National Cyber Coordination Centre

Last updated

National Cyber Coordination Centre
Emblem of India.svg
Agency overview
Jurisdiction Government of India
Agency executive
  • Lt. Gen. Rajesh Pant (Retd.), National Cyber Security Coordinator
Parent departmentMinistry of Electronics and Information Technology (India) [1]

The National Cyber Coordination Centre (NCCC) is an operational cybersecurity and e-surveillance agency in India. It is intended to screen communication metadata and co-ordinate the intelligence gathering activities of other agencies. Some have expressed concern that the body could encroach on Indian citizens' privacy and civil-liberties, given the lack of explicit privacy laws in the country. [2]

Contents

Motivation

India has no dedicated Cyber-security regulation and is also not well prepared to deal with cyberwarfare. [3] However, India has formulated the National Cyber Security Policy 2013 which is not yet implemented. [4] The National Cyber Coordination Centre's purpose would be to help the country deal with malicious cyber-activities by acting as an Internet traffic monitoring entity that can fend off domestic or international attacks. [5] [6]

Components of the NCCC include a cybercrime prevention strategy, cybercrime investigation training and review of outdated laws.

Background

The NCCC is an e-surveillance and cybersecurity project of Government of India. [7] [8] It has been classified to be a project of Indian government without a legal framework, which may be counterproductive as it may violate civil liberties and human rights. [2]

There were concerns that National Cyber Coordination Centre (NCCC) could possibly be abused for indulging in mass surveillance in India, privacy violation and civil liberty violations as agencies like NTRO[ clarification needed ] and organisations like the National Security Council Secretariat are exempted from the applicability of any transparency law like Right to Information Act. [2] [9] Mass surveillance in India is not new as India already has e-surveillance projects like Central Monitoring System, [10] NATGRID, and DRDO NETRA.

Many, including legal experts, [11] [12] in India believe that intelligence agencies and their e-surveillance projects require parliamentary oversight. [13] [14] [15] Although NCCC is jurisdictionally under the Ministry of Home Affairs, it coordinates with multiple security and surveillance agencies as well as with CERT-In of the Ministry of Electronics and Information Technology.

Status

The National Cyber Coordination Centre received an in principle approval in May 2013 and would come under the National Information Board. [16] In September 2014, Indian government discussed to establish it. [17] In November 2014 Rs. 1,000 crore has been allotted to improve Indian cybersecurity. From this Rs. 800 crore would be utilised for National Cyber Coordination Centre purposes. [18]

On 9 August, in response to a question, minister of State P.P. Chaudhary mentioned that Phase-1 of the National Cyber Coordination Centre is now operational. [19] Indian and U.S. intelligence agencies are also working together to curb misuse of social media platforms in the virtual world by terror groups. [20] [21] [22]

Functions

Government sources mentioned that the government would also involve Internet service providers (ISPs) to ensure round-the-clock monitoring of the Internet, while expertise of other private sector organisations would be utilised when required. It will be India’s first layer for cyber threat monitoring and all communication with government and private service providers would be through this body only. The NCCC will be in virtual contact with the control room of all ISPs to scan traffic within the country, flowing at the point of entry and exit, including international gateway. Apart from monitoring the Internet, the NCCC would look into various threats posed by cyber attacks. The NCCC would also address the threats faced by the computer networks of government departments and organisations handling sensitive government data and important websites. [23]

National Cyber Security Coordinator

The first National Cyber Security Coordinator/ Cyber-security chief was Dr. Gulshan Rai. He was followed by Lt. Gen. Rajesh Pant (Retd). Currently it is held by Lt Gen MU Nair. [24]

Similar projects

Projects similar in nature:

Related Research Articles

<span class="mw-page-title-main">National Security Agency</span> U.S. signals intelligence organization

The National Security Agency (NSA) is an intelligence agency of the United States Department of Defense under the authority of the Director of National Intelligence (DNI). The NSA is responsible for global monitoring, collection, and processing of information and data for foreign and domestic intelligence and counterintelligence purposes, specializing in a discipline known as signals intelligence (SIGINT). The NSA is also tasked with the protection of U.S. communications networks and information systems. The NSA relies on a variety of measures to accomplish its mission, the majority of which are clandestine. The NSA has roughly 32,000 employees.

<span class="mw-page-title-main">Communications Security Establishment</span> Canadas national cryptologic agency

The Communications Security Establishment, formerly called the Communications Security Establishment Canada (CSEC), is the Government of Canada's national cryptologic agency. It is responsible for foreign signals intelligence (SIGINT) and communications security (COMSEC), protecting federal government electronic information and communication networks, and is the technical authority for cyber security and information assurance.

<span class="mw-page-title-main">Government Communications Security Bureau</span> New Zealand signals intelligence agency

The Government Communications Security Bureau is the public-service department of New Zealand charged with promoting New Zealand's national security by collecting and analysing information of an intelligence nature. The GCSB is considered to be New Zealand's most powerful intelligence agency, and has been alleged to have conducted more espionage and data collection than the country's primary intelligence agency, the less funded NZSIS. This has at times proven controversial, although the GCSB does not have the baggage of criticism attached to it for a perceived failure to be effective like the NZSIS does. The GCSB is considered an equivalent of GCHQ in the United Kingdom or the NSA in the United States.

<span class="mw-page-title-main">Directorate General of Forces Intelligence</span> Defence intelligence section of the Bangladesh Armed Forces

The Directorate General of Forces Intelligence, commonly known by its acronym DGFI, is the defense intelligence agency of the Bangladesh Armed Forces, tasked with collection, collation and evaluation of strategic and topographic information, primarily through human intelligence (HUMINT). As one of the principal members of the Bangladesh intelligence community, the DGFI reports to the Director-General under the excecutive authority of the head of government, the Prime Minister, and is primarily focused on providing intelligence for the Prime Minister, the Cabinet of Bangladesh, and the Armed Forces of Bangladesh.

A cybersecurity regulation comprises directives that safeguard information technology and computer systems with the purpose of forcing companies and organizations to protect their systems and information from cyberattacks like viruses, worms, Trojan horses, phishing, denial of service (DOS) attacks, unauthorized access and control system attacks. There are numerous measures available to prevent cyberattacks.

The Australian Intelligence Community (AIC) and the National Intelligence Community (NIC) or National Security Community of the Australian Government are the collectives of statutory intelligence agencies, policy departments, and other government agencies concerned with protecting and advancing the national security and national interests of the Commonwealth of Australia. The intelligence and security agencies of the Australian Government have evolved since the Second World War and the Cold War and saw transformation and expansion during the Global War on Terrorism with military deployments in Afghanistan, Iraq and against ISIS in Syria. Key international and national security issues for the Australian Intelligence Community include terrorism and violent extremism, cybersecurity, transnational crime, the rise of China, and Pacific regional security.

The National Security Council (NSC) of India is an executive government agency tasked with advising the Prime Minister's Office on matters of national security and strategic interest. It was established by the former Prime Minister of India Atal Bihari Vajpayee on 19 November 1998, with Brajesh Mishra as the first National Security Advisor.

<span class="mw-page-title-main">National Technical Research Organisation</span> Technical intelligence agency of India

The National Technical Research Organisation (NTRO) is a technical intelligence agency of India. It was set up in 2004. The agency reports to the National Security Advisor and to the Prime Minister's Office. NTRO also comprises the National Critical Information Infrastructure Protection Centre and the National Institute of Cryptology Research and Development.

<span class="mw-page-title-main">Information Technology Act, 2000</span> Act of the Parliament of India

The Information Technology Act, 2000 is an Act of the Indian Parliament notified on 17 October 2000. It is the primary law in India dealing with cybercrime and electronic commerce.

<span class="mw-page-title-main">Internet police</span> Term describing governmental and official involvement in cyber policing

Internet police is a generic term for police and government agencies, departments and other organizations in charge of policing the Internet in a number of countries. The major purposes of Internet police, depending on the state, are fighting cybercrime, as well as censorship and propaganda.

The EINSTEIN System is an network intrusion detection and prevention system that monitors the networks of US federal government departments and agencies. The system is developed and managed by the Cybersecurity and Infrastructure Security Agency in the United States Department of Homeland Security (DHS).

NETRA is a software network developed by India's Centre for Artificial Intelligence and Robotics (CAIR), a Defence Research and Development Organisation (DRDO) laboratory, and is used by the Intelligence Bureau, India's domestic intelligence agency, and the Research and Analysis Wing (R&AW), the country's external intelligence agency to intercept and analyse internet traffic using pre-defined filters. The program was tested at smaller scales by various national security agencies, and is reported to be deployed nationwide as of 2022.

The National Intelligence Grid or NATGRID is the integrated intelligence master database structure for counter-terrorism purpose connecting databases of various core security agencies under Government of India collecting comprehensive patterns procured from 21 different organizations that can be readily accessed by security agencies round the clock. Its current CEO is Ashish Gupta, IPS. It is reported to be operational since 31 December 2020.

<span class="mw-page-title-main">Central Monitoring System</span>

The Central Monitoring System, abbreviated to CMS, is a centralized telephone interception provisioning system installed by the Centre for Development of Telematics (C-DOT), an Indian Government owned telecommunications technology development centre, and operated by Telecom Enforcement Resource and Monitoring (TERM) Cells. The CMC system is going to be set up in each major state collocated with the TERM Cells. Telecom operators in India are required by law to give access to their networks to law enforcement agencies.

Telecom Enforcement Resource and Monitoring (TERM), formerly known as Vigilance Telecom Monitoring (VTM), is the vigilance and monitoring wing of the Indian Department of Telecommunications (DoT). TERM is made up of 34 Cells in India's 22 telecom circles and 10 large telecom districts, each headed by a Senior Administrative Grade (SAG) level officer, termed as Deputy Director General (DDG). The main functions of TERM Cells are vigilance, monitoring and security of the network. Apart from this, TERM Cells also operate the Central Monitoring System (CMS), a clandestine mass electronic surveillance program, and carry out other functions. The TERM Cells function as the subordinate offices of the DoT in the field. These Cells represent the Telegraph Authority and the Licensor.

Presidential Policy Directive 20 (PPD-20), provides a framework for U.S. cybersecurity by establishing principles and processes. Signed by President Barack Obama in October 2012, this directive supersedes National Security Presidential Directive NSPD-38. Integrating cyber tools with those of national security, the directive complements NSPD-54/Homeland Security Presidential Directive HSPD-23.

<span class="mw-page-title-main">Mass surveillance in India</span> Overview of mass surveillance in India

Mass surveillance is the pervasive surveillance of an entire or a substantial fraction of a population. Mass surveillance in India includes Surveillance, Telephone tapping, Open-source intelligence, Lawful interception, and surveillance under Indian Telegraph Act, 1885.

<span class="mw-page-title-main">Integrated Coastal Surveillance System</span>

The Integrated Coastal Surveillance System (ICSS) is a coastal surveillance system operated by India with the goal to protect its coastline, ensure regional security, and assist friendly navies by quickly detecting, locating and monitoring maritime activity in the Indian Ocean. The system was developed by the Defence Research and Development Organisation (DRDO) and Bharat Electronics, and forms part of the National Command Control Communication and Intelligence System (NC3I). Although the ICSS was built primarily for coastal and maritime security, the system can also be used for vessel traffic management, harbour surveillance and navigation. The core of the ICSS is a network of remote ground-based radar stations called the Coastal Surveillance Network (CSN). In addition to radars, stations are also fitted with optical sensors, electro-optical sensors, thermal imagers, cameras, meteorological systems, an Automatic Identification System (AIS), a distress alert transmission system (DATS), electronic warfare support measures, and very high frequency (VHF) radio communication systems.

References

  1. https://www.meity.gov.in/writereaddata/files/Gazette%20Notification%20-%20Designated%20Officer%2069A%20NCCC%20Dir%20oct2020.pdf [ bare URL PDF ]
  2. 1 2 3 "India's cyber protection body pushes ahead". Hindustan Times. 29 January 2014. Archived from the original on 19 January 2014. Retrieved 6 November 2014.
  3. "India Unprepared For Cyber Warfare". Business Insider. 16 October 2014. Retrieved 7 November 2014.
  4. "National Cyber Security Policy-2013". Department Of Electronics And Information Technology. 1 July 2013. Retrieved 7 November 2014.
  5. "India to Beef Up National Cyber Defense". Softpedia News. 5 November 2014. Retrieved 6 November 2014.
  6. "Govt plans to set up Rs 800 crore cyber intelligence centre". Firstbiz. 15 September 2014. Retrieved 7 November 2014.
  7. 1 2 "India gets ready to roll out cyber snooping agency". The Hindu. 10 June 2013. Retrieved 10 October 2014.
  8. "India Sets Up Domestic PRISM-Like Cyber Surveillance?". The Diplomat. 10 June 2013. Retrieved 10 October 2014.
  9. "Exempted Organisations From Applicability Of Right to Information Act 2005". CIC Online. 26 September 2005. Retrieved 6 November 2014.
  10. "Big Brother is listening". The Telegraph. 21 April 2013. Archived from the original on 9 November 2014. Retrieved 7 November 2014.
  11. "Big Brother Must Not Overstep the Limits". Tehelka. 3 March 2012. Retrieved 7 November 2014.
  12. "The trouble with big brother's eye". Tehelka. 31 August 2012. Retrieved 7 November 2014.
  13. "Time for parliamentary oversight over intelligence agencies". Deccan Herald. 23 June 2012. Retrieved 7 November 2014.
  14. "Take steps to make intelligence agencies accountable to Parliament: Team Anna". Times Of India. 6 June 2012. Retrieved 7 November 2014.
  15. "Spooks Under Scrutiny". India Today. 12 July 2013. Retrieved 7 November 2014.
  16. "Centre to shield India from cyber attacks proposed". Hindustan Times. 16 August 2014. Archived from the original on 19 January 2014. Retrieved 10 October 2014.
  17. "Super cyber intelligence body soon, announces IT Minister". The Hindu. 14 September 2014. Retrieved 10 October 2014.
  18. "Rs 1,000 cr set aside for cyber shield". Business Standard. 5 November 2014. Retrieved 5 November 2014.
  19. "Minister's response in the Lok Sabha to a question on the operationalization of the NCCC" (PDF). Lok Sabha.
  20. "Cyber Crime Prevention Strategy will be Strengthened: Home Minister Shri Rajnath Singh". Press Information Bureau, Government of India, Ministry of Home Affairs. 31 October 2014. Retrieved 6 November 2014.
  21. "Panel proposes axing 73 more obsolete laws". Times Of India. 4 November 2014. Retrieved 6 November 2014.
  22. "Indo-US Intelligence Team to End Virtual Terrorism". Indian Express. 5 November 2014. Retrieved 6 November 2014.
  23. Joshi, Sandeep (10 June 2013). "India gets ready to roll out cyber snooping agency". The Hindu. ISSN   0971-751X . Retrieved 16 June 2021.
  24. "Archived copy". Archived from the original on 5 July 2023. Retrieved 5 July 2023.{{cite web}}: CS1 maint: archived copy as title (link)
  25. "Big brother is watching you?". Hindustan Times. 22 June 2013. Archived from the original on 9 November 2014. Retrieved 6 November 2014.
  26. "Is India about to gets its own PRISM?". Index On Censorship. 10 July 2013. Retrieved 6 November 2014.
  27. "Defence Ministry's new spy system 'Netra' soon to be launched". Iamwire. 16 December 2013. Retrieved 6 November 2014.