SEBI Background

Meet the demands of the SEBI CSCRF

The compliance requirements of the Securities and Exchanges Board of India (SEBI) span a range of areas including financial reporting, disclosures, governance, third-party risk, data retention, insider trading, and cyber resilience. Of these, Akku makes compliance with SEBI’s Cybersecurity and Cyber Resilience Framework (CSCRF) simpler and quicker with its range of cybersecurity controls.

SEBI Cybersecurity Illustration

Why Does Compliance with the SEBI Cybersecurity and
Cyber Resilience Framework (CSCRF) Matter?

SEBI regulations apply to a range of entities including stock brokers, investment advisors, portfolio managers, mutual funds, RTAs, KRAs, and market infrastructure institutions (MIIs).

ISO 1

SEBI regulations are highly stringent, meaning that your organization’s compliance also ensures secure, trustworthy, and resilient operations.

ISO 2

Non-compliance with SEBI compliance requirements can result in major penalties, including fines, license suspension, and even imprisonment.

ISO 3

SEBI’s regulations are mandatory for regulated entities to operate in India, and so the importance of compliance cannot be overstated.

Akku for Compliance with SEBI Regulations

A subset of SEBI’s compliance requirements are cybersecurity system-driven — requiring controls such as IAM, PAM, MFA, access restrictions, and log monitoring, and that’s where Akku can streamline your path to compliance.

Security AreaAkku’s CoverageDescription
Identity & Access Management (IAM)FullAccess controls by user, group, IP, device, time, and location across cloud and on-prem apps can be enforced
Multi-Factor Authentication (MFA)FullAdaptive MFA, desktop MFA, and BYOF are supported
Privileged Access Management (PAM)PartialDynamic, time-bound, single-use access is provided; no credential vaulting and no session video recording
Endpoint & DLP ControlsPartialUSB access, screen capture, file uploads, and access to non-corporate cloud and email accounts can be blocked; no deep content scanning
User Lifecycle Management (ULM)FullProvisioning and deprovisioning are automated with a join-move-exit lifecycle
Security Event Logging & Audit TrailsFullLogs are maintained across IAM, MFA, ULM, and endpoints with analytics and risk scoring
Cloud Service & SaaS Access SecurityFullSSO-IDP with access policies for cloud and proprietary applications is provided
Insider Threat Detection & Anomalous Behavior MonitoringPartialRisk analytics are provided based on access logs; full UEBA requires external tools

Akku can help you comply with SEBI’s cybersecurity compliance requirements faster and more easily.