence platform
Open-source log analytics
Governance & risk mgmt
AI-powered cloud SIEM & SecOps
Petabyte-scale log mgmt (180-day retention)
Enterprise risk & compliance platform
Self-hosted SIEM with analytics
GRC automation — continuous compliance monitoring; Bronze OEM (37%)
Vendor-neutral. Customer-first. We recommend what you need — nothing more.
| CERT-In Directives 2022 Domain | EDR | NGFW | SIEM | ZT | IAM | DLP | Cloud | DevSec | Backup | GRC | Net | MDR | |
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| A. 6-Hr Reporting | ✓ | ✓ | ✓ | ||||||||||
| B. 180-Day Logs | ✓ | ✓ | ✓ | ✓ | |||||||||
| C. NTP Sync | ✓ | ||||||||||||
| D. PoC Designation | ✓ | ||||||||||||
| E. Info Sharing | ✓ | ✓ | |||||||||||
| F. KYC/Customer | ✓ | ✓ | ✓ | ||||||||||
| G. Virtual Asset | ✓ | ||||||||||||
| H. Vuln Mgmt | ✓ | ✓ |