January
Fixed beats
The month at a glance
-
Republic Day is the centre of gravity this month.
Hacktivist DDoS, defacement and exfil campaigns concentrate around 26 January.
-
NIC issued a 7 January 2026 advisory.
The pattern has held three consecutive years per CloudSEK.
[source] -
Pre-position for the bigger I-Day window in August.
Use January to lock down public surfaces and verify NCIIPC protected-system inventories.
By sector — what to drill
- BFSI
Capital-markets DDoS posture review ahead of Budget Day (1 Feb). Finalise CSCRF FY 25-26 audit scoping; the master circular requires annual VAPT and SOC-monitoring sign-off.
Drill Tabletop: simulated DDoS on retail-banking and trading portals during Budget Day. Validate failover and customer-comms playbook.
[source] - Power
SLDC perimeter hardening. CEA Cyber Security Regulations 2025 expected to be notified later in 2026 — start gap-analysis against the draft published 6 Oct 2025.
Drill Pre-Republic-Day perimeter audit of all NCIIPC-notified Protected Systems; ensure CSIRT-Power reporting flows are tested.
[source] - O&G Baseline
CERT-In incident-reporting workflow tested at each operating site; NCIIPC liaison maintained.
- Water Baseline
Internet-exposed-surface scan monthly; OT segmentation review quarterly.
- Telecom
DoT Telecom Cyber Security Amendment Rules 2025 fully in force; non-telco "Telecommunication Identifier User Entity" (TIUE) onboarding into the Mobile Number Validation Platform continues.
Drill TIUE-class platforms: verify number-based identifier flows are MNV-compliant; document evidence of IMEI verification on refurbished-handset channels.
[source] - GovTech
Highest hacktivist-correlation month. State CEO portals, central service domains and IndiaStack-adjacent platforms are the lead targets.
Drill WAF rule-pack refresh for R-Day; pre-rendered static failovers for high-traffic .gov.in properties.
- Healthcare Baseline
Hospital BCM/DR drills quarterly; pharma listed-entity disclosure readiness verified.
- Manufacturing
Year-opening ransomware risk continues — Polycab (Mar 2024) and Tata Technologies (Feb 2025) are the recent comparables.
Drill OT/IT segmentation review at one plant; verify air-gap or DMZ between historian and corporate.
- Transport Baseline
Passenger PII surface map; supply-chain (SITA-style) dependencies catalogued.