Cyber Security Operation Center requirement mandates round the clock monitoring, incident sharing and governance for market infrastructure institutions. MIIs must establish a Cyber Security Operation Center (C-SOC) providing 24x7 identification, monitoring, analysis, response, recovery and reporting of cyber incidents. The C-SOC shall perform continuous threat analysis, log and traffic monitoring, VAPT, forensic and root cause analysis, simulations, automation and DR parity; be headed by a CISO reporting to the MD & CEO; deploy designated security technologies; follow a board approved Cyber Crisis Management Plan; adopt one of the specified in house or shared staffing models while retaining ultimate responsibility; provide quarterly board reports; and include C SOC implementation in the annual systems audit.
Cases where this provision is explicitly mentioned in the judgment/order text; may not be exhaustive. To view the complete list of cases mentioning this section, Click here.
Provisions expressly mentioned in the judgment/order text.
Cyber Security Operation Center requirement mandates round the clock monitoring, incident sharing and governance for market infrastructure institutions.
MIIs must establish a Cyber Security Operation Center (C-SOC) providing 24x7 identification, monitoring, analysis, response, recovery and reporting of cyber incidents. The C-SOC shall perform continuous threat analysis, log and traffic monitoring, VAPT, forensic and root cause analysis, simulations, automation and DR parity; be headed by a CISO reporting to the MD & CEO; deploy designated security technologies; follow a board approved Cyber Crisis Management Plan; adopt one of the specified in house or shared staffing models while retaining ultimate responsibility; provide quarterly board reports; and include C SOC implementation in the annual systems audit.
Full Summary is available for active users!
Note: It is a system-generated summary and is for quick reference only.