Compliance & Risk Advisory
Gap assessments, policies and playbooks aligned with RBI, SEBI CSCRF, CERT-In, IRDAI, PCI DSS and DPDP.
Learn more about Compliance & Risk Advisory →The Insurance Regulatory and Development Authority of India (IRDAI) expects insurers and insurance intermediaries to run a documented information and cyber security programme with board oversight.
The guidelines cover governance, risk assessment, technical controls, incident management and periodic audit, and they align with CERT-In reporting obligations.
Board-approved information and cyber security policy and a designated CISO or equivalent responsible official.
Periodic assessment of information and cyber security risks across systems and vendors.
Controls for access, data protection, network security, application security and endpoint security.
Logging and monitoring of systems, aligned with CERT-In log retention expectations.
Incident response procedures and reporting of cyber incidents, including to CERT-In within prescribed timelines.
Regular information and cyber security audit, with findings reported and closed.
Aligned with, not endorsed by any regulator. This page is a plain-English summary for awareness — confirm obligations against the latest official circulars or with your compliance officer.
Gap assessments, policies and playbooks aligned with RBI, SEBI CSCRF, CERT-In, IRDAI, PCI DSS and DPDP.
Learn more about Compliance & Risk Advisory →Independent review of your systems, controls and architecture against the rules you must follow.
Learn more about Security Audit →Find and fix weaknesses in apps, APIs, networks and cloud before attackers exploit them.
Learn more about VAPT →Call us when it matters: triage, containment, recovery and regulator reporting support.
Learn more about 24/7 Incident Response →They apply to insurers and insurance intermediaries as specified by IRDAI. We help you confirm your obligations.
The guidelines require periodic audit. We help you plan the audit cycle and prepare evidence.
Yes. Insurers are also covered by the CERT-In Directions, so incident reporting to CERT-In applies alongside IRDAI requirements.
We assess where you stand, close the gaps and prepare the evidence your auditors and regulator will ask for.
support@trustnetsecure.com · +91 93229 37312 · +91 88300 61438
Under attack right now? Go to emergency help →
📍 Location not reported
📍 Location not reported
📍 Location not reported
📍 Location not reported
📍 Location not reported
📍 Location not reported
Source: The Hacker News — headlines only, each linking to the original article.