> ## Documentation Index
> Fetch the complete documentation index at: https://help.dsalta.com/llms.txt
> Use this file to discover all available pages before exploring further.

# SEBI CSCRF

> Meet the Securities and Exchange Board of India's Cyber Security and Cyber Resilience Framework.

> Meet the Securities and Exchange Board of India's Cyber Security and Cyber Resilience Framework.

The Securities and Exchange Board of India (SEBI) Cyber Security and Cyber Resilience Framework (CSCRF) sets cybersecurity requirements for SEBI-regulated entities such as stock exchanges, depositories, brokers, and mutual funds. It consolidates security, governance, and resilience requirements across the Indian securities market.

<Note>
  The CSCRF applies to a wide range of SEBI-regulated entities, with requirements scaled by entity size and type.
</Note>

## Who needs SEBI CSCRF?

<CardGroup cols={2}>
  <Card title="Market infrastructure institutions" icon="building-columns">
    Stock exchanges, clearing corporations, and depositories.
  </Card>

  <Card title="Intermediaries" icon="chart-line">
    Brokers, mutual funds, and other SEBI-regulated intermediaries.
  </Card>
</CardGroup>

## Key components

<CardGroup cols={3}>
  <Card title="Governance" icon="gavel">
    Board-level cybersecurity oversight and accountability.
  </Card>

  <Card title="Protective controls" icon="shield">
    Identity management, network security, and data protection.
  </Card>

  <Card title="Detection & response" icon="radar">
    Monitoring, incident detection, and response capabilities.
  </Card>

  <Card title="Cyber resilience" icon="arrows-rotate">
    Business continuity and recovery for critical market functions.
  </Card>
</CardGroup>

## How DSALTA helps with SEBI CSCRF

<Steps>
  <Step title="Activate SEBI CSCRF">
    Select the SEBI CSCRF from the Frameworks page. DSALTA maps its requirements to controls.
  </Step>

  <Step title="Review mapped controls">
    Review governance, protection, and resilience controls and assign owners.
  </Step>

  <Step title="Collect evidence automatically">
    Connect integrations to gather technical evidence.
  </Step>

  <Step title="Approve policies">
    Review and approve policies aligned with the CSCRF.
  </Step>

  <Step title="Track readiness">
    Monitor your compliance posture against the framework.
  </Step>
</Steps>

## Frequently asked questions

<AccordionGroup>
  <Accordion title="Who must comply with the CSCRF?" icon="circle-question">
    SEBI-regulated entities including exchanges, depositories, brokers, and mutual funds, with requirements scaled by entity category.
  </Accordion>

  <Accordion title="Is the framework graded by entity size?" icon="layer-group">
    Yes. The CSCRF classifies entities (for example by size and activity) and applies proportionate requirements to each category.
  </Accordion>
</AccordionGroup>

## Related pages

* [Active Frameworks](/guides/compliance/frameworks-active)
* [Available Frameworks](/guides/compliance/frameworks-available)
* [Controls](/guides/compliance/controls)
* [Audits](/guides/compliance/audits)
