Security Guidelines to all PFMS users for strict adherance: CGA, PFMS (HQ) Office Memorandum dated 05.02.2026

Security Guidelines to all PFMS users for strict adherance: CGA, PFMS (HQ) Office Memorandum dated 05.02.2026

Security Guidelines to all PFMS users for strict adherance: CGA, PFMS (HQ) Office Memorandum dated 05.02.2026

security-guidelines-to-all-pfms-users

No. V-12025/5/2025-PFMS/C.N. 18742/5624-5625
Government of India
Ministry of Finance
Department of Expenditure
Controller General of Accounts
Public Financial Management System (HQ)
3rd & 4th Floor Shivaji Stadium Annexe
New Delhi – 110001

Dated: 05.02.2026

OFFICE MEMORANDUM

Subject: Security Guidelines to all PFMS users.

All PFMS users are, hereby, advised to follow the security guidelines contained herein to mitigate the risks of cyber-attacks and ensure information security.

2. Further, all Pr. CCA/CCA/CAs (independent charge) being the nodal officer of PFMS are also requested to issue necessary instructions to all the PFMS users under their administrative control that PFMS credentials must NOT be shared.

3. PFMS users are required to adhere to the following security guidelines :-

  1. Create a strong password and do not share your username, password and OTP with anyone.
  2. Change your password periodically and immediately if anyone suspect unauthorized access.
  3. Update operating system, browsers, plugins, anti virus and software to the latest version.
  4. Always log out after completing your sessions.
  5. If you receive an OTP without initiating a transaction, report it immediately.
  6. Be cautious of emails, messages, or calls asking for sensitive information.
  7. Verify the website URL before logging in and ensure it begins with https://.
  8. Do not click on suspicious links or download attachments from unknown sources.
  9. Remove unauthorized software & social media sites from the system.
  10. Install suitable anti-malware, anti-ransomware and anti-exploit software.
  11. Configure regular system scans.
  12. Keep all the systems password protected. The password may not be shared with any other person.
  13. Do not save login credentials of NIC mail accounts, Kavach and PFMS login id in browser.
  14. Failure to follow these security guidelines may increase the risk of fraud or unauthorized access.
  15. In case of suspected fraud, security breach or loss of credentials report the same immediately which prevent further misuse and financial loss.

This issues with the approval of Competent Authority.

(Rahul Garg)
Deputy. CGA (Tech.)

To,

  1. All Pr. CCAs/CCAs/CAs (independent charge).
  2. Sr. AO (Helpdesk) and Sr. AO (GIFMIS) for uploading on PFMS and CGA websites respectively.

Click to view/download PDF

Follow us on Telegram ChannelTwitter and Facebook for all the latest updates

COMMENTS