Government Earmarks ₹790 Crore for Cybersecurity Programmes in FY27
The government has earmarked ₹790 crore for cybersecurity programmes in FY27, reinforcing efforts to protect India's expanding digital infrastructure as businesses, public institutions and citizens become increasingly dependent on connected platforms and online services.
The allocation comes as cyber risks grow alongside India's rapid digitalisation. Expanding cloud adoption, digital payments, artificial intelligence, online public services and interconnected enterprise systems have increased both the economic value of digital infrastructure and the potential consequences of cyberattacks.
The funding places greater attention on cyber resilience, threat detection, incident response, capacity building and protection of critical digital systems.
Cybersecurity Becomes Core Digital Infrastructure Priority
India's digital economy has expanded rapidly across government, banking, commerce, telecommunications and consumer services.
This growth creates a larger technology environment requiring protection against threats such as:
-
Ransomware
-
Phishing
-
Malware
-
Data breaches
-
Identity theft
-
Financial fraud
-
Distributed denial-of-service attacks
-
Supply-chain compromises
Cybersecurity is therefore increasingly being treated as an essential component of national digital infrastructure rather than simply an information-technology function.
₹790 Crore Allocation Supports Cybersecurity Programmes
The ₹790 crore earmarked for FY27 provides financial support for government cybersecurity initiatives at a time when digital threats are becoming more sophisticated.
Public cybersecurity expenditure can support areas including:
-
Threat monitoring
-
Incident response
-
Cybersecurity infrastructure
-
Vulnerability management
-
Security awareness
-
Training
-
Research
-
Coordination between agencies
The effectiveness of the allocation will ultimately depend on how funding is deployed across these priorities.
CERT-In Remains Central to Cyber Incident Response
The Indian Computer Emergency Response Team, or CERT-In, plays a major role in India's cybersecurity architecture.
Its responsibilities include monitoring cyber incidents, issuing security advisories and coordinating responses to digital threats.
As attack volumes increase, national incident-response capabilities become increasingly important for limiting the impact of major cybersecurity events.
Rapid detection can help organisations contain threats before they spread across larger networks.
Critical Infrastructure Requires Strong Protection
Cyberattacks against critical infrastructure can create consequences extending far beyond individual organisations.
Important systems include:
-
Power
-
Telecommunications
-
Banking
-
Transport
-
Government networks
-
Healthcare
-
Digital payments
-
Data infrastructure
Disruption across these sectors can affect businesses and citizens simultaneously.
Protecting critical information infrastructure therefore remains one of the most important components of national cybersecurity strategy.
Digital Payments Increase Security Requirements
India operates one of the world's largest digital-payment ecosystems.
The rapid adoption of online transactions has created significant convenience while also increasing opportunities for cybercriminals.
Threats can include:
-
Payment fraud
-
Account takeover
-
Social engineering
-
Fake applications
-
Phishing links
-
Credential theft
Strong cybersecurity infrastructure is essential for maintaining consumer confidence as digital financial activity continues expanding.
Government Services Become More Digitally Connected
Government services are increasingly delivered through digital platforms.
Citizens now interact with public systems for functions involving identification, taxation, benefits, documentation and payments.
As more public services move online, security becomes essential for protecting sensitive information and maintaining service availability.
A major cyber incident affecting government infrastructure could disrupt services across large populations.
AI Changes the Cybersecurity Landscape
Artificial intelligence is creating both opportunities and challenges for cybersecurity.
Security teams can use AI to:
-
Analyse network activity
-
Identify unusual behaviour
-
Detect malware
-
Prioritise vulnerabilities
-
Automate threat analysis
-
Accelerate incident response
At the same time, attackers can use AI to create more convincing phishing campaigns, automated attacks and sophisticated social-engineering attempts.
Deepfakes Create New Fraud Risks
Generative AI has made synthetic audio, video and images easier to create.
This introduces new risks for businesses and consumers.
Deepfakes can potentially be used for:
-
Executive impersonation
-
Payment fraud
-
Identity theft
-
Misinformation
-
Social engineering
Organisations may therefore need stronger verification procedures rather than relying solely on familiar voices, images or video communications.
Cloud Adoption Expands the Security Perimeter
Indian companies and government institutions are increasingly adopting cloud infrastructure.
Cloud computing can provide significant benefits in scalability, efficiency and access to advanced technology.
However, migration also creates new security requirements involving:
-
Identity management
-
Access controls
-
Encryption
-
Configuration
-
Monitoring
-
Data governance
Cloud security therefore represents an increasingly important component of India's broader cybersecurity requirements.
Data Centres Become Critical Infrastructure
India's data-centre industry is expanding as digital services, cloud platforms and AI workloads increase.
These facilities support enormous volumes of business and consumer activity.
Protecting them requires security across both physical and digital systems.
Cybersecurity controls must safeguard:
-
Servers
-
Networks
-
Storage
-
Cloud environments
-
Management systems
-
Customer data
The rapid expansion of AI infrastructure will make this challenge even more significant.
Businesses Face Rising Cybersecurity Costs
Cybersecurity is also becoming a larger operating expense for companies.
Enterprises increasingly need investment across:
-
Security software
-
Cybersecurity professionals
-
Cloud security
-
Endpoint protection
-
Identity management
-
Security operations centres
-
Employee training
-
Incident-response planning
For large organisations, cybersecurity is increasingly treated as a strategic risk-management function.
Small Businesses Remain Particularly Vulnerable
Large enterprises generally have more resources available for cybersecurity than smaller companies.
Micro, small and medium enterprises can face vulnerabilities because of:
-
Limited security budgets
-
Smaller IT teams
-
Outdated systems
-
Weak access controls
-
Limited employee training
Yet these businesses can still hold valuable customer, financial and commercial information.
Improving cybersecurity awareness across smaller businesses is therefore important for the wider digital ecosystem.
Cybersecurity Talent Demand Continues to Rise
Technology alone cannot solve cybersecurity challenges.
India requires skilled professionals capable of identifying vulnerabilities and responding to attacks.
Important roles include:
-
Security analysts
-
Ethical hackers
-
Incident responders
-
Cloud security engineers
-
Digital forensic specialists
-
Security architects
-
Threat researchers
Government-supported training and capacity-building programmes can help expand the available talent pool.
Cybersecurity Creates Opportunity for Indian Technology Companies
Rising security requirements also create commercial opportunities.
Indian IT services, software and cybersecurity companies can provide solutions across:
-
Managed security
-
Threat intelligence
-
Identity protection
-
Cloud security
-
Compliance
-
Security consulting
-
Incident response
Domestic demand can also help Indian cybersecurity companies develop products capable of competing internationally.
Banks and Financial Institutions Remain Major Targets
Financial institutions hold valuable financial and personal information, making them attractive targets for cybercriminals.
Banks must protect:
-
Customer accounts
-
Payment infrastructure
-
Mobile banking
-
Internal networks
-
Transaction systems
-
Customer data
A major cybersecurity incident can create financial losses as well as significant reputational damage.
Telecom Networks Carry Growing Strategic Importance
Telecommunications infrastructure supports almost every major digital service.
Mobile networks connect:
-
Banking
-
Government platforms
-
Businesses
-
Consumers
-
Cloud services
-
Internet-of-things devices
As 5G adoption expands, the number of connected devices and potential attack surfaces can increase further.
Telecom cybersecurity therefore has implications across the broader economy.
Cybersecurity Requires Public-Private Coordination
Much of India's digital infrastructure is operated by private companies.
Government cybersecurity policy therefore needs close coordination with:
-
Banks
-
Telecom operators
-
Technology companies
-
Cloud providers
-
Data centres
-
Digital platforms
-
Infrastructure operators
Cyber threats can spread across organisational boundaries, making information sharing and coordinated response particularly important.
Employee Awareness Remains a Critical Defence
Many successful cyberattacks exploit human behaviour rather than technical weaknesses.
Employees may accidentally expose organisations by:
-
Clicking malicious links
-
Sharing passwords
-
Opening infected attachments
-
Approving fraudulent requests
-
Using weak credentials
Regular security awareness programmes can therefore be as important as sophisticated security software.
Cyber Resilience Goes Beyond Preventing Attacks
No cybersecurity system can guarantee that every attack will be prevented.
Organisations therefore need resilience strategies that allow them to continue operating and recover quickly.
Important capabilities include:
-
Data backups
-
Disaster recovery
-
Incident-response plans
-
Network segmentation
-
Business continuity
-
Recovery testing
The objective is not only preventing attacks but reducing their impact when they occur.
What Businesses Should Watch
The government's FY27 cybersecurity allocation puts several areas in focus:
-
CERT-In capabilities
-
Critical infrastructure protection
-
Cybersecurity regulations
-
AI-related threats
-
Digital fraud
-
Cloud security
-
Cybersecurity training
-
Incident reporting
-
Public-private cooperation
-
Security technology investment
Businesses should monitor how the ₹790 crore allocation is translated into specific programmes and operational capabilities.
Outlook
India's cybersecurity requirements will continue expanding as the country's economy becomes more digitally connected.
AI, cloud computing, digital payments, data centres and online government services will create significant economic opportunities, but each also expands the potential cyberattack surface.
The ₹790 crore earmarked for FY27 signals continued government focus on strengthening the country's ability to detect, prevent and respond to digital threats.
Long-term success will require sustained investment in technology, skilled professionals, institutional coordination and cybersecurity awareness.
Conclusion
The government's ₹790 crore allocation for cybersecurity programmes in FY27 highlights the growing strategic importance of protecting India's digital economy.
As businesses and public institutions adopt cloud computing, artificial intelligence and increasingly connected systems, cybersecurity risks are becoming more complex and potentially more disruptive.
Government investment can strengthen national threat monitoring, incident response, critical infrastructure protection and cybersecurity capacity.
However, building a resilient digital economy will also require companies and institutions to continuously improve their own security practices.
Cybersecurity is increasingly becoming a shared responsibility across government, businesses, technology providers and individual users.


POST A COMMENT (0)
All Comments (0)
Replies (0)