CERT-In Empaneled.
Intect — the legal entity Hion Security Pvt Ltd — is empaneled by CERT-In, India's national cyber-security authority. That empanelment authorizes us to conduct the country's statutory information-systems audits directly, and it underpins the credibility of our compliance-readiness work.
A real, usable credential — the reason a regulated board can put our name on an audit its regulator mandates.
What CERT-In empanelment is
CERT-In — the Indian Computer Emergency Response Team — is India's national agency for cyber-security. Empanelment is its vetting of an auditor to perform cyber-security audit work for regulated organizations.
CERT-In is the government body responsible for coordinating the response to cyber-security incidents across India. Alongside that mandate, it maintains a panel of assessed organizations approved to carry out information-security auditing and penetration testing — a list CERT-In itself publishes and maintains.
Being empaneled means Intect has been vetted onto that panel. For a regulated organization, it is the credential that lets an independent auditor's report be recognized by the regulator — which is why several Indian statutory audits require it.
We treat the empanelment the way we treat every credential on this site: as something to be used, not framed. It is the reason a bank's audit committee, an insurer's compliance head or a market intermediary's board can put our name on an audit their regulator will read — and it obliges us to work to the standard that recognition assumes, on every engagement, regulated or not.
The statutory audits it lets us conduct
Several Indian regulators require a CERT-In empaneled auditor. Because Intect holds that empanelment — and, for CICRA, a CISA-certified IS auditor — we conduct each of these audits directly.
IS Audit – RBI
The Information Systems audit RBI's IT-governance directions require of banks, NBFCs and payment-system operators.
SEBI CSCRF Audit
The Cyber Security & Cyber Resilience Framework audit SEBI mandates for its regulated entities.
IRDAI ISNP Audit
The information & cyber-security audit under IRDAI's guidelines, including for Insurance Self-Network Platforms.
UIDAI AUA/KUA Audit
The Aadhaar-ecosystem information-security audit for AUAs, KUAs and Sub-AUAs.
RBI Data Localization (SAR)
The System Audit Report on payment-data storage under RBI's data-localization directive.
CICRA
The information-security audit for Credit Information Companies under the CICRA framework and RBI's CIC directions.
How it reinforces our assurance work
The same empanelment underpins the credibility of our readiness and advisory work on the global standards and frameworks.
For ISO 27001, SOC 2, PCI DSS, GDPR, HIPAA and DPDP, the certificate, attestation or legal compliance is issued or held by another party — an accredited certification body, a licensed CPA firm, a QSA, or the organization itself. Our role is to get you audit-ready and to validate the controls technically by testing them. CERT-In empanelment, and the offensive-security heritage behind it, is what makes that validation credible.
The bench behind the work
The organisational empanelment is carried by certified people. These are the certifications held across the team — offensive, audit, security-management and privacy disciplines in one house.
- OSCP OffSec Offensive Security Certified Professional
- OSWE OffSec Offensive Security Web Expert
- CRTP Altered Security Certified Red Team Professional
- CRTE Altered Security Certified Red Team Expert
- eJPT INE Security Junior Penetration Tester
- CEH EC-Council Certified Ethical Hacker
- LPT EC-Council Licensed Penetration Tester
- CISA ISACA Certified Information Systems Auditor
- CIPP/E IAPP Certified Information Privacy Professional / Europe
- CISSP ISC2 Certified Information Systems Security Professional
- CISM ISACA Certified Information Security Manager
We assert only the credentials we actually hold.
CERT-In EmpaneledPut our empanelment to work.
Tell us which regulator you answer to — RBI, SEBI, IRDAI, UIDAI — or which standard you're preparing for, and we'll scope the audit or readiness engagement you need.