Section 2(1)(d) in The Information Technology (Information Security Practices and Procedures for Protected System) Rules, 2018
(d)"Cyber Crisis Management Plan" outlines a framework for dealing with cyber related incidents for a coordinated, multi-disciplinary and broad-based approach for rapid identification, information exchange, swift response and remedial actions to mitigate and recover from malicious cyber related incidents impacting critical processes;