CBDT Declares Key Income Tax IT Systems as 'Protected Systems' Under IT Act, 2000



Quick Summary
The Central Board of Direct Taxes (CBDT) has officially declared several critical Income Tax IT systems as 'Protected Systems' under the Information Technology Act, 2000. This significant move, announced on January 28, 2025, aims to bolster the security of the nation's digital tax infrastructure against cyber threats. The designated systems include essential platforms like TRACES, e-Filing, the Income Tax Business Application (ITBA), and Project Insight, ensuring the safeguarding of sensitive taxpayer data and compliance processes.

The Ministry of Finance has issued a notification under the Information Technology Act, 2000, designating key IT systems of the Directorate of Income Tax (Systems), and Central Board of Direct Taxes (CBDT) as Protected Systems. This move aims to safeguard critical tax-related digital infrastructure against cyber threats and unauthorized access.

The notification, issued on January 28, 2025, identifies the following platforms as Protected Systems:

  1. TRACES (Tax Deducted at Source Reconciliation Analysis and Correction Enabling System) - A web portal that manages TDS-related compliance and reconciliation.
  2. e-Filing and Centralized Processing Centre (CPC) Systems - Platforms facilitating tax return filing and automated processing.
  3. Income Tax Business Application (ITBA) - A system managing taxpayer data, including PAN and TAN databases.
  4. Project Insight - A compliance and reporting system used for data analytics and enforcement.
Income Tax Systems Declared  Protected  Under IT Act

Official copy of the notification is as follows

MINISTRY OF FINANCE
(Department Of Revenue)
NOTIFICATION
New Delhi, the 28th January, 2025

S.O. 498(E). In exercise of the powers conferred by sub-section (1) and (2) of section 70 of the InformationTechnology Act, 2000 (21 of 2000), the central government hereby declares the following computer resources of the Directorate of Income Tax (Systems) under the  Central Board of Direct Taxes, Department of Revenue, Ministry of Finance, along with their associated dependencies to be protected systems for the purpose of the said Act:

(a) Tax Deducted at Source Reconciliation Analysis and Correction EnablingSystem (TRACES) Web Portal
Infrastructure, Assessing Officers Web Portal Infrastructure, Centralized Processing Cell (Tax Deducted at Source)
Application & its Database and Database for Records Management ofCentralized Processing Cell (Tax Deducted at
Source).

(b) e-filing Front Office Web Portal Infrastructure, Integrated e-filing & Centralised Processing Centre Application and its Database, Back Office Web Portal Infrastructure and Tax Information Network Master Database of Integrated efiling & Centralised Processing Centre.

(c) Income Tax Business Application (ITBA) & Its Database, PermanentAccount Number Master Database and Tax
Deduction and CollectionAccount Number (TAN) Master Database of Income Tax Business Application.

(d) Insight, Reporting, Compliance & Annual Information System Web PortalsInfrastructure and its Application and
Database of Project Insight.

2. The authorised personnel having role-based access to protected systems are:

(a) any designated employee of the Directorate of Income Tax (Systems) under the Central Board of Direct Taxes
authorized in writing by the Directorateof Income Tax (Systems) under the Central Board of Direct Taxes to access the protected system;

(b) any team member of contractual managed service provider or third-party vendor who has been authorised in
writing by the Directorate of Income Tax(Systems) under Central Board of Direct Taxes for need-based access; and

(c) any consultant, regulator, Government official, auditor and stakeholder authorised in writing by the Directorate of Income Tax (Systems) under Central Board of Direct Taxes on a case-to-case basis.

3. This notification shall come into force on the date of its publication in the Official Gazette.

[F. No. N-24015/4/2024-CC)]
MUKESH SUNDRIYAL, Under Secy.

FAQ :

Declaring these systems as 'Protected Systems' under the IT Act, 2000, means they are given enhanced security measures to protect them from cyber threats and unauthorised access.

The protected systems include TRACES (Tax Deducted at Source Reconciliation Analysis and Correction Enabling System), e-Filing and Centralized Processing Centre (CPC) Systems, Income Tax Business Application (ITBA), and Project Insight.

The notification declaring these systems as protected was issued on January 28, 2025.

The primary purpose is to safeguard critical tax-related digital infrastructure against cyber threats and unauthorised access, ensuring the security of sensitive data and processes.

Authorised personnel include designated employees of the Directorate of Income Tax (Systems), authorised members of contractual managed service providers or third-party vendors, and authorised consultants, regulators, government officials, auditors, and stakeholders on a case-to-case basis.

Attached File : 671907_24456_260560.pdf



News posted by

Finance news reporter covering taxation, GST, income tax, business compliance, and economy updates. I simplify complex financial topics into easy-to-understand articles for professionals, taxpayers, and business owners on leading finance and tax platforms.

Click here to Login and post comments    OR



More »


Popular News





CCI Pro