The Japan Times - India Orders Wind Turbine Makers to Report on Data Localization for Cybersecurity

EUR -
AED 4.262515
AFN 76.6038
ALL 92.003154
AMD 422.850422
ANG 2.077326
AOA 1065.483848
ARS 1756.602749
AUD 1.616988
AWG 2.090635
AZN 1.973275
BAM 1.949071
BBD 2.338148
BDT 143.107158
BGN 1.968901
BHD 0.437693
BIF 3464.169865
BMD 1.160658
BND 1.475425
BOB 13.612122
BRL 6.04087
BSD 1.160902
BTN 110.667875
BWP 15.555429
BYN 3.501173
BYR 22748.893868
BZD 2.334859
CAD 1.612102
CDF 2640.49643
CHF 0.937736
CLF 0.027389
CLP 1078.169398
CNY 7.799506
CNH 7.80695
COP 3704.019005
CRC 523.895773
CUC 1.160658
CUP 30.757433
CVE 109.884207
CZK 24.137393
DJF 206.728056
DKK 7.475049
DOP 68.155282
DZD 154.726164
EGP 58.288819
ERN 17.409868
ETB 189.626751
FJD 2.549327
FKP 0.853511
GBP 0.855747
GEL 3.028943
GGP 0.853511
GHS 13.002222
GIP 0.853511
GMD 85.888502
GNF 10204.6368
GTQ 8.861482
GYD 242.883542
HKD 9.099621
HNL 31.140488
HRK 7.529534
HTG 151.876956
HUF 365.214336
IDR 20597.266345
ILS 3.454353
IMP 0.853511
INR 110.895809
IQD 1520.849296
IRR 1595440.281313
ISK 140.552132
JEP 0.853511
JMD 184.014693
JOD 0.822883
JPY 185.630398
KES 150.17715
KGS 101.499864
KHR 4697.841503
KMF 490.958178
KPW 1044.592406
KRW 1598.98612
KWD 0.35848
KYD 0.967468
KZT 537.99721
LAK 26034.341229
LBP 103959.876164
LKR 380.718855
LRD 210.126353
LSL 18.571941
LTL 3.427121
LVL 0.70207
LYD 7.357661
MAD 10.726766
MDL 20.071875
MGA 5007.753969
MKD 61.308861
MMK 2437.116864
MNT 4176.949491
MOP 9.374715
MRU 46.704157
MUR 54.399885
MVR 17.932198
MWK 2013.067267
MXN 19.76685
MYR 4.672924
MZN 74.138552
NAD 18.571781
NGN 1554.96821
NIO 42.722868
NOK 10.877935
NPR 177.068201
NZD 1.958563
OMR 0.446245
PAB 1.160902
PEN 3.890103
PGK 5.148226
PHP 72.390513
PKR 322.066745
PLN 4.340222
PYG 6879.308586
QAR 4.231826
RON 5.257554
RSD 117.375003
RUB 99.991531
RWF 1706.522964
SAR 4.355035
SBD 9.285554
SCR 16.034832
SDG 698.139854
SEK 11.120054
SGD 1.4784
SHP 0.859892
SLE 28.609926
SLL 24338.413897
SOS 663.415287
SRD 43.803021
STD 24023.274145
STN 24.415915
SVC 10.157799
SYP 15090.873262
SZL 18.558088
THB 38.363198
TJS 10.738418
TMT 4.062302
TND 3.386209
TOP 2.794586
TRY 55.997212
TTD 7.878866
TWD 36.720315
TZS 3069.943536
UAH 51.725365
UGX 4376.926454
USD 1.160658
UYU 46.749003
UZS 13718.754454
VES 917.705586
VND 30261.251805
VUV 137.004954
WST 3.145328
XAF 653.708532
XAG 0.016652
XAU 0.000254
XCD 3.136736
XCG 2.092294
XDR 0.820645
XOF 653.705725
XPF 119.331742
YER 274.493731
ZAR 18.693097
ZMK 10447.312546
ZMW 21.970337
ZWL 373.731354
  • BCC

    -0.9250

    77.845

    -1.19%

  • CMSD

    -0.0200

    21.16

    -0.09%

  • JRI

    -0.0630

    12.337

    -0.51%

  • CMSC

    0.0020

    21.312

    +0.01%

  • BCE

    -0.0950

    23.305

    -0.41%

  • GSK

    -0.0500

    50.22

    -0.1%

  • BTI

    -0.2250

    56.055

    -0.4%

  • RIO

    -1.4500

    103.33

    -1.4%

  • AZN

    -3.1400

    161.38

    -1.95%

  • NGG

    -0.0200

    79.41

    -0.03%

  • RBGPF

    -0.4400

    70.69

    -0.62%

  • RYCEF

    -0.0500

    20.7

    -0.24%

  • RELX

    0.0900

    36.39

    +0.25%

  • VOD

    0.0850

    15.965

    +0.53%

  • BP

    -0.3750

    41.965

    -0.89%

India Orders Wind Turbine Makers to Report on Data Localization for Cybersecurity
India Orders Wind Turbine Makers to Report on Data Localization for Cybersecurity

India Orders Wind Turbine Makers to Report on Data Localization for Cybersecurity

The Ministry of New and Renewable Energy (MNRE) has directed all wind turbine manufacturers listed under the Approved List of Models and Manufacturers (ALMM) to submit detailed status reports on their cybersecurity compliance protocols by the end of the current month. The directive specifically requires manufacturers to demonstrate data localization and operational control within India, marking a significant step in securing critical energy infrastructure against digital threats.

Text size:

The Ministry of New and Renewable Energy (MNRE) has issued a directive requiring all wind turbine manufacturers listed under the Approved List of Models and Manufacturers (ALMM) to submit comprehensive status reports on their cybersecurity compliance protocols. The ministry has set the end of the current month as the deadline for these submissions.

According to reports, the mandatory requirements focus heavily on data localization and ensuring operational control remains within India. This order appears to be implemented under the notified "Procedure for inclusion/updating Wind Turbine Model in the Revised List of Models and Manufacturers of Wind Turbines (RLMM)."

The directive aligns with a draft amendment dated April 17, 2025, which mandated specific compliances to strengthen cybersecurity standards across the renewable energy sector. The move comes amid growing concerns about the vulnerability of critical infrastructure to digital attacks.

Recent global incidents have highlighted the risks facing power grids and telecommunications. On August 24, a minor power plant in the UK was targeted by a cyber-attack that kept it offline for four days. Such events underscore the fragility of electricity grids, telecom infrastructure, and data centers, which are essential to national activities and increasingly targeted during geopolitical tensions.

The context for such security measures is rooted in the history of cyber warfare. In 2007, Estonia faced a major cyber-attack attributed to Russia, an incident widely regarded as the first instance of one nation threatening another primarily through internet-based attacks. The assault targeted government websites, banks, and communication firms, occurring more than a decade before India launched its Unified Payments Interface (UPI).

With the integration of artificial intelligence into critical systems, experts warn that the risks posed by such threats are likely to increase. While the central Digital Personal Data Protection (DPDP) Act does not mandate data localization, sectoral regulators are increasingly treating it as a standard requirement.

The specific focus on wind turbines follows earlier warnings from NITI Aayog, India’s government think tank. In 2024, NITI Aayog highlighted the cybersecurity risks associated with wind turbines, noting that their connection to electricity grids could make them vulnerable without robust cyber-defense systems.

In a report released that year, NITI Aayog stated: "Wind turbines’ capability to exchange information through Power Plant Controllers poses a significant cybersecurity threat. The PPC (Power Plant Controller) software is of critical importance and associated with risks- used in the device which connects the wind farm directly to the national/state grid."

The think tank emphasized that original equipment manufacturers (OEMs) of foreign origin, particularly those from neighboring countries, need to be examined closely. The report called for potential suspension of OEMs that do not adhere to security protocols, citing the risk of grid operations being compromised when managed remotely by owners stationed outside India.

The new MNRE order reinforces these concerns by demanding proof of local data handling and operational control, aiming to safeguard national infrastructure from external digital interference.

Y.Watanabe--JT