As artificial intelligence continues to reshape the global digital landscape, it is also introducing increasingly sophisticated cybersecurity risks. Recognising the growing threat posed by AI-enabled cyberattacks, the Government of India has significantly strengthened its cybersecurity framework by deploying AI-powered threat detection systems, expanding vulnerability assessments and enhancing cyber threat intelligence sharing.
The Ministry of Electronics and Information Technology (MeitY) informed Parliament that several legal, technical and administrative initiatives have been implemented to improve India's cyber resilience.
These measures are aimed at protecting critical digital infrastructure, government systems and businesses from evolving cyber threats that increasingly leverage artificial intelligence.
The information was shared by Minister of State for Electronics and Information Technology Jitin Prasada in a written reply in the Lok Sabha on July 29.
Artificial intelligence is transforming cybersecurity in two ways. While it enables organisations to strengthen their digital defences, cybercriminals are also using AI to automate phishing attacks, create convincing deepfakes, develop sophisticated malware and exploit software vulnerabilities more efficiently.
To counter these emerging risks, the Centre has strengthened its cybersecurity ecosystem with AI-powered monitoring systems, automated threat intelligence platforms and enhanced cyber incident response capabilities.
According to the government, these initiatives are designed to build a more resilient cybersecurity infrastructure capable of responding to increasingly complex AI-driven attacks.
The Indian Computer Emergency Response Team (CERT-In) has introduced AI-based situational awareness systems capable of identifying malicious domains, phishing campaigns and other cyber threats in real time.
These intelligent systems continuously monitor digital environments and help security teams detect suspicious online activities before they escalate into large-scale cyber incidents.
The deployment of AI-powered monitoring significantly improves early warning capabilities and enables faster incident response across government and critical sectors.
The government also informed Parliament that CERT-In has expanded AI-assisted vulnerability assessments of public-facing digital assets.
These security assessments are conducted within a secure sandbox environment, allowing experts to safely identify weaknesses in websites, applications and digital infrastructure before cyber attackers can exploit them.
By proactively identifying vulnerabilities, organisations can implement corrective measures and significantly reduce cyber risks.
CERT-In operates an automated cyber threat intelligence exchange platform that distributes customised security alerts to organisations across multiple sectors.
The platform enables participating institutions to receive timely information about emerging cyber threats, newly discovered vulnerabilities and ongoing attack campaigns.
Sharing actionable threat intelligence allows organisations to strengthen preventive security measures and respond more effectively to cyber incidents.
The government highlighted that CERT-In organised 10 cyber security exercises and drills during June and July this year under the theme "Building Resilience against Frontier AI-driven Cyber Threats."
These large-scale cybersecurity simulations involved:
The exercises covered several critical sectors, including:
Such cyber drills help organisations evaluate their preparedness, improve incident response procedures and strengthen coordination during cyber emergencies.
To develop specialised cybersecurity talent, CERT-In, in collaboration with SISA, launched the Certified Security Professional in Artificial Intelligence (CSPAI) programme in September 2024.
The programme is designed to equip cybersecurity professionals with practical knowledge and technical expertise to:
As artificial intelligence adoption accelerates across industries, skilled cybersecurity professionals will play an increasingly important role in protecting digital infrastructure.
Over the past three years, CERT-In has issued several advisories and technical frameworks addressing emerging AI-related cybersecurity challenges.
These include guidance on:
Frameworks to identify and reduce vulnerabilities in digital systems using AI-assisted security tools.
Best practices for organisations deploying generative AI technologies while minimising operational and cybersecurity risks.
Technical guidance to identify manipulated audio, video and image content created using artificial intelligence.
Recommendations to manage risks arising from AI-powered cyberattacks and automated threat actors.
Guidelines promoting greater transparency in software supply chains by documenting software components and dependencies.
Security recommendations to protect AI-enabled smart city infrastructure and connected public services from cyber threats.
The government stated that these initiatives are intended to promote an open, safe, trusted and accountable cyberspace while supporting India's growing digital economy.
As artificial intelligence becomes deeply integrated into sectors such as banking, healthcare, transportation, education and governance, ensuring robust cybersecurity will remain a national priority.
India's broader digital initiatives—including Digital India, the IndiaAI Mission and increasing adoption of AI-powered public services—make resilient cybersecurity infrastructure essential for protecting citizens, businesses and government institutions.
With cyber threats becoming increasingly sophisticated through the use of artificial intelligence, the Government of India is significantly expanding its cybersecurity capabilities through AI-driven monitoring, automated threat intelligence, advanced vulnerability assessments and specialised workforce development.
CERT-In's latest initiatives demonstrate the country's proactive approach to safeguarding critical digital infrastructure while promoting responsible AI adoption. As AI continues to transform both cybersecurity and cybercrime, sustained investment in technology, skills and collaborative threat intelligence will remain crucial for building a secure and resilient digital ecosystem.