Skip to main content

      The fourth edition of Secure in India 2026 examines the transformation of Cyber Global Capability Centers (GCCs) in India as they assume an increasingly strategic role in enabling cybersecurity, digital trust, and business resilience for global organisations. Against a backdrop of geopolitical uncertainty, rapid technological disruption, expanding AI adoption, evolving regulations, and heightened cyber threats, Cyber GCCs have become centers of leadership, innovation, and value creation.

      The report highlights the continued expansion of the Cyber GCC ecosystem, with organisations increasing the scale, scope, and influence of cybersecurity functions delivered from India. Cyber GCCs are now deeply integrated into global cybersecurity operations, contributing to strategy, governance, risk management, security operations, and emerging domains such as AI security, quantum security, and operational technology security. Their growing representation in global leadership forums underscores the trust and accountability placed on India-based cybersecurity teams.

      A key theme explored in this edition is the evolution of cybersecurity talent. As demand for specialised cyber skills continues to rise globally, Cyber GCCs are investing heavily in workforce development, cross-skilling, AI-driven learning, and talent retention. Emerging skills such as AI security, cyber resilience, cloud security, data protection, and cybersecurity governance are becoming critical areas of focus. The report also examines how organisations are creating future-ready talent ecosystems through structured learning programs, collaborative knowledge sharing, and technology-enabled training approaches.

      The intersection of AI and cybersecurity forms a central pillar of the report. While AI is enabling significant gains in operational efficiency, threat detection, risk management, and compliance monitoring, it is also introducing new risks related to data security, governance, model vulnerabilities, third-party dependencies, and regulatory compliance. The study explores how Cyber GCCs are balancing AI adoption with robust governance frameworks, security controls, and responsible AI practices to strengthen enterprise resilience and trust.

      Innovation and research remain at the forefront of Cyber GCC growth. The report highlights increasing investments in cybersecurity research and development, the establishment of dedicated cybersecurity laboratories, and the expansion of Centers of Excellence across critical domains. Cyber GCCs are increasingly contributing to product development, automation, intellectual property creation, and advanced cybersecurity solutions, positioning India as a key engine of global cybersecurity innovation.


      Key highlights of the report

      • Cyber GCC workforce in India is expanding significantly - over 25 per cent of cyber GCCs now have nearly 50 per cent of their global cybersecurity workforce in India, while 22 per cent operate large cyber teams of more than 100 professionals
      • Key factors influencing cyber GCC growth include increase in scope of cybersecurity functions being delivered, seamless collaboration with the IT and other functions, and budget constraints in global locations
      • AI security is one of the top priority skillsets for cyber GCCs, with AI for security and security of AI gaining prominence
      • AI emerged as a force multiplier for cyber GCCs, with organisations reporting the strongest benefits of AI adoption in greater operational efficiency, more effective risk and threat management and compliance management
      • Cybersecurity R&D in cyber GCCs has risen significantly with 65 per cent of cyber GCCs having a cybersecurity lab and 67 per cent increasing overall investment in cybersecurity R&D since 2023
      • Top cybersecurity risks tracked by global boards now include AI misuse, OT security risk, software supply chain security risk, third-party security risk, while critical infrastructure risk, cloud expansion risk, regulatory risk etc., continue to be part of the top ten risks

      Finally, the report focuses on cybersecurity resilience in an era defined by evolving regulations, geopolitical tensions, cloud adoption, operational technology convergence, software supply chain risks, and emerging quantum threats. It examines how Cyber GCCs are helping organisations strengthen resilience, enhance preparedness, and build adaptive operating models capable of responding to a rapidly changing threat landscape. Through extensive industry consultation, leadership interviews, surveys, and research, the report offers actionable insights into the future of cybersecurity and the pivotal role India’s Cyber GCCs will continue to play in securing their global organisations.




      Secure in India 2026: Cyber GCCs in the age of AI

      A study of how Cyber GCCs help global organisations ‘secure in India’ and evolve into strategic hubs for cybersecurity leadership, and resilience

      Key Contacts

      Akhilesh Tuteja

      Partner & National Leader - Clients and Markets and Technology, Media & Telecommunications (TMT)

      KPMG in India

      Hemant Jhajhria

      National Head of Consulting

      KPMG in India

      Gautam Bhattacharya
      Gautam Bhattacharya

      Partner and Head, Technology Consulting

      KPMG in India

      Srinivas Potharaju

      Partner, Head of Cyber Security and Technology

      KPMG in India

      Shalini Pillay

      India Leader - Global Capability Centres

      KPMG in India

      How can KPMG in India help

      Supporting organisations with integrated cyber security solutions that strengthen resilience, trust, and business continuity

      India’s Global Capability Centres (GCCs) are undergoing a structural evolution - from cost optimisation hubs to strategic, innovation-led global delivery centres

      Transformation driven by data, enabled by digital technology, and led by business initiatives
      KPMG Insights Edge

      KPMG Insights Edge

      On the go access to KPMG in India’s insights and publications