Indian IT Firms Embrace Zero Trust Cybersecurity to Tackle AI Risks
With the rise of AI, major Indian IT firms like Infosys and HCLTech are adopting Zero Trust cybersecurity strategies. This transition aims to enhance security in compliance with India’s Digital Personal Data Protection Act, highlighting a significant procurement opportunity for advanced cybersecurity solutions.
Key Signals
- Indian IT firms implement Zero Trust frameworks amid AI risks
- Focus on compliance with India's Digital Personal Data Protection Act, 2023
- Demand for AI-enabled cybersecurity solutions increasing in the market
"The agent did it is not a defence. Attribution is now a compliance capability, not just a forensic one."
In a rapidly changing cybersecurity landscape, Indian IT firms such as Infosys, HCLTech, Cognizant, and Persistent Systems are actively adopting Zero Trust cybersecurity frameworks. This proactive approach is largely driven by the new challenges introduced by artificial intelligence (AI) technologies and the complexities of managing data in an international operational context. Zero Trust is centered around the principle of “never trust, always verify,” meaning that systems must be continuously monitored and verified, rather than automatically trusted based on location or previous access. This paradigm is becoming increasingly relevant as these companies expand their global operations while maintaining data integrity and security.
The introduction of AI into business processes is evolving the attack surface for organizations. Traditionally, cybersecurity defenses were designed to secure human users, devices, networks, and applications. However, with the deployment of AI applications, autonomous agents, and APIs, new vulnerabilities have emerged. According to industry leaders, these AI systems can not only access sensitive data but also execute tasks independently, greatly increasing the risk if such systems were to be compromised. This shift in the operational model necessitates a Zero Trust approach, which ensures that every user, device, and application is continuously authenticated and authorized, rather than trusted outright once inside the network.
Additionally, compliance with India's Digital Personal Data Protection Act, 2023, is a driving force behind this shift. Organizations are now required to implement stringent data protection measures, which align closely with American standards like those from the National Institute of Standards and Technology (NIST). Procurement professionals and government contractors should pay close attention to this trend, as the demand for advanced cybersecurity solutions that merge AI capabilities with robust identity and access management is on the rise. The emphasis on human oversight, aided by AI-driven threat detection, creates a strong procurement opportunity for vendors with the capacity to deliver integrated solutions capable of safeguarding sensitive data across international borders.
As organizations delve deeper into implementing Zero Trust frameworks, it is vital for them to engage with suppliers who can provide not just security, but also accountability mechanisms. For instance, vendors capable of offering AI-enabled cybersecurity solutions that encompass runtime authority enforcement, auditable evidence, and autonomous defense mechanisms are poised to find increased demand in the upcoming market landscape. The procurement implications are substantial, indicating a shift where organizations outsourcing operations internationally must prioritize adopting Zero Trust architectures as a means to mitigate legal and security risks associated with cross-border data handling.
In summary, as enterprises increasingly leverage technology to enable and enhance their operational processes, strategic foresight in cybersecurity investments will be essential. The move towards a Zero Trust framework is more than just a technological upgrade; it indicates a cultural shift within organizations regarding data protection and compliance in an era where AI plays a crucial role in both operations and security.
- Compliance with India's Digital Personal Data Protection Act, 2023 is shaping procurement requirements.
- Organizations outsourcing internationally must adopt Zero Trust frameworks to manage legal and security risks.
- There is a notable demand for AI-enabled cybersecurity featuring runtime authority enforcement and auditable evidence.
- Focus on human oversight in AI threat detection emphasizes the need for hybrid security models in procurement strategies.
- Collaboration between IT firms to enhance cybersecurity measures will open new avenues in existing frameworks.
Agencies
- National Institute of Standards and Technology
Vendors
- Infosys
- HCLTech
- Cognizant
- Persistent Systems
Sources
- Navigating the Shift from Zero Trust to Zero Assumption in Cybersecurity, ETCISOET CISO · Sep 21
- Zero Trust Cyber Security Gains Traction Among IT Firms Amidst Surge In AI Usage - Trak.in - Indian Business of Tech, Mobile & StartupsTrak.in · Sep 21
- Zero trust when your operations have travelled abroadBusinessamlive · Sep 21