2025-01-01
The Reserve Bank issued the Cybersecurity and Resilience Guideline to require all regulated financial institutions to implement comprehensive, risk-based cybersecurity frameworks aligned with their operational scale. Institutions must establish clear board and senior management oversight, appoint a Chief Information Security Officer, and execute continuous risk identification, protection, detection, response, and recovery processes. The framework further mandates rigorous third-party vendor management, periodic internal and external audits, and structured incident reporting to maintain sustained operational resilience against emerging cyber threats.