(1) Types of incidents and level of support.—
(a) CERT-In shall address all types of cyber security incidents cyber incidents which occur or are expected to occur in the country but the level of support given by CERT-In will vary depending on the type and severity of the incident, affected entity, be it individual or group of individuals, organisations in the Government, public and private domain, and the resources available with CERT-ln at that time, though in all cases a quick response with an aim to minimize any further damage or loss of information to the affected entity will be made in a shortest possible time. Resources will be assigned according to the following priorities listed in decreasing order:— (I) threats to the physical safety of human beings due to cyber security incidents;
(II) cyber incidents and cyber security incidents of severe nature (such as denial of service, distributed denial of service, intrusion, spread of computer contaminant,) on any part of the public information infrastructure including backbone network infrastructure;
(III) large-scale or most frequent incidents such as identity theft, intrusion into computer resource, defacement of websites etc.;
(IV) compromise of individual user accounts on multi-user systems;
(V) types of incidents other than those mentioned above will be prioritised according to their apparent severity and extent.
[W] II-13*3 3( j ) ] *m\ 3TI Tr^m : aTHTyR^ 15
(b) CERT-ln shall endeavour to respond and present information and assistance to the affected entities to deal with cyber security incidents as appropriate and the ultimate responsibility of the security of the computer resource shall rest with owner of the computer resource.
(2) Cooperation and collaboration.— CERT-In shall collaborate with:— (I) organisations within and outside the country engaged in the specialised areas in protecting and responding to cyber security incidents;
(II) organisations engaged in collection of intelligence in general, law enforcement, investigation and forensics;
(III) academia, industry, service providers and research and development institutions;
(IV) individuals or group of individuals.
(3) Communication and authentication with CERT-In.— The stakeholders and public at large can communicate with the CERT-In through communication systems ranging from telephone, fax, email and postal letters. The appropriate procedures will be disseminated through its website from time to time.