HomeNewsBusinessMSMEs still not prepared as CERT-in cybersecurity compliance extension deadline expires

MSMEs still not prepared as CERT-in cybersecurity compliance extension deadline expires

The Ministry of Electronics and Information Technology had extended the deadline for MSMEs for complying with Indian Computer Emergency Response Team's (CERT-In) till September 25, while for others, the directions have been in force since June 27

September 26, 2022 / 10:45 IST
Story continues below Advertisement
Representative Image
Representative Image

The extended deadline for micro, small and medium enterprises (MSMEs) to comply with the Indian Computer Emergency Response Team's (CERT-In) cybersecurity guidelines expired on September 25. Industry players have since told Moneycontrol that these companies are ill-equipped to adhere to the guidelines in letter or spirit.

“Many small and medium-sized organisations have thrown their hands up, saying "We don't understand the compliance requirements and what to report in case of which incidents,’” said Zainab Bawa, Chief Operating Officer of Hasgeek.

Story continues below Advertisement

The April 28 directions issued by CERT-In require entities to maintain logs of all information and communication technology (ICT) systems for a period of 180 days.

Among other directions, they also have to register and maintain personal information of subscribers for five years or longer and provide this data to CERT-In if demanded, in the event of a cybersecurity breach.