Six hours to report a cyber incident. Would you even know in six?
CERT-In's directions require organisations in India to report specified incidents within 6 hours, keep logs for 180 days within India and synchronise clocks to approved time sources. We set up the monitoring, logging and runbooks that make this possible.
Most teams can't meet the 6-hour window today.
You find out too late
Without central monitoring, incidents surface days later — long after the deadline.
Logs are missing or abroad
Short retention or logs stored outside India leave you unable to comply.
Nobody owns the report
When an incident hits, no one knows who reports what, or how.
We make sure that when something happens, you know in minutes and report in hours.
From gap to evidence.
Assessment, implementation on your cloud, testing and the documentation to prove it.
Readiness review
Check logging, retention, time sync and incident processes against the directions.
Centralised logging
Collect and retain logs for 180 days in Indian regions.
Time synchronisation
Configure systems to sync with approved NTP sources.
Detection & alerting
24/7 monitoring that surfaces reportable incidents fast.
Reporting runbook
Who reports, what to include and how — rehearsed.
Clear answers, working controls
Compliant logging
Retained in India, searchable.
24/7 detection
Alerts that reach a person.
Reporting runbook
Tested and ready.