Home › Policies & Regulations ›MNRE Directs ALMM-Listed Wind OEMs to Submit Cybersecurity Compliance Status by August 31
MNRE Directs ALMM-Listed Wind OEMs to Submit Cybersecurity Compliance Status by August 31
The Ministry of New and Renewable Energy has directed all ALMM-Wind-listed OEMs to submit their compliance status on cybersecurity requirements, along with documentary evidence of compliance for India-based data storage, operational control and R&D centre requirements by August 31, 2026.
August 26, 2026. By Mrinmoy Dey
The Ministry of New and Renewable Energy (MNRE) has directed all original equipment manufacturers (OEMs) listed under the Approved List of Models and Manufacturers of Wind Turbines (ALMM-Wind) to submit their compliance status on cybersecurity requirements by August 31, 2026.
In a recently issued office memorandum, the Ministry referred to the amendment to the ‘Procedure for inclusion/updating Wind Turbine Model in the Approved List of Models and Manufacturers of Wind Turbines (ALMM)’, issued on July 31, 2025. The amendment mandates India-based data centres and R&D centres and prohibits the transfer of real-time operational data outside India to strengthen the cybersecurity framework for the wind energy sector.
The Ministry has asked all OEMs enlisted in the ALMM-Wind list to submit compliance details along with documentary evidence in a specified format. The information must be submitted to MNRE by August 31, 2026, following which the Ministry may conduct random checks and inspections.
Under the prescribed format, OEMs must first provide the names of manufacturers, wind turbine models included in the ALMM along with their capacities, and manufacturing locations. They must then declare whether they are compliant, partially compliant or not compliant with each of the specified cybersecurity requirements.
The first requirement covers the location and management of wind turbine data. OEMs must mandatorily locate data centres and/or servers in India, with all data pertaining to wind turbines stored and maintained within the country. Companies are required to provide the name and location of their local data server and submit documentary evidence supporting their compliance.
The second requirement concerns real-time operational data and remote control of wind turbines. The ALMM-Wind guidelines prohibit the transfer of real-time operational data outside India and require operational control of wind turbines to be exercised exclusively from a facility located within India. OEMs have to submit details of their local control centres, including location, manpower and equipment, along with the measures adopted to prevent control of wind turbines from outside the country.
The third requirement requires OEMs to establish an R&D centre in India within one year from the issuance of the amendment. Companies have been asked to provide details of their local R&D centres and the manpower engaged at these facilities.
The compliance exercise gives MNRE a mechanism to verify implementation of the cybersecurity provisions introduced through the 2025 ALMM-Wind amendment. With the August 31 deadline, all ALMM-Wind-listed OEMs are required to formally disclose their compliance position and substantiate their claims with supporting documents before the Ministry undertakes subsequent random checks and inspections.
In a recently issued office memorandum, the Ministry referred to the amendment to the ‘Procedure for inclusion/updating Wind Turbine Model in the Approved List of Models and Manufacturers of Wind Turbines (ALMM)’, issued on July 31, 2025. The amendment mandates India-based data centres and R&D centres and prohibits the transfer of real-time operational data outside India to strengthen the cybersecurity framework for the wind energy sector.
The Ministry has asked all OEMs enlisted in the ALMM-Wind list to submit compliance details along with documentary evidence in a specified format. The information must be submitted to MNRE by August 31, 2026, following which the Ministry may conduct random checks and inspections.
Under the prescribed format, OEMs must first provide the names of manufacturers, wind turbine models included in the ALMM along with their capacities, and manufacturing locations. They must then declare whether they are compliant, partially compliant or not compliant with each of the specified cybersecurity requirements.
The first requirement covers the location and management of wind turbine data. OEMs must mandatorily locate data centres and/or servers in India, with all data pertaining to wind turbines stored and maintained within the country. Companies are required to provide the name and location of their local data server and submit documentary evidence supporting their compliance.
The second requirement concerns real-time operational data and remote control of wind turbines. The ALMM-Wind guidelines prohibit the transfer of real-time operational data outside India and require operational control of wind turbines to be exercised exclusively from a facility located within India. OEMs have to submit details of their local control centres, including location, manpower and equipment, along with the measures adopted to prevent control of wind turbines from outside the country.
The third requirement requires OEMs to establish an R&D centre in India within one year from the issuance of the amendment. Companies have been asked to provide details of their local R&D centres and the manpower engaged at these facilities.
The compliance exercise gives MNRE a mechanism to verify implementation of the cybersecurity provisions introduced through the 2025 ALMM-Wind amendment. With the August 31 deadline, all ALMM-Wind-listed OEMs are required to formally disclose their compliance position and substantiate their claims with supporting documents before the Ministry undertakes subsequent random checks and inspections.
If you want to cooperate with us and would like to reuse some of our content,
please contact: contact@energetica-india.net.
please contact: contact@energetica-india.net.
