The Bombay Stock Exchange (BSE) on April 26, 2024, issued a notification regarding the Cyber Security & Cyber Resilience framework for Stock Brokers / Depository Participants.
The following has been stated namely, -
• It specifies that trading members shall carry out Cyber Security & Cyber Resilience Audit for the period ended March 31, 2024, as per the applicability criteria given in the tables:
o Table 1: Categorization of members and periodicity of Cyber Audit
oTable 2: Report Submission Timelines
• It also specifies that reports mentioned in Table 2 shall required to be submitted only in electronic form through BEFS (BSE Electronic Filing s) – http://befs.bseindia.com.
• It states that trading members shall submit corrective action reports for each non-compliance reported by auditors within specified timelines, with auditors subsequently categorizing compliance status as Compliant or Non-Compliant on BEFS after reviewing corrective action details.
• It also states that trading members shall comply with any non-compliance/ non-conformities (NCs) pending submissions for cyber audit reports for the previous audit period by submitting ATR through the BEFS Portal.
Kindly refer to the attached document and annexures while submitting the Cyber Security & Cyber Resilience Audit Report.
[Notice no. - 20240426-61]