Loading...

⚠ ✕
❮ Top
☎ Help
☰
×

By creating an account you can:

Logo TaxTMI
Call Us / Help / Feedback✕

Contact Us At :

✉ E-mail: [email protected]

✆ Call / WhatsApp at: +91 99117 96707

For more information, Check Contact Us

FAQs :

To know Frequently Asked Questions, Check FAQs

Most Asked Video Tutorials :

For more tutorials, Check Video Tutorials

Submit Feedback/Suggestion :

Email :
Please provide your email address so we can follow up on your feedback.
Category :
Description :
Min 15 characters 0/2000
Make Most of Text Search ✕
  1. Checkout this video tutorial: How to search effectively on TaxTMI.
  2. Put words in double quotes for exact word search, eg: "income tax"
  3. Avoid noise words such as : 'and, of, the, a'
  4. Sort by Relevance to get the most relevant document.
  5. Press Enter to add multiple terms/multiple phrases, and then click on Search to Search.
  6. Text Search
  7. The system will try to fetch results that contains ALL your words.
  8. Once you add keywords, you'll see a new 'Search In' filter that makes your results even more precise.
  9. Text Search
╳
Add to...
You have not created any category. Kindly create one to bookmark this item!
✕
Create New Category
Hide
Title :
Description :
❮❮ Hide
❮ Default View
Expand ❯❯
Close ✕
🔎 Filters / Advanced Search ❯
TEXT

Press 'Enter' to add multiple search terms. Rules for Better Search

Search In
Main Text + AI Text ❯
  • Main Text
  • Main Text + AI Text
  • AI Text
Category: ?
Categorized by AI
---- All Categories ---- ❯
  • ---- All Categories ----
  • Income Tax
  • GST
  • Customs, DGFT & SEZ
  • FEMA & RBI
  • Corp. Laws, SEBI & IBC
  • PMLA, Black Money & ED
  • Budget
  • News and Press Release
  • PTI News
Month:
---- All Months ---- ❯
  • ---- All Months ----
  • January
  • February
  • March
  • April
  • May
  • June
  • July
  • August
  • September
  • October
  • November
  • December
Year:
---- All Years ---- ❯
  • ---- All Years ----
  • 2026
  • 2025
  • 2024
  • 2023
  • 2022
  • 2021
  • 2020
  • 2019
  • 2018
  • 2017
  • 2016
  • 2015
  • 2014
  • 2013
  • 2012
  • 2011
Sort By: ?
In Sort By 'Default', exact matches for text search are shown at the top, followed by the remaining results in their regular order.
Relevance Default Date
    BharatBenz Inaugurates India’s Highest-Altitude Workshop at Leh-Ladakh in Collaboration with PPS Trucking
    KRAFTON India Brings the Final BGMI Redeem Code Drop on September 23 with the Golden Miramar - Pan
    Sikkim govt to introduce Aadhaar-based biometric attendance for employees from Oct 1
    Swastika Infra Limited Announces Launch of Initial Public Offering
    S&P, Fitch, others raise FY’27 India GDP growth projections; see RBI rate hike on inflation fears
    Centre for Trade and Investment Law Hosts Webinar on WTO Fisheries Subsidies Agreement
    Banks to remain open on Sunday, 27th September, for convenience of customers
    CGPSC scam: ED alleges Rs 45 lakh 'CSR' payment to ex-CGPSC chief for favouring businessman's kin
    Banks to remain open on Sunday for customers' convenience in view of proposed strike
    S&P, Fitch raise FY'27 India GDP growth projections; see 25 bps RBI rate hike on inflation fears
    ADB raises India's GDP growth forecast to 7pc on stronger-than-expected Q1 growth
    Hughes Precision Raises ₹250+ Crore to Accelerate Ammunition Manufacturing Expansion
    Fitch raises India's FY'27 GDP growth projections to 6.9 pc
    ED searches against entities involved in IBC process for Kolkata company
    Union Minister Shri Piyush Goyal Interacts with Industry Stakeholders on Ease of Doing Business, FTA Opportunities and Trade Reforms Workshop
    S&P raises India's FY27 GDP growth forecast to 7pc, sees 25 bps RBI rate hike
    India sees CELAC as imp partner in shaping more representative global order: EAM Jaishankar
    Trump says US, Iranian officials met, shortly after warning he may 'annihilate' Iran
    Carney says Canada, India aim to wrap up trade talks by G20 ahead of Modi visit
    Oil industry warns against diesel export ban
❮
❯
❯❯
Maximize Maximize Maximize
0 / 200
Expand Note
Add to Folder

No Folders have been created

+

Are you sure you want to delete "My most important" ?

NOTE:

News
Showing Results for :
Reset Filters
Results Found:
Show All Summaries Hide All Summaries
September 23, 2026
Show AI Summary
Commercial vehicle after-sales support expands authorised repairs, genuine spares, roadside assistance, and uptime for remote high-altitude fleet operations.
Commercial vehicle after-sales support is expanded through a BharatBenz 3S facility operated by PPS Trucking for remote high-altitude fleet operations. The facility provides sales, authorised service, genuine spare parts, diagnostic systems, repair tools and round-the-clock roadside assistance. Trained technicians, service bays and regional spare-parts inventory are intended to reduce repair turnaround times and vehicle downtime. The support network serves commercial vehicles engaged in stone-crushing, road construction, communication-infrastructure transport and other heavy-duty operations in difficult terrain.
September 23, 2026
Show AI Summary
Redeem-code eligibility limits govern BGMI's final Golden Miramar Pan reward drop through the official redemption portal.
BGMI's final redeem-code series offers limited-time Golden Miramar - Pan rewards through general redeem codes valid only until September 25 on the official redemption website. Redemption requires a Character ID, valid code, Captcha verification, and submission through the redeem centre. Each code is limited to 10 users on a first-come, first-served basis; users may redeem one code daily, and each code is usable once per account. Guest accounts are excluded, and in-game mail rewards must be claimed within 30 days.
September 23, 2026
Show AI Summary
Aadhaar-based biometric attendance requires employee registration, integrates leave records, and triggers automated pay deductions for unauthorised absences.
Aadhaar Enabled Biometric Attendance System (AEBAS) is mandatory for regular and temporary government employees and integrates attendance and leave data with PRANALI. Monthly reports are verified to identify authorised leave and net absence. Remaining unauthorised absence may result in digitally issued extraordinary-leave or leave-without-pay orders, personnel-record updates, and automated salary deductions. Temporary employees' failure to record attendance is treated as leave without pay.
September 23, 2026
Show AI Summary
Initial public offering by Swastika Infra combines a fresh issue and offer for sale, subject to approvals.
Swastika Infra Limited proposes an initial public offering comprising a fresh issue of equity shares and an offer for sale, with proposed listings on BSE Limited and National Stock Exchange of India Limited. The allocation framework covers qualified institutional buyers, anchor investors, non-institutional investors and retail individual investors. Net fresh-issue proceeds are intended for incremental working-capital requirements and general corporate purposes. Completion remains subject to statutory and regulatory requirements, approvals, market conditions and other considerations.
September 23, 2026
Show AI Summary
Monetary policy tightening may follow resilient growth as inflation, conflict risks, and weather pressures reshape economic projections.
FY27 GDP growth projections were raised to a range of 6.9%-7.1% on stronger June-quarter activity, resilient demand, investment, consumption, exports, capital inflows and limited supply disruptions. Growth may moderate as energy costs reduce purchasing power, activity slows and weather risks persist. Policy-rate tightening is projected as an inflation response, with forecasts of a 25-basis-point increase and temporary rate rises to offset price pressures.
September 23, 2026
Show AI Summary
Fisheries subsidy disciplines require transparent reporting, domestic monitoring, and coordinated implementation to address harmful subsidies and IUU fishing.
Fisheries subsidy disciplines target support linked to illegal, unreported and unregulated fishing, fishing of overfished stocks subject to rebuilding conditions, and fishing on the unregulated high seas. Members accepting the Agreement must implement and administer these disciplines and comply with notification and transparency obligations. Effective implementation depends on reliable fisheries data, monitoring and reporting systems, vessel registration, inter-agency coordination and technical capacity.
September 23, 2026
Show AI Summary
Essential banking service continuity requires Sunday operations by public sector and regional rural banks during the proposed strike.
Public Sector Banks and Regional Rural Banks will function normally on Sunday, 27 September 2026, to prevent an extended interruption to public banking needs during the proposed nationwide strike. Reserve Bank approval covers full operation of branches, offices, ATM-link branches and Currency Chests, alongside measures intended to maintain uninterrupted essential banking services.
September 23, 2026
Show AI Summary
Money laundering allegations in public recruitment describe CSR-linked payments, examination manipulation, and candidate payments treated as proceeds of crime.
Money-laundering allegations concerning state public-service examinations identify two alleged streams of proceeds of crime: corporate social responsibility funding allegedly routed to an institution controlled by the former commission chairman in return for favouring selected candidates, and money allegedly collected from candidates and families for advance access to examination papers and secured selection. The alleged CSR payment was projected as legitimate institutional funding, while candidate-related collections were allegedly possessed, used, transferred, or projected as legitimate transactions.
September 23, 2026
Show AI Summary
Banking service continuity measures require public sector and regional rural banks to operate on Sunday during the proposed strike.
Banking-service contingency arrangements require Public Sector Banks and Regional Rural Banks to operate normally on Sunday, 27 September 2026, ahead of a proposed three-day bank strike. Reserve Bank approval permits bank branches, offices, ATM-linked branches and currency chests to remain fully operational. Customers are advised to use mobile banking, ATMs, internet banking, BC Points and UPI if the strike occurs, and to complete essential transactions in advance.
September 23, 2026
Show AI Summary
Inflation-driven monetary tightening may accompany strong growth as demand, price increases and adverse supply conditions shape rate expectations.
Inflationary pressures, robust demand, price rises and adverse supply developments are expected to lead to policy-rate tightening by RBI. Fitch anticipates a 25-basis-point rate rise in October, further tightening in early 2027, followed by easing in 2028. Growth projections were upgraded following stronger-than-expected June-quarter activity, but activity is expected to moderate as the effects of GST rationalisation and income-tax cuts recede, manufacturing and services slow, and below-normal monsoon conditions affect activity.
September 23, 2026
Show AI Summary
GDP growth forecast rises as domestic demand, investment, and public capital spending sustain economic resilience amid external risks.
India's GDP growth forecast for the current fiscal year is raised to 7 per cent, supported by investment demand, resilient consumption, manufacturing and services activity, lower-than-expected supply disruptions, and sustained capital inflows. Domestic demand, infrastructure expenditure, regulatory reforms, and improving private investment are expected to support growth. Inflation is projected to remain within the central bank's target range, subject to risks from geopolitical uncertainty, commodity prices, and weather-related disruption. Fiscal management is supported by public capital expenditure and robust direct-tax revenue.
September 23, 2026
Show AI Summary
Primary and secondary investment funds ammunition manufacturing expansion, increasing small-caliber capacity and establishing medium-caliber production.
Hughes Precision Manufacturing Pvt. Ltd. completed a Rs. 250+ crore investment round through primary and secondary investments. The capital will expand small-caliber ammunition capacity from approximately 80 million to 220 million rounds and establish a dedicated medium-caliber ammunition manufacturing facility. The expansion broadens its product portfolio and is supported by an order book exceeding Rs. 1,000 crore, including domestic defence and export orders scheduled for execution over approximately two years.
September 23, 2026
Show AI Summary
GDP growth outlook signals resilient expansion, but inflation, weaker rural demand, and supply pressures may prompt monetary tightening.
India's FY 2026-27 GDP growth forecast is raised to 6.9 per cent from 6.4 per cent, reflecting strong June-quarter growth and economic resilience. Economic momentum is projected to moderate as slower manufacturing and services expansion, below-normal monsoon rains, and rising inflation constrain demand. Strong demand, price increases and adverse supply conditions are expected to lead to monetary tightening.
September 23, 2026
Show AI Summary
FEMA scrutiny of insolvency acquisitions examines fund flows and possible indirect control by potentially ineligible resolution participants.
FEMA investigation concerns suspected foreign-exchange contraventions and the source and movement of funds used to acquire control of McNally Bharat Engineering Company Limited following its corporate insolvency resolution process. The inquiry also examines whether the process may have enabled persons potentially ineligible under Section 29A of the Insolvency and Bankruptcy Code, 2016, to regain indirect control of the company.
September 23, 2026
Show AI Summary
Export facilitation reforms integrate local support, digital trade intelligence, and streamlined Free Trade Agreement procedures to improve market access.
Export facilitation reforms contemplate integrated Commerce and Industry offices and trained local personnel to provide exporters with common access points and district-level handholding support. The Trade Connect platform is envisaged to provide product-wise and HSN-code-wise tariff, Free Trade Agreement and procedural information, supported by digital and AI-enabled tools. Reforms also address electronic verification of Certificates of Origin, integration across the export cycle, digitalisation, simplified trade documentation, reduced compliance burden, and adherence to international quality standards.
September 23, 2026
Show AI Summary
Monetary policy outlook: resilient growth and persistent inflation support a projected policy-rate increase amid weather and geopolitical risks.
India's FY27 growth outlook is revised upward to 7 per cent from 6.6 per cent, supported by industrial activity, consumption, goods exports and government investment. Consumer inflation is projected to average 5.1 per cent. Persistent inflationary pressures, solid growth, conflict in West Asia and weather-related risks are expected to support higher interest rates, while below-normal monsoon rainfall may affect agricultural output and food inflation.
September 23, 2026
Show AI Summary
Trade partnership frameworks seek diversified market access through proposed economic agreements, investment cooperation, stronger business linkages, and improved connectivity.
Trade and market-access cooperation is to be advanced through a proposed Comprehensive Economic Partnership Agreement with Chile, a proposed Free Trade Agreement with Peru, and expansion of the Preferential Trade Agreement with MERCOSUR. The frameworks seek mutually beneficial outcomes while respecting respective sensitivities and priorities. Diversified trade, investment and business partnerships are envisaged through stronger business-to-business linkages, improved connectivity and more predictable market access.
September 23, 2026
Show AI Summary
Diplomatic engagement amid armed conflict continues as parties discuss reopening strategic waterways, energy security, and a potential negotiated settlement.
Diplomatic engagement between the United States and Iran resumed amid an ongoing armed conflict. The engagement concerned reopening the Strait of Hormuz and returning to negotiations toward a settlement, while the United States position combined willingness to engage with threats of escalated military action if an agreement was not reached. Regional consultations also addressed risks to oil carriage, energy supplies, and navigation through strategic waterways.
September 23, 2026
Show AI Summary
Bilateral comprehensive trade agreement negotiations aim for conclusion at the G20, supporting diversification and renewed economic ties.
Comprehensive trade agreement negotiations between Canada and India are progressing, with both governments aiming to conclude discussions by the mid-December G20 summit. Formal negotiations commenced in March, accompanied by a broader commitment to complete the agreement by the end of 2026. The proposed arrangement forms part of renewed bilateral economic engagement and Canada's strategy to diversify trade relationships, strengthen market access and reduce dependence on a single market.
September 23, 2026
Show AI Summary
Diesel export restrictions may worsen refinery constraints and consumer fuel costs amid global refining capacity disruptions.
Possible restrictions on diesel exports are being considered to address rising domestic diesel prices amid disruption to global refining capacity. Oil industry representatives oppose an export ban, contending that it could aggravate refinery-sector constraints and worsen supply conditions. They advocate increased supply and operational flexibility instead of new export restrictions, while farm-state senators support a diesel export ban.

News

Back

All News

Showing Results for :
Reset Filters
No Records Found

News

Back

All News

From Digital Banking to Resilient Banking – Technology, Cyber Security and AI as Pillars of Trust - Address by Shri Rohit Jain, Deputy Governor at the SBI Banking & Economic Conclave on September 24, 2026 in Mumbai

September 25, 2026

Contents
Summary
Note

Note

-

Bookmark

Print

Print

Distinguished guests, leaders of the banking and financial community, representatives from the fintech and technology world, colleagues from the Reserve Bank, ladies, and gentlemen, it is a pleasure to be here at the SBI Banking and Economic Conclave.

2. The theme of this year’s Conclave is most timely. If we were to gauge India’s performance on various parameters, we have increasingly gained share in the global economic order. Our share in global GDP has increased from 6.8% in FY2021 to 8.2% in FY20261 (on purchasing power parity basis), share in global trade has grown from 2.2% in CY2020 to 2.6% in CY2025. Globally2, UPI accounts for 49% of all global real-time payment system transaction volume. In the area of Financial Inclusion, we have been able to leverage our fast payment systems to expand the reach of financial services to all parts of the country and to all sections of the society which are increasingly being recognised the world over. As we move towards the goal of Viksit Bharat, our developmental experience offers instructive insights into how an emerging economy like ours can overcome its economic challenges to climb onto a higher growth trajectory, especially by leveraging on technology. This brings me to the theme of my talk today.

3. Over the last two decades, technology has transformed Indian banking. It has expanded access, reduced transaction costs, enabled round-the-clock services and allowed financial institutions to serve customers at a scale that would have been difficult to achieve through traditional channels alone. But I believe we are now entering a somewhat different phase. The theme of my talk, “From Digital Banking to Resilient Banking– Technology, Cyber Security and AI as Pillars of Trust”, is intended to highlight the fact that technology is no longer simply changing the way banking services are delivered; it is increasingly shaping the very architecture of banking. In my view the following three elements will play a key role in this process:

  1. Technology investment should be treated also as a risk investment – it is an investment in continuity, confidence and financial stability.

  2. Scale in digital payments and financial services must not come at the expense of trust and resilience.

  3. AI is expected to fundamentally change financial services – but governance must precede scale.

Allow me to elaborate on these aspects.

Technology and the changing economics of banking

4. Technology is no longer solely an enabler of banking. Technology architecture is becoming part of the risk architecture of a bank. This distinction is important. A bank may have adequate capital and liquidity, sound governance and a strong balance sheet. But if a critical technology system is unavailable, if a cyber incident compromises operations, or if a key technology dependency fails, the customer may be unable to access an essential financial service. This means that financial resilience and technological resilience can no longer be viewed in isolation. They increasingly reinforce each other.

5. The transformation has also altered the economics of financial intermediation. Technology has progressively reduced the cost of knowing, deciding, transacting and distributing finance. Data reduces the cost of obtaining information. Digital infrastructure reduces the cost of transactions. Analytics can reduce the cost of decision-making. Digital channels reduce the cost of distribution. Artificial intelligence now has the potential to reduce the cost of processing and interpreting information itself. All of this has important implications for banking.

6. When the cost of acquiring and analysing information falls, it becomes possible to serve customers for whom conventional models may have been uneconomic. When the cost of transactions falls, small-value transactions become viable at scale. When distribution becomes digital, geographical distance becomes less of a constraint. Thus, the technological transformation of banking is not simply about doing the same things faster. It can potentially change who can be served, what can be served, and at what cost. This is one reason why technology has been such an important force behind the expansion of digital financial services in India.

7. The scale of this transformation is readily visible in India’s payment systems. UPI3 alone processed 24.9 billion transactions valued at approximately ₹30.15 lakh crore in August 2026, equivalent to nearly 79 crore transactions every day, underscoring the extent to which digital payments have become embedded in everyday economic activity. Over the past decade, UPI’s transaction volume has increased nearly 13,000-fold, with the platform processing 24,162 crore transactions during FY 2025–264. The broader digital financial infrastructure has expanded in parallel. Platforms such as Account Aggregator and the Unified Lending Interface (ULI) are also reshaping how financial information is accessed and how credit is originated, while digital public infrastructure is supporting financial inclusion, direct benefit transfers and the delivery of financial services at scale.

8. But scale also creates a new responsibility. When a system processes millions or billions of transactions, a technology failure is no longer just an inconvenience for an individual institution. Depending on the nature of the service, extent of its usage, and its interconnectedness, it can have consequences for customers, counterparties and potentially the wider financial system.

Indian banking’s experience with technology

9. India’s banking journey with technology has been one of considerable success, marked by a series of institutional innovations that have transformed the way financial services are delivered. The adoption of Core Banking Solutions was a foundational turning point, enabling banks to move beyond branch-centric operations and provide customers with access to their accounts and services across locations. This created the technological foundation for internet banking, mobile banking and the subsequent expansion of digital financial services.

10. The initiatives such as UPI, Aadhar-based e-KYC, Video-based Customer Identification Process, ULI, etc., offer some important lessons. First, technology-led transformation is most effective when supported by interoperable infrastructure and common standards. Second, scale must be accompanied by appropriate governance, security and customer protection. Third, the success of a digital service depends not only on the application that customers interact with, but also on the reliability of the underlying ecosystem of banks, payment systems, technology providers and other critical dependencies.

11. However, the same journey has also provided important lessons from failures and disruptions. In India, the 2018 cyberattack on a cooperative bank, involving the compromise of its ATM switch and the subsequent misuse of the SWIFT network, demonstrated how weaknesses at a payment interface can bypass conventional controls and enable fraud across jurisdictions. The lesson was clear: securing the core banking system alone is not enough. Payment switches, connected channels, authentication mechanisms and transaction-monitoring controls must also be protected as part of an integrated architecture.

12. Instances of outages in mobile banking, internet banking and other transaction channels highlight the importance of capacity planning, legacy-system modernisation, change management, disaster recovery and third-party resilience. For customers, a technology outage is not simply a system issue; it is an inability to access their own money or complete an urgent financial transaction.

13. The 2016 cyberattack on a neighbouring country’s central bank demonstrated how compromise of systems connected to the SWIFT network, combined with weaknesses in credentials, monitoring and transaction verification, could lead to cross-border financial loss. The 2017 Equifax data breach in the United States highlighted a different dimension of technology risk: the exposure of sensitive personal and credit information. Its lesson extended beyond cybersecurity. Financial institutions must recognise that data breaches can create prolonged risks of identity theft, fraud and loss of public trust, making vulnerability management, timely patching, data protection and incident response essential components of financial resilience.

14. The 2024 CrowdStrike outage, although not a cyberattack and not confined to the financial sector, demonstrated how a faulty software update from a major technology provider could cause widespread disruption. For banks, it reinforced the importance of third-party concentration risk, controlled software deployment, testing, fallback arrangements and the ability to maintain critical services when a technology provider experiences a failure.

15. Taken together, these experiences show that technology risk can arise from several sources: cyber compromise, weak internal controls, operational failures, poorly managed change, third-party dependence and irresponsible deployment of technology. They also explain the growing emphasis on IT governance, cybersecurity, outsourcing oversight, business continuity and operational resilience.

16. The objective may not be to eliminate every failure, but to ensure that institutions are able to anticipate risks, prevent avoidable disruptions, detect incidents early, contain their impact and recover critical services while protecting customers.

The Evolving Technology and Risk Landscape

17. As technology transforms banking, the risk landscape is evolving just as rapidly. We must therefore recognise technology risk, and more specifically technology architecture risk, as a first-order enterprise risk, comparable in importance to traditional balance-sheet risks. It can no longer be viewed as a back-office or purely technical concern, to be managed exclusively by the IT department.

18. The reason is straightforward. Technology is now embedded in almost every critical banking function, from core banking and payments to customer onboarding, credit assessment, fraud monitoring and regulatory reporting. A failure in the underlying technology architecture can therefore disrupt not just a system, but the delivery itself of essential financial services.

19. A bank's technology environment today includes core banking platforms, payment applications, APIs, cloud infrastructure, data centres, software and hardware providers, cybersecurity tools, external technology service providers and, increasingly, artificial intelligence models and services. These components are interconnected, and a disruption or compromise at any one point can potentially affect the functioning of the wider ecosystem.

20. This leads to an important principle: Technology may be outsourced, but not the accountability. A bank may rely on an external provider for its infrastructure, software or cybersecurity capabilities. However, it must continue to understand the risks associated with that dependency, including access controls, concentration, recoverability, data protection and exit options.

21. The perimeter of technology risk is therefore no longer necessarily the perimeter of the bank. A vulnerability in a connected fintech, a software provider, a payment interface or a common cloud environment can have implications beyond the institution in which the vulnerability originates. A dependency that appears manageable for one institution may become a concentration risk when several banks and financial entities rely on the same provider. The risk architecture of the financial system must consequently be assessed not only at the level of individual institutions, but also across the interconnected ecosystem.

The evolving cybersecurity landscape

22. Cybersecurity, too, can no longer be understood simply as the protection of an institution's external perimeter. The threat landscape is becoming more complex and increasingly combines technological vulnerabilities with human behaviour. Ransomware can affect the availability of critical systems and disrupt service continuity. Compromised credentials can provide access to sensitive applications. APIs provide significant efficiency and interoperability, but also introduce additional points of exposure. Insider threats can exploit legitimate access, while social engineering can manipulate employees and customers without necessarily requiring a sophisticated technical breach. The emergence of deepfakes, voice cloning and AI-enabled fraud adds a further dimension. Malicious actors can use these technologies to impersonate individuals, generate convincing communications and personalise fraudulent interactions at scale.

23. The attacker is therefore not always attempting to break through the strongest technical defence. In many cases, the objective may be to exploit the weakest identity, process, interface or human decision within a connected ecosystem. This requires us to think about cybersecurity in broader terms. It is not only about protecting networks and systems. It is also about protecting identities, credentials, devices, data, APIs, payment channels, third-party connections and the integrity of decision-making processes. The response must therefore evolve from identifying only suspicious transactions to identifying suspicious patterns. This requires a combination of real-time transaction monitoring, behavioural analytics, device and identity intelligence, domain and network analysis, and information sharing across relevant stakeholders.

Artificial intelligence: expanding both opportunity and risk

24. AI adds another layer to this evolving risk landscape. AI can strengthen customer service, improve fraud detection, support risk assessment, enhance productivity and help institutions analyse large volumes of information. At the same time, it can amplify errors as quickly as it amplifies efficiency. This is particularly relevant in financial services, where automated outputs can influence credit decisions, fraud alerts, customer access, pricing and service delivery. The use of AI must, therefore, be accompanied by appropriate validation, monitoring, human oversight and clear accountability.

25. We face an unusual technological contest in which both the defender and the attacker increasingly have access to similar tools. The advantage will not necessarily belong to the institution that deploys the most sophisticated technology. It may belong to the institution that can understand, govern and deploy technology with the greatest degree of discipline and foresight.

26. AI can be both an instrument of attack and a powerful tool of defence: while malicious actors can use it to scale phishing, impersonation, vulnerability exploitation and other cyberattacks, financial institutions can deploy AI for continuous threat detection, behavioural anomaly analysis and automated incident response. The banking ecosystem should, therefore, move towards the coordinated and responsible adoption of AI-enabled cybersecurity capabilities, including centralised threat intelligence and automated detection and response mechanisms, so that emerging threats can be identified and contained at ecosystem speed, rather than addressed only after individual institutions have been targeted.

Governance must evolve with technology

27. Managing these risks requires capacity on two fronts. The first is technological capacity: secure architecture, resilient infrastructure, effective monitoring, appropriate redundancy, tested recovery arrangements and the ability to identify and respond to emerging threats. The second is human capacity. Institutions require professionals who understand not only cybersecurity and technology, but also banking operations, risk management, data governance and the implications of interconnected financial systems. Technology risk cannot be managed effectively if responsibility is fragmented between business teams, IT teams, cybersecurity functions and external providers, without a common understanding of critical services and potential consequences. Even as technology becomes more advanced, human judgement remains essential. Employees must be equipped to identify social engineering, challenge unusual requests, handle privileged access responsibly and respond effectively during incidents. Senior management and Boards must also possess sufficient technological understanding to question assumptions, evaluate dependencies and assess whether resilience arrangements have genuinely been tested. Responsibility for technology governance must rest with the Board and senior management, with clear ownership across business risk, compliance, operations and technology functions.

Data governance

28. In a digital bank, data is simultaneously an asset, an input, a control mechanism and a source of risk. We often speak of protecting data. We should equally speak of whether the data is accurate, whether its lineage is known, whether access is appropriately controlled, whether it retains integrity, and whether it can be recovered when systems are disrupted. A sophisticated risk model built on poor-quality data does not necessarily enable sophisticated risk management. It creates sophisticated looking errors. This is why data governance has to be viewed not only through the lens of privacy and security, but also through the lens of resilience and decision quality. Reliable data supports risk assessment, fraud detection, cyber defence, regulatory reporting and recovery from disruption. Accuracy, integrity, lineage, availability and recoverability need to be considered as integral elements of technology resilience.

Building a World-Class Financial System: Innovating with Confidence, Resilience and Trust

29. A developed Indian economy requires a world-class financial system, and a world-class financial system today can be built only on the foundation of world-class technology. Our objective must therefore be to harness technology not merely for greater efficiency and convenience, but also for resilience, inclusion, security and trust.

Ten Key Requirements in the area of Technology and Cyber Risk Management

30. I would now like to highlight ten key requirements in the area of Technology and Cyber Risk Management.

i. From Governance arrangements and technology risk frameworks to effective resolution: the important test of governance is ultimately how effectively the framework translates into outcomes.

ii. Maintaining visibility across complex technology environments: effective risk management involves adequate visibility of the assets and exposures that need to be managed.

iii. Addressing vulnerabilities and legacy technology in a timely manner: the challenge is not only to identify vulnerabilities but also to address material exposures in a timely manner based on their severity and potential impact.

iv. Managing identity and access risk: strong authentication, appropriate access privileges and effective monitoring remain fundamental to sound identity and access management.

v. Ensuring that security controls deliver the intended outcomes: the emphasis should not solely be on deployment of security controls, but on whether these are operating effectively.

vi. Keeping controls aligned with the pace of technology change: risk management and control processes need to evolve in step with the speed at which technology is developed, implemented and scaled.

vii. Managing third-party and external dependencies: understanding critical external dependencies, their potential impact and the resilience of associated arrangements is an important part of technology-risk management.

viii. Strengthening post-incident analysis and learning: the value of a post incident review ultimately lies in reducing the likelihood and impact of recurrence.

ix. Testing recovery and operational resilience: regular and realistic testing is important for validating recovery arrangements and strengthening preparedness.

x. Addressing underlying architecture and capacity constraints: addressing such underlying factors is important for sustained improvement in technology-risk management.

Conclusion

31. Ultimately, sound technology governance is not about attempting to eliminate every possibility of failure. It is about developing the institutional capacity to identify vulnerabilities early, make informed decisions, limit the impact of disruptions, protect customers and recover critical services. This requires a combination of strong oversight, capable personnel, resilient architecture, effective controls and a culture in which technology risk is recognised as a shared responsibility. In the AI era, governance must provide the discipline that enables innovation to be adopted with confidence, while ensuring that the resilience and trustworthiness of the financial system remain paramount.

32. The road ahead requires ambition tempered with caution. We must innovate quickly, but not blindly; embrace AI and emerging technologies, but with accountability; and pursue interconnectedness, while ensuring that resilience is not compromised. We must compete on innovation, but collaborate on security and resilience.

33. I thank the organisers for the opportunity to share my thoughts and wish the Conclave all success.

Thank you.

----

1 IMF World Economic Outlook, April 2026.

2 Press Information Bureau release dated Dec 8, 2025

3 Source: NPCI (monthly data - Aug 2026)

4 RBI Annual Report (Total UPI transactions processed during 2025-26)

Topics

Acts Income Tax