|| CII SECEX - 2024 ||NEW! || NCIIPC Scheme for Pen Testing of CIIs ||NEW! || NCIIPC-AICTE Pentathon 2024 ||NEW!

About Us

National Critical Information Infrastructure Protection Centre (NCIIPC), a unit of NTRO, is an organisation of the Government of India created under Sec 70A of the Information Technology Act, 2000 (amended 2008), through a gazette notification on 16th Jan 2014 based in New Delhi, India. It is designated as the National Nodal Agency in respect of Critical Information Infrastructure Protection.

Vision

To facilitate safe, secure and resilient Information Infrastructure for Critical Sectors of the Nation.

Mission

To take all necessary measures to facilitate protection of Critical Information Infrastructure, from unauthorized access, modification, use, disclosure, disruption, incapacitation or destruction through coherent coordination, synergy and raising information security awareness among all stakeholders.

Functions and Duties

  • National nodal agency for all measures to protect nation's critical information infrastructure.
  • Protect and deliver advice that aims to reduce the vulnerabilities of critical information infrastructure, against cyber terrorism, cyber warfare and other threats.
  • Identification of all critical information infrastructure elements for approval by the appropriate Government for notifying the same.
  • Provide strategic leadership and coherence across Government to respond to cyber security threats against the identified critical information infrastructure.
  • Coordinate, share, monitor, collect, analyze and forecast, national level threat to CII for policy guidance, expertise sharing and situational awareness for early warning or alerts. The basic responsibility for protecting CII system shall lie with the agency running that CII.
  • Assisting in the development of appropriate plans, adoption of standards, sharing of best practices and refinement of procurement processes in respect of protection of Critical Information Infrastructure.
  • Evolving protection strategies, policies, vulnerability assessment and auditing methodologies and plans for their dissemination and implementation for protection of Critical Information Infrastructure.
  • Undertaking research and development and allied activities, providing funding (including grants-in-aid) for creating, collaborating and development of innovative future technology for developing and enabling the growth of skills, working closely with wider public sector industries, academia et al and with international partners for protection of Critical Information Infrastructure.
  • Developing or organising training and awareness programs as also nurturing and development of audit and certification agencies for protection of Critical Information Infrastructure.
  • Developing and executing national and international cooperation strategies for protection of Critical Information Infrastructure.
  • Issuing guidelines, advisories and vulnerability or audit notes etc. relating to protection of critical information infrastructure and practices, procedures, prevention and response in consultation with the stake holders, in close coordination with Indian Computer Emergency Response Team and other organisations working in the field or related fields.
  • Exchanging cyber incidents and other information relating to attacks and vulnerabilities with Indian Computer Emergency Response Team and other concerned organisations in the field.
  • In the event of any threat to critical information infrastructure the National Critical Information Infrastructure Protection Centre may call for information and give directions to the critical sectors or persons serving or having a critical impact on Critical Information Infrastructure.
Read more
Read Less

Documents

CVE Reports

16 - 31 Mar'24 NEW!
(1.74 MB)
sha1: 973f6d255a8f66903623cd3b8aac54ba94570023
(154 KB)
sha1: b26ee4ac10056e17c081b2a1ae01d4540dc31189
01 - 15 Mar'24
(1.68 MB)
sha1: 051682d93b27e4220378ef3e21ab10f94921713a
(156 KB)
sha1: 19cb612accb7306547d01d7f3b53c4ad4045aee8
16 - 29 Feb'24
(3.40 MB)
sha1: 7effe3941d051d063de0538d41541f1800f05a40
(244 KB)
sha1: 27c1dcb8e0d9e11007b0b7f454d225704bf31f23
01 - 15 Feb'24
(32.0 MB)
sha1:6f97c8129976acb68fb7516da1d9c34ba8d424e9
(3.38 MB)
sha1:169bb2c2eba165c6d595eb15c836fdab1d80da7a
16 - 31 Jan'24
(16.3 MB)
sha1:a86103e11e9fb819b013aa0dd42980779cc5c346
(1.8 MB)
sha1:e743991584a0a94507d84611f40054e8fb78cb32
01 - 15 Jan'24
(26.8 MB)
sha1:60574c2ef913b6631462f2aafeb5b1293e7a06cf
(2.82 MB)
sha1:1a344cf50e23e10cf6b2e6d6fc2da9fd195240c3
More...

Updates

Forms

Incident Reporting

Incident Reporting Form(627 KB)
sha1: a671aeaa7ea1d168498ef0f0038f5451fa4d7d79

Vulnerability Disclosure

Vulnerability Disclosure Form(604 KB)
sha1: b4170ab94742b8cb2f2e95c966ed57115705c03b

Malware Reporting

Malware Reporting Form(175 KB)
sha1: 1be9d3fb677fd232c848ff1d9c6620f58c6ddcbc

Events

|| NCIIPC Training & Awareness Program ||       || Click here for Videos ||      

Contact Us

National Critical Information Infrastructure Protection Centre

A unit of National Technical Research Organisation

Block III, Old JNU Campus
New Delhi - 110 067

Toll Free: 1800-11-4430
General Help:
helpdesk1@nciipc.gov[.]in
helpdesk2@nciipc.gov[.]in
Site Administrator:
web.admin@gov[.]in
Incident Reporting:
ir@nciipc.gov[.]in
Vulnerability Disclosure:
rvdp@nciipc.gov[.]in
Malware Upload:
mal.repository@nciipc.gov[.]in