1. What’s New in IRDAI’s Cybersecurity Framework
Participants gained clarity on:
- Strengthened governance and accountability requirements
- Mandatory incident reporting timelines
- Continuous risk assessment and vulnerability management
- Integration of cybersecurity with enterprise risk management
2. Learning from Other Regulators
Drawing parallels with SEBI’s cybersecurity mandates, the discussion highlighted how IRDAI is adopting a more structured and outcome‑driven approach—placing equal emphasis on prevention, detection, and response.
3. Preparing for April 2026
A major focus was on what insurers and intermediaries must do now to avoid last‑minute compliance gaps, including:
- Updating policies and control frameworks
- Conducting regular cyber risk assessments and audits
- Training employees and partners on cyber hygiene and fraud awareness
4. How Microsoft Helps Enable Compliance
Divya Oberoi shared practical insights into how Microsoft technologies can support IRDAI compliance, including:
- Microsoft 365 for secure collaboration, identity protection, and data governance
- Microsoft Defender for endpoint, identity, and cloud threat protection
- Microsoft Sentinel for SIEM and SOAR‑driven threat detection and incident response
- Azure security capabilities to support scalability, resilience, and audit readiness
Real‑world use cases demonstrated how insurers can move from reactive security to a proactive, intelligence‑driven security posture.