Cyber Security and Cyber Resilience framework of Stock Exchanges, Clearing Corporations and Depositories
Show AI Summary
Cyber Security Operation Center requirement mandates round the clock monitoring, incident sharing and governance for market infrastructure institutions.
MIIs must establish a Cyber Security Operation Center (C-SOC) providing 24x7 identification, monitoring, analysis, response, recovery and reporting of cyber incidents. The C-SOC shall perform continuous threat analysis, log and traffic monitoring, VAPT, forensic and root cause analysis, simulations, automation and DR parity; be headed by a CISO reporting to the MD & CEO; deploy designated security technologies; follow a board approved Cyber Crisis Management Plan; adopt one of the specified in house or shared staffing models while retaining ultimate responsibility; provide quarterly board reports; and include C SOC implementation in the annual systems audit.