Timeline extended for adoption of CSCRF
SEBI/HO/ ITD-1/ITD_CSC_EXT/P/CIR/2025/45
Link to SEBI’s Circular
Applicability:
This circular applies to all SEBI-regulated Alternative Investment Funds (AIFs).
Amendment to Compliance Deadline:
The deadline for implementing the Cybersecurity and Cyber Resilience Framework (CSCRF), as per SEBI Circular SEBI/HO/ITD-1/ITD_CSC_EXT/P/CIR/2024/113 has been extended to June 30, 2025.
Obligations:
Comply with CSCRF cybersecurity standards.
Establish a cybersecurity policy approved by the Board.
Conduct periodic cybersecurity audits and submit reports.
Have incident response and recovery plans in place.
Ensure third-party vendors comply with CSCRF standards.
Provide continuous cybersecurity training for staff.
To quickly assess your readiness for compliance with CSCRF → fill this form.
Effective Date:
Compliance must be completed by June 30, 2025.