• hello@whatnews.in
  • Home
  • Business
  • World
  • Contact US
Home»business»Checking online financial frauds: CERT-In directive important for storing user data, says govt
business

Checking online financial frauds: CERT-In directive important for storing user data, says govt

whatnewsBy whatnewsMay 11, 2022No Comments2 Mins Read
Facebook Twitter LinkedIn Telegram Pinterest Tumblr Reddit WhatsApp Email
Share
Facebook Twitter LinkedIn Pinterest Email



The government has stressed the directive by the Indian Computer Emergency Response Team (CERT-In) to virtual private network (VPN) service providers, cloud service providers and virtual private service providers to store data of users for five years. It has been taken after industry-wide consultation. Further, the directive is necessary to stop financial fraud currently happening in the digital world.

According to sources, it becomes difficult to track the culprit involved in online financial fraud as most of them use VPNs. When the VPN providers start storing data of users, it can be used by law enforcement agencies to track a fraudster. “It’s only when the law enforcement people need the details that information will be sought from VPN providers. Otherwise, they have to store the data at their end only. We are not asking for data of all users,” said a source in the Ministry of Electronics and IT (Meity).

Apart from storing user data, CERT-In has asked all the government and private agencies, intermediaries, and data centres, to mandatorily report cyber security breach incidents to it within six hours of noticing them. “All service providers, intermediaries, data centres, body corporate and government organisations shall mandatorily enable logs of all their ICT systems and maintain them securely for a rolling period of 180 days and the same shall be maintained within the Indian jurisdiction. These should be provided to CERT-In along with reporting of any incident or when directed,” CERT-In said in its April 28 directions. These directions will become effective after 60 days.

CERT-In serves as the national agency for performing various functions in the area of cybersecurity in the country as per provisions of section 70B of the Information Technology Act, 2000. To coordinate response activities as well as emergency measures concerning cybersecurity incidents, CERT-In calls for information from service providers, intermediaries, data centres and body corporate.

During handling cyber incidents, CERT-In has identified certain gaps causing hindrance in incident analysis. To address the identified gaps, CERT-In has issued these directions under the provisions of sub-section (6) of section 70B of the Information Technology Act, 2000.





Source link

Post Views: 8
2000 CERT-In CERTIn checking cloud service providers data directive financial Frauds govt important Information Technology Act MeitY online online financial frauds storing User VPN providers
Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email
Previous ArticleShare Market LIVE: SGX Nifty suggests tepid start for Sensex, Nifty; Venus Pipes, Delhivery IPOs to open today
Next Article Bayer plans to tap India for high-yielding vegetable seeds
whatnews
  • Website

Related Posts

Sustained efforts needed to bring Hindi literature centre-stage: Booker Prize winner Geetanjali Shree

May 29, 2022

Overseas education loan applications are on the rise as the pandemic wanes

May 29, 2022

The solar marketing | The Financial Express

May 29, 2022
Add A Comment

Leave A Reply Cancel Reply

Subscribe to Updates

Get the latest sports news from SportsSite about soccer, football and tennis.

Advertisement
About Us
Privacy Policy
Contact Us
© Copyright 2022. All rights reserved.