SEBI Clarifies Cybersecurity and Resilience Norms for Regulated Entities

On 28th August 2025, the Securities and Exchange Board of India (SEBI) issued a circular to provide technical clarifications on the Cybersecurity and Cyber Resilience Framework (CSCRF) for market intermediaries.

  • The aim is to bolster the resilience of these entities and ensure consistent implementation of cybersecurity practices across various sectors.

Major Highlights

  • The circular introduces the principles of exclusivity and equivalence to address cases where entities are regulated by multiple authorities.
  • It refines the definitions of critical and non-critical systems, enabling entities to better categorize their IT infrastructure.
  • Detailed guidelines are provided for Vulnerability Assessment and Penetration Testing (VAPT) and audit submissions ....
Do You Want to Read More?
Subscribe Now

To get access to detailed content

Already a Member? Login here


Take Annual Subscription and get the following Advantage
The annual members of the Civil Services Chronicle can read the monthly content of the magazine as well as the Chronicle magazine archives.
Readers can study all the material before the last six months of the Civil Services Chronicle monthly issue in the form of Chronicle magazine archives.

Related Content