NCDEX Circular on Quarterly Cyber Incident reporting under Cyber Security & Cyber Resilience Framework for Regulated Entities (REs)
10 views
Skip to first unread message
secmarkupdates
unread,
Jul 6, 2026, 7:02:27 AMJul 6
Reply to author
Sign in to reply to author
Forward
Sign in to forward
Delete
You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to UPDATES from SecMark
Date of Issue: 03-07-2026 Highlights of the Circular :
This is with reference to SEBI circular no. SEBI/HO/ ITD-1/ITD_CSC_EXT/P/CIR/2024/113 dated August 20, 2024 and Exchange circular no. NCDEX/COMPLIANCE-062/2024 dated August 26, 2024 on Cyber Security & Cyber Resilience framework for SEBI Regulated Entities (REs).
In view of the above, REs/trading members are required to report Cyber Incident(s) for the quarter ending June 30, 2026, through NCFE portal under the Tab 'Compliance', Sub tab 'Information Security', Portal Link - Cyber Security Incident Reporting or on Exchange Email Id: - inf...@ncdex.com within 15 days i.e. July 15, 2026.
In addition to the above for reporting of Immediate Cyber Incident, REs/trading members are requested to refer to Exchange circular no. NCDEX/Member Tech Compliance-002/2025 dated January 09, 2025 on Standard Operating Procedure (SOP) for handling Cyber Security Incidents
Additionally, with reference to Exchange circular no. NCDEX/COMPLIANCE-051/2025 dated September 29, 2025, regarding technology based sharing mechanisms of common submissions among Exchanges, Members of the Exchange who are also registered with NSE shall submit their Quarterly incident reporting to NSE only. Members of the Exchange who are not registered with NSE shall continue to make submissions to the Exchange as per existing process.
Trading Members are requested to refer Annexure A- Uniform Penalty Structure Exchange Circular Ref No. NCDEX/MEMBER INSPECTION-009/2026 dated April 17, 2026, on actions for non-compliances observed in periodic submissions by trading members related to the Quarterly Cyber Incident Reporting. The details of financial disincentive(s)/ Penalties/ disciplinary action(s) have been provided in Annexure 1.
All Trading Members are advised to take note of the above and comply.
Quarterly Cyber Incident reporting under Cyber Security & Cyber Resilience.pdf