Institutional Architecture of the Union
The constitutional framework gave us the powers and the legal architecture the statutes. This section examines the machinery — who actually decides, who coordinates, who assesses intelligence, and where the seams are. The organising insight is uncomfortable and should be stated at the outset: almost every institution in this section is an executive creation without a statute behind it.
The National Security Council, the National Security Adviser, the Multi Agency Centre, NATGRID — none owes its existence to an Act of Parliament. They exist by executive order and can be reorganised, or abolished, the same way.
The Ministry of Home Affairs
The MHA is the nodal ministry for internal security. It discharges that mandate through a set of specialised divisions, each with a defined subject allocation. Knowing which division owns which subject is genuinely useful — it tells you where a policy originates and which institutional interest shapes it.
| Division | Principal subjects |
| Internal Security‑I (IS‑I) | Internal security and law and order; national integration; Punjab matters; arms and explosives; security clearances of projects and proposals; the Official Secrets Act, 1923; security of persons and vital installations; Rashtriya Raksha University; administrative and financial matters of the Intelligence Bureau, the Bureau of Police Research and Development, and the National Foundation for Communal Harmony. |
| Internal Security‑II (IS‑II) | Extradition and mutual legal assistance; Interpol; drug law enforcement and the Narcotics Control Bureau; the National Security Act, 1980; protection of human rights; and the Central Scheme for Assistance to Civilian Victims of terrorist, communal and LWE violence, cross‑border firing, and mine or IED blasts. |
| Left Wing Extremism (LWE) Division | Created on 19 October 2006 to address the Maoist insurgency holistically — security, development and rights and entitlements of local communities together. Handled the security and development schemes across the affected States. |
| North East Division | Internal security and law and order in the North‑Eastern States, including insurgency, peace talks with extremist groups, and the administration of Suspension of Operations agreements. |
| Department of Jammu, Kashmir and Ladakh Affairs | All matters relating to the Union territories of Jammu and Kashmir and Ladakh, including counter‑terrorism within Jammu and Kashmir, and coordination with other Ministries on subjects allotted to them. |
| Counter Terrorism and Counter Radicalization (CTCR) Division | The division most directly concerned with this chapter. Handles counter‑terrorism policy, counter‑radicalisation, and the proscription of organisations — it maintains the list of banned organisations under the UAPA. |
| Cyber and Information Security (C&IS) Division | Cyber security and cyber crime policy; the Indian Cyber Crime Coordination Centre (I4C); coordination on protection of critical information infrastructure; and information security policy for government. |
| Border Management‑I and Border Management‑II Divisions | Two separate divisions handling management of land and coastal borders; strengthening of border guarding and creation of related infrastructure; border area development; and coordination among the border guarding forces. |
| Police Modernisation Division | The Modernisation of Police Forces scheme, CCTNS, forensic capacity and equipment modernisation for State police and CAPFs. |
| Police‑I Division | Functions as the cadre‑controlling authority for the Indian Police Service (IPS) — recruitment, training, cadre allocation, promotions and deputation. |
| Police‑II Division | Policy, personnel, operational (including deployment) and financial matters relating to all the Central Armed Police Forces, including the BSF Air Wing. |
Other divisions handle disaster management, foreigners and immigration, freedom fighters, judicial matters, Centre–State relations, women’s safety and the Union territories, together with a separate Coordination and International Cooperation (C&IC) Division — which should not be confused with the Cyber and Information Security Division above.
The structural observation worth carrying into an answer: the MHA is organised geographically and thematically at the same time — an LWE Division and a North East Division sit alongside an Internal Security Division and a Cyber Division. This produces genuine expertise, but it also means a threat that crosses categories, such as a drone smuggling narcotics into Punjab to fund a terror module, engages four divisions at once and belongs to none of them. This is the institutional face of the hybrid‑threat problem.
The Apex Decision‑Making Structure
Cabinet Committee on Security
The CCS is the apex body for executive decision‑making on national security. It is chaired by the Prime Minister and normally comprises the Ministers of Defence, Home Affairs, External Affairs and Finance. It takes the decisions that matter — on defence policy, major security expenditure, and senior appointments in the security establishment. It is a Cabinet Committee, and therefore a body of political decision, not of advice.
National Security Council
The NSC was established in November 1998, following the recommendations of the K. C. Pant Task Force, as the apex body advising the Prime Minister on national security and strategic interests. It is headed by the Prime Minister, with the National Security Adviser, the Ministers of Defence, Home Affairs, External Affairs and Finance, the Chief of Defence Staff, the Service Chiefs and the Vice‑Chairman of NITI Aayog among its members.
Note the relationship, which is frequently confused: the CCS decides, the NSC advises, and their memberships overlap almost entirely. In practice the two function as a single apex with two hats — which makes for smooth implementation but blurs the distinction between the body that recommends and the body that is accountable for the recommendation.
The tiers beneath the NSC
| NSC (PM) | → | SPG | → | JIC | → | NSAB |
| Body | Composition and role |
| Strategic Policy Group (SPG) | The principal mechanism for inter‑ministerial coordination. Chaired by the NSA since November 2018 (previously by the Cabinet Secretary — a significant shift of gravity toward the NSA). Members include the Cabinet Secretary, the three Service Chiefs, the Secretaries of Defence, Home, External Affairs, Finance, Revenue, Atomic Energy and Space, and the heads of the Intelligence Bureau and R&AW. It integrates policy inputs and coordinates implementation across ministries. |
| Joint Intelligence Committee (JIC) | Assesses intelligence collected by the several agencies — IB, R&AW, the service intelligence directorates — and produces integrated assessments. Functions under the NSCS. Its role is analysis and collation, not collection. |
| National Security Advisory Board (NSAB) | Composed of eminent persons from outside government — academia, diplomacy, the armed forces, intelligence, media and civil society. Provides long‑term strategic analysis and recommendations on matters referred to it. Purely advisory, and has at times gone long periods without being reconstituted. |
| National Security Council Secretariat (NSCS) | The executive secretariat of the NSC, headed by the NSA, who is also Secretary to the NSC. Provides analysis, coordinates responses across departments, and supports policy implementation. |
| THE NATIONAL SECURITY ADVISER — THE ACCOUNTABILITY QUESTION The NSA has become, on any realistic assessment, the single most powerful official in India’s security establishment: chair of the SPG, head of the NSCS, Secretary to the NSC, supervisory authority over the technical intelligence organisation, and the government’s principal interlocutor on strategic matters at home and abroad. Yet the office has no statutory basis whatsoever. It was created by executive decision. There are no prescribed qualifications, no fixed tenure, no confirmation process, and no defined mandate setting out what the NSA may and may not do. The office is not answerable to Parliament, and the holder is not a Minister. The case for the arrangement is real: security coordination requires a single trusted point of integration close to the Prime Minister, and statutory rigidity would impede exactly the flexibility that makes the office useful. The case against it is equally real: an office of this consequence, exercising coordination over armed and intelligence agencies, ought to have a defined mandate and some form of legislative accountability. The standard reform proposal — and the one to write — is to define the NSA’s role, qualifications and tenure by statute, without converting the office into a ministry. |
Strategy — the Defence Planning Committee and the Strategy Question
The Defence Planning Committee
The DPC was constituted in April 2018 under the chairmanship of the National Security Adviser, with the Chairman of the Chiefs of Staff Committee (now the Chief of Defence Staff), the three Service Chiefs, the Defence Secretary, the Foreign Secretary and the Secretary (Expenditure) as members. It works through sub‑committees on policy and strategy, plans and capability development, defence diplomacy, and the defence manufacturing ecosystem. Among its principal tasks was the preparation of a draft National Security Strategy.
The National Security Strategy question
A National Security Strategy is a published document setting out a state’s security objectives, its assessment of threats, the instruments assigned to each, and the priority among them. Most major powers publish and periodically revise one. India never has.
| Argument for publishing an NSS | Concern about publishing one |
| Structured long‑term planning — prevents ad hoc, event‑driven decision‑making and produces consistency across changes of government. | Political reluctance — a published strategy creates a benchmark against which failure can be measured, and governments are understandably wary of accountability of that kind. |
| Adapting to changing threats — forces periodic institutional review of hybrid warfare, maritime expansion, cyber and emerging technology. | Reduced policy flexibility — a written commitment narrows room for tactical adjustment; some states, notably Israel, function effectively without one. |
| Global strategic signalling — clarifies India’s posture to partners and adversaries alike and projects its regional role. | Resource constraints — drafting and, more importantly, executing a credible strategy demands sustained financial, human and institutional capacity. |
| Operational clarity — supports coherent decisions on theatre commands, force structure and inter‑agency priority, and enables peer review. | A weak strategic ecosystem — relatively few security‑focused think tanks and limited structured feedback mechanisms to inform and contest a draft. |
Three attempts, no document.
- The Kargil Review Committee (2000) recommended far‑reaching security reform but produced no strategy.
- The Naresh Chandra Committee (2011) examined security sector reform without delivering one.
- The Defence Planning Committee (2018) was expressly tasked with drafting one and has not published it.
The absence is therefore not an oversight; it is a sustained institutional choice, and the reasons are political rather than technical.
| AN IMPORTANT DEVELOPMENT — THE PUBLISHED COUNTER‑TERRORISM STRATEGY In February 2026 the Ministry of Home Affairs published a National Counter‑Terrorism Policy and Strategy, designated “PRAHAAR”. This is a genuine and significant change, because it is the first publicly available national‑level strategy document in the internal security domain, and it materially qualifies the standard criticism that India has no written strategy at all. The strategy is built on seven stated pillars: Prevention of terror attacks to protect Indian citizens and interests, through an approach expressly described as “intelligence‑guided”. Responses that are swift and proportionate to the threat posed. Aggregating internal capacities to achieve synergy through a whole‑of‑government approach.Human rights and rule‑of‑law based processes for the mitigation of threats. Attenuating the conditions enabling terrorism, including radicalisation. Aligning and shaping international efforts to counter terrorism. Recovery and resilience through a whole‑of‑society approach. How to use this in an answer. Do not overclaim. A counter‑terrorism strategy is not a National Security Strategy: it addresses one threat domain, it does not rank threats across domains, it assigns no budgetary priority, and it does not resolve the questions of force structure and theatre command that an NSS would. The accurate and impressive formulation is: India has now published a domain‑specific counter‑terrorism strategy, but still has no overarching National Security Strategy — the gap has narrowed, not closed. |
Intelligence Coordination — MAC, NATGRID and the NCTC That Never Was
The Kargil Review Committee’s central finding was not that intelligence had failed to be collected, but that it had failed to be shared and assessed. Everything in this subsection is an attempt to fix that.
Multi Agency Centre and Subsidiary MACs
- The MAC was established at Delhi, with Subsidiary Multi Agency Centres (S‑MACs) in the States, to pool and share terrorism‑related intelligence on a day‑to‑day basis. It functions under the Intelligence Bureau.
- It became functional in 2002 and was re‑operationalised from 2009, following the Multi Agency Centre (Functions, Powers and Duties) Order, 2008 issued on 31 December 2008 in the aftermath of 26/11.
- 24×7 control rooms operate at the MAC in New Delhi and at the S‑MACs at State level and at the headquarters of the intelligence wings of member agencies. Daily meetings of nodal officers of the member agencies are held on every working day.
- A Cyber Multi Agency Centre (CyMAC) performs an analogous pooling function for cyber threat intelligence, reflecting the migration of the threat landscape described earlier.
- A Joint Task Force on Intelligence (JTFI) operates within the Intelligence Bureau alongside the MAC. Together, MAC and JTFI are described in official policy as the nodal platform for real‑time sharing of counter‑terrorism inputs across the country, linking central agencies and State police forces.
National Intelligence Grid
NATGRID was conceived after 26/11 as an integrated intelligence grid — not an agency and not a collector of intelligence, but a secure query platform allowing authorised agencies to search across the standalone databases of government: banking and tax records, immigration and visa records, telecommunications, and rail and air travel data.
- It was intended to be operational by 2013 and was delayed for a decade by technical, legal and inter‑agency obstacles.
- It has been operational since 2023, providing end‑to‑end encrypted, authorisation‑controlled access to central agencies including R&AW, IB, NIA, CBI, NCB, ED, FIU‑IND, CBDT, CBIC and DRI, and extending to State and Union territory police forces. It now processes a substantial and growing volume of queries each month.
- The distinction to state precisely: NATGRID does not collect intelligence and does not investigate. It is a tool that enables authorised agencies to locate and obtain existing information held elsewhere in government. It is architecture, not authority.
The unresolved concern is privacy. NATGRID operates on executive authority without a dedicated statute, aggregating financial, travel and communications data on a scale that engages the fundamental right to privacy recognised in K. S. Puttaswamy (2017).
There is no independent oversight body, no published audit mechanism, and no statutory limit on function creep. The Digital Personal Data Protection Act, 2023 contains broad exemptions for the State on security grounds. A candidate who notes that India built the grid before it built the safeguards has made a serious point.
The National Counter Terrorism Centre
| CASE STUDY — WHY THE NCTC STALLED The design. The MHA notified the establishment of the NCTC on 3 February 2012, through the National Counter Terrorism Centre (Organisation, Functions, Powers and Duties) Order, 2012, with operations to commence in March 2012. It was modelled on the United States NCTC and the British Joint Terrorism Analysis Centre — a single body to fuse intelligence, plan and coordinate counter‑terror operations. Why it never launched. Four objections, and they are worth distinguishing because they are of different kinds: The federal objection. The NCTC was to have powers of search and arrest under the UAPA, exercisable without informing the State police. Chief Ministers argued this made the State machinery redundant on a subject — police and public order — that is constitutionally theirs. This objection came from Chief Ministers across party lines, not from one political camp. The consultation objection. The States were not consulted before the notification was issued. A body designed to depend on State cooperation was created without seeking any. The accountability objection, which is the most serious and the least discussed. The NCTC was to be placed within the Intelligence Bureau — an organisation that itself has no statutory charter and no parliamentary oversight. An operational body with powers of arrest, housed inside an agency outside legislative scrutiny, raised a genuine constitutional difficulty independent of federalism. The redundancy argument, advanced later by the Government itself: existing coordination mechanisms, principally the MAC, already performed the intelligence‑sharing function, and a new body was not required. Where matters rest. The proposal was effectively abandoned. The published counter‑terrorism strategy of 2026 confirms that India has settled on the MAC and JTFI route — coordination through an existing intelligence platform — rather than a dedicated operational fusion centre. India has therefore chosen intelligence sharing over institutional integration, and the question for an answer is whether that choice is a considered design or simply the residue of a political failure. |
Centre–State and Inter‑State Coordination
Because policing is a State subject and threats are not, the machinery for Union–State coordination is not peripheral to internal security — it is central to it. The available forums are these.
| Forum | Basis, composition and function |
| Zonal Councils | Established under Sections 15 to 22 of the States Reorganisation Act, 1956. Five councils — Northern, Central, Eastern, Western and Southern. Statutory but advisory bodies. The Union Home Minister is Chairman of all five; the Chief Ministers of member States are members, one serving as Vice‑Chairman by annual rotation; each State is additionally represented by two other Ministers, and Union territories by their Administrators. Standing Committees at Chief Secretary level prepare the agenda. They deliberate on inter‑State disputes, border issues, security coordination, and matters of common concern. |
| North Eastern Council | The North‑Eastern States are not members of any Zonal Council. They are served by a separate body constituted under the North Eastern Council Act, 1972, which handles the region’s distinct developmental and security concerns. |
| Inter‑State Council | Constituted under Article 263 in 1990, on the recommendation of the Sarkaria Commission, to inquire into and advise upon disputes between States, and to investigate and discuss subjects of common interest. The Inter‑State Council Secretariat services both the Council and the Zonal Councils. |
| National Integration Council | A non‑statutory body for addressing communal harmony and national integration. The Punchhi Commission recommended that it be given prominence in internal security matters, that it meet at least once a year, and that a five‑member delegation visit any communally affected area within two days. |
The honest assessment. The Zonal Councils have become more active in recent years and now meet with reasonable regularity, chaired by the Union Home Minister, and they do useful work on inter‑State irritants. But three limitations remain. They are advisory, so their conclusions bind nobody. The Inter‑State Council, the one body with a constitutional foundation, meets rarely. And critically, none of these forums is a dedicated internal security coordination mechanism — security appears on their agendas alongside river water, boundary disputes and infrastructure. India has no standing Union–State body whose sole business is internal security, which is a striking omission given that the constitutional design makes such coordination indispensable.
Critical Assessment
What works. The architecture is genuinely layered and, importantly, civilian and democratically controlled — the apex is a Cabinet Committee chaired by the Prime Minister, not a military or intelligence body. The MAC functions: daily inter‑agency sharing across hundreds of nodes is a real achievement measured against the pre‑Kargil position. NATGRID, after a decade of delay, is delivering. And the publication of a counter‑terrorism strategy in 2026 marks the first time India has committed a security doctrine to public paper.
What does not. Five defects, and they compound one another:
- The architecture is almost entirely non‑statutory. The NSC, the NSA, the SPG, the NSAB, the MAC and NATGRID are all creatures of executive order. They can be restructured or wound up without reference to Parliament, and none is subject to legislative oversight. Institutional permanence and democratic accountability have both been traded for flexibility.
- Institutions are created reactively. The MAC followed Kargil; the NIA, NATGRID and the NCTC proposal followed 26/11. The pattern identified earlier recurs here — India builds institutions after events rather than in anticipation of them.
- Coordination was chosen over integration. With the NCTC abandoned, India has no body that fuses intelligence and directs operations. The MAC shares information; it does not command. Against hybrid and grey‑zone threats, which are engineered to fall between agency mandates, information sharing without operational integration may be structurally insufficient.
- There is no overarching strategy. Three committees over twenty‑five years have failed to produce a National Security Strategy, so institutional design proceeds without a stated hierarchy of threats against which to allocate resources.
- Centre–State machinery is advisory and diffuse. No standing forum exists whose exclusive concern is internal security, and the one constitutionally grounded body — the Inter‑State Council — meets seldom.
| CURRENT STATUS (AS OF JULY 2026) National Counter‑Terrorism Policy and Strategy “PRAHAAR”: published by the Ministry of Home Affairs in February 2026, organised around seven pillars, and expressly confirming an intelligence‑guided approach routed through the MAC and the Joint Task Force on Intelligence in the Intelligence Bureau. It also identifies CBRNED materials — chemical, biological, radiological, nuclear, explosive and digital — drones and robotics, and encryption, dark web and crypto‑wallet anonymity as the principal emerging threat vectors. National Security Strategy: still not published. The Defence Planning Committee, constituted in April 2018 and tasked with drafting one, has produced no public document. NATGRID: operational since 2023, serving central agencies and State and UT police, and processing a substantial monthly query volume. It continues to operate without a dedicated statute or independent oversight mechanism. NCTC: not established. The 2012 notification was never brought into operation, and the published 2026 strategy relies on MAC and JTFI instead. LWE Division: continues to function following the declaration of 31 March 2026 that no district falls in the LWE‑affected category, with attention shifting to consolidation in former affected districts. Zonal Councils: meeting regularly under the chairmanship of the Union Home Minister; the Inter‑State Council continues to meet infrequently. |
| SECTION TAKEAWAY India’s security institutions are numerous, capable and almost entirely extra‑statutory. They coordinate well and integrate poorly: the MAC shares intelligence but commands nothing, the NCTC that would have fused and directed was abandoned on federal and accountability grounds, and the NSA who effectively integrates everything holds an office unknown to law. The publication of a counter‑terrorism strategy in February 2026 is a real advance and the first document of its kind, but it covers one domain and leaves the National Security Strategy still unwritten after three attempts across twenty‑five years. The deficiency is not capability. It is that a system built by executive order, in response to past attacks, without a stated hierarchy of threats, will always be organised around the last crisis rather than the next one. |
