Kaitara Monitor:
security monitoring you own, retained in India
Threat detection, file-integrity monitoring, and 180-day India-resident log retention — across your endpoints, servers, and cloud. Built from permissively-licensed parts so it runs in your own account rather than shipping your telemetry to a vendor. We stand it up per engagement; there is no shared service to sign up for.
What it watches
Threat detection on every endpoint & server
Continuous telemetry from laptops, desktops, and servers — surfacing unauthorised access, rootkits, suspicious processes, and privilege escalation, mapped to CERT-In incident categories.
File-integrity monitoring (FIM)
Watches system binaries, /etc config, SSH keys, and webroots. Any unauthorised change raises a finding — the signal CERT-In calls 'compromise of critical systems'.
Data-exfiltration signals
Flags database services or export tools making unexpected outbound connections — an early warning for a personal-data breach under the DPDP Act.
180-day log retention, in India
Every log retained for a rolling 180 days, stored in an India region (Mumbai) — which is what CERT-In's log-retention and Indian-jurisdiction requirement asks for.
Deployed the way that fits you
Whether you run on the cloud, only have a fleet of devices, or want nothing to leave your premises — there is a deployment that keeps your data in India and in your control.
Your own AWS, Azure or GCP account
The stack lives inside your own tenancy, in an India region if residency matters. Your telemetry never leaves your control; Kaitara Security stands it up and tunes it. Best if you already run cloud workloads.
Hosted by Kaitara Security
No cloud? A fleet of laptops and desktops? We host an isolated, India-resident instance dedicated to you — the one model where we act as your data processor, so it comes with a data-processing agreement.
On your own hardware
For plants, labs and anywhere nothing may leave the building. Same stack on your server; you provide the host and the access route. Air-gapped sites need a local image mirror — we scope that with you.
Built around your obligations
Every alert is mapped to a real requirement. File-integrity changes, unauthorised access, and data-leakage signals tie directly to the CERT-In Directions 2022 incident categories, and the personal-data signals support your DPDP Act breach-notification duties. Retention and residency are configured to the letter.
Questions
Is my data stored in India?
Yes. Log storage and indexing are pinned to an India region (Mumbai) — which is what CERT-In's 180-day log-retention and Indian-jurisdiction requirement asks for.
Do I need to be on the cloud?
No. If your estate is just endpoints — laptops, desktops, workstations — Kaitara Security can host a dedicated instance for you and your devices report into it. There's nothing for you to run.
How does this relate to a compliance engagement?
Monitoring is part of the Standard engagement. It operationalises the CERT-In requirements — live alerting, retention, and an incident signal so you can meet the 6-hour reporting clock.
What does it run on?
A standardised stack of proven, permissively-licensed open-source security tooling, stood up and configured with you as 'Kaitara Monitor'. No per-agent licence fees inflating your bill.
Add monitoring to your compliance engagement
Start with a free scan, or talk to us about a managed-monitoring deployment that fits your estate and keeps your logs in India.