SEBI's Cybersecurity and Cyber Resilience Framework (CSCRF) is mandatory for all SEBI-regulated entities — stock exchanges, brokers, depositories, and RTAs. It mandates network security architecture documentation, privileged access management for market infrastructure, regular VAPT, incident response capability, and periodic Board-level cyber risk reporting. Updated in 2024 to align with global cyber resilience standards.
Banks acting as depository participants, custodians, or trading members must comply with SEBI's CSCRF for their capital markets operations. Failure to meet the SEBI IT compliance checklist triggers enforcement, trading suspension, and mandatory remediation timelines.
Tap each control implemented in your environment — governance score updates live
We use cookies
InfraVeritas 360 uses essential cookies for security and session management, and optional cookies for analytics. We require your consent before setting non-essential cookies. Privacy Policy