Frameworks

IT Act / CERT-In

Indian cyber compliance — incident reporting, log retention, and security practice documentation in one platform.

Overview

Why IT Act / CERT-In on one graph

CERT-In directions and the IT Act intersect with how you log, retain, and report incidents. BNB Infinite GRC ties incident workflows to compliance controls so timelines and evidence are defensible.

Integrations help validate logging coverage and configuration state against what your policies claim.

What teams must show
  • Incident classification and notification records
  • Log configuration and retention attestations
  • SOC playbooks aligned to regulatory expectations

Platform

How we help you run the framework

Capabilities map directly to workspace modules — no parallel spreadsheets required.

Incident reporting readiness

Clocks, severity rubrics, and regulator templates reduce ambiguity during live events.

Log retention evidence

Map retention controls to actual log sources and validate integration health continuously.

Cross-framework reuse

Share incident records with ISO or SOC programs without duplicate tickets or effort.

Roadmap

Your path to IT Act / CERT-In compliance

Map CERT-In controls

Align your security controls to CERT-In directions and IT Act obligations in a shared control graph.

Incident & log workflows

Run structured incident classification with automatic clocks and retention validation via integrations.

Demonstrate compliance

Present defensible incident records, log retention evidence, and SOC playbooks to regulators.

IT Act / CERT-In in your tenant

Map criteria, owners, and evidence once — reuse across audits and customer reviews.