Modification in Cyber Security and Cyber resilience framework of Qualified Registrars to an Issue and Share Transfer Agents (“QRTAs”)
X X X X Extracts X X X X
X X X X Extracts X X X X
....ecurity and Cyber resilience framework of Qualified Registrars to an Issue and Share Transfer Agents ("QRTAs") 1. SEBI vide circular SEBI/HO/MIRSD/CIR/P/2017/100 dated September 08, 2017 prescribed framework for Cyber Security and Cyber Resilience for Qualified Registrars to an Issue and Share Transfer Agents ("QRTAs") 2. In partial modification to Annexure A of SEBI circular dated September 08,....
X X X X Extracts X X X X
X X X X Extracts X X X X
....n assets (internal and external), details of its network resources, connections to its network and data flows. 40. QRTAs shall carry out periodic vulnerability assessment and penetration tests (VAPT) which inter-alia include critical assets and infrastructure components like Servers, Networking systems, Security devices, load balancers, other IT systems etc. pertaining to the activities done as ....
X X X X Extracts X X X X
X X X X Extracts X X X X
....e basis and compliance of closure of findings identified during VAPT shall be submitted to SEBI within 3 months post the submission of final VAPT report. 42. In addition, QRTAs shall perform vulnerability scanning and conduct penetration testing prior to the commissioning of a new system which is a critical system or part of an existing critical system. 3. Further, the QRTAs are mandated to con....