Built for Indian procurement teams.
How National IT Service handles data, compliance, and procurement. GST, MSME, ISO 27001, SOC 2, DPDP, CERT-In, payment methods, cyber-insurance.
Compliance & registration
- ISO 27001: In progress — audit Q3 2026
- SOC 2 Type II: Readiness assessment Q4 2026
- DPDP Act 2023: Compliant — DPO designated
- CERT-In empanelled VAPT: Through partner — Indusface
Security
- Data residency: All customer data stored in AWS Mumbai / Hyderabad regions
- Encryption: TLS 1.3 in transit · AES-256 at rest
- Backup policy: Daily incremental, 30-day retention, monthly off-region copy
- Access control: MFA-enforced, role-based, quarterly access reviews
- Incident response: Documented runbooks, 6-hour CERT-In reporting
- Cyber insurance: Coverage available on request (Enterprise tier)
Payments & procurement
- Currency: INR (Indian Rupees) — primary
- Methods: Bank transfer (NEFT / RTGS), UPI, cheque, credit card
- Invoice: Tax-compliant Indian GST invoice — every transaction
- Input Tax Credit: Fully claimable as ITC for B2B buyers
- Foreign exchange: USD invoicing available for export-oriented clients