Summary: SEBI, through Circular No. H0/(449)2026-1TD-5_DIV1/1/19448/2026 dated 24 August 2026, has aligned its Cyber Incident Reporting Portal with the Financial Stability Board’s (FSB) Format for Incident Reporting Exchange (FIRE) framework. SEBI stated that the increasing frequency and sophistication of cyber incidents makes prompt reporting crucial for containing attacks, implementing mitigation measures and strengthening defences. Under Annexure-O (B: Guidelines on Handling Cybersecurity Incidents) of the Cybersecurity and Cyber Resilience Framework (CSCRF), regulated entities are required to report cyber incidents through the prescribed channels, including reporting within six hours through the specified email and within 24 hours through the SEBI Incident Reporting Portal. The FIRE-aligned portal will enable structured reporting using common information fields, standardized definitions and consistent classification of incident attributes, while permitting reporting in stages covering the incident life cycle from initial reporting through intermediate updates and final closure. Regulated Entities must report incidents through SEBI’s Cyber Incident Reporting Portal and take necessary steps to implement the circular, including amendments to relevant bye-laws, rules and regulations, if required. The circular is issued under Section 11(1) of the SEBI Act, 1992 and is to be read with applicable SEBI cybersecurity circulars and subsequent updates. :contentReference[oaicite:0]{index=0}
Securities and Exchange Board of India
Circular No. H0/(449)2026-1TD-5_DIV1/1/19448/2026 | Dated: 24th August 2026
To,
All Alternative Investment Funds (AIFs)
All Bankers to an Issue (BTI) and Self-Certified Syndicate Banks (SCSBs)
All Clearing Corporations
All Collective Investment Schemes (CIS)
All Credit Rating Agencies (CRAs)
All Custodians
All Debenture Trustees (DTs)
All Depositories
All Designated Depository Participants (DDPs)
All Depository Depositories Participants through Depositories
All Investment Advisors (IAs) / Research Analysts (RAs)
All KYC Registration Agencies (KRAs)
All Merchant Bankers (MBs)
All Mutual Funds (MFs)/ Asset Management Companies (AMCs)
All Portfolio Managers
All Registrar to an Issue and Share Transfer Agents (RTAs)
All Stock Brokers through Exchanges
All Stock Exchanges
All Venture Capital Funds (VCFs)
BSE Limited (Investment Adviser Administration and supervisory body IAASB)
BSE Limited (Research Analysts Administration and supervisory body-RAASB)
Sir/ Madam,
Subject: Alignment of SEBI’s Cyber Incident Reporting Portal with FIRE format
1. With the rapid pace of technological developments in securities market, the frequency and sophistication of cyber incidents are also on the rise. To proactively address these evolving threats and ensure the security of securities market ecosystem, prompt reporting of these incidents are crucial to contain the attack, implement mitigation measures and strengthen defences.
2. SEBI has already prescribed guidelines for reporting of cyber incidents under Annexure-O (B: Guidelines on Handling Cybersecurity Incidents) of CSCRF framework, mandating that all regulated entities report cyber incident through mkt [email protected] within 6 hours and SEBI Incident Reporting Portal within 24 hours.
3. In order to streamline the reporting of cyber incidents, SEBI has aligned its Incident Reporting Portal with “Format for Incident Reporting Exchange (FIRE)” Framework developed by Financial Stability Board (FSB). FIRE enables a structured incident reporting by defining common information fields, standardized definitions, and consistent classification of incident attributes promoting harmonisation across sectors or jurisdictions.
4. The portal will facilitate reporting of incidents in stages to reflect incident life cycle from initial reporting to intermediate updates and final closure, while acknowledging that certain information may not be available at the time of initial reporting.
5. Regulated Entities (REs) shall report cyber incidents through the Cyber Incident Reporting Portal of SEBI which can be accessed by logging into https://siportal.sebi.gov.in. Regulated Entities are required to take necessary steps to put in place systems for implementation of the circular, including necessary amendments to the relevant bye-laws, rules and regulations, if any.
6. This circular should be read in conjunction with the applicable SEBI circulars (including but not limited to Cybersecurity and Cyber Resilience framework) and any subsequent updates issued by SEBI from time to time.
7. This circular is issued in exercise of powers conferred under Section 11 (1) of the Securities and Exchange Board of India Act, 1992, to protect the interests of investors in securities and to promote the development of, and to regulate the securities market.
8. The circular is issued with the approval of competent authority.
9. This circular is available on SEBI website at sebi.gov.in under the category: ‘Legal —> Circulars’.
Yours Faithfully,
Mamata Roy
Deputy General Manager
Phone: 022-26449599
Email: [email protected]




