India Hub/IRDAI/Control Catalogue — 14 Security Domains
Layer 1 · Risk Managers · Auditors — implementation

IRDAI Control Catalogue — 14 Security Domains

All 14 IRDAI security domains with key mandates and the evidence auditors expect.

Last verified: 2026-06-17
#Security DomainKey MandateEvidence Required
1Governance & OrganisationBoard must constitute an Information Security Committee (ISC); appoint a CISO; IS policy reviewed annually and approved by boardBoard minutes, IS policy, CISO appointment letter
2Information Security PolicyComprehensive IS policy covering all domains; communicated to all staff; reviewed when there is a significant changeSigned IS policy, training attendance records
3Human Resource SecuritySecurity awareness training at induction and annually; background checks for privileged users; termination checklist for access revocationTraining records, background check certificates
Unlock all 14 rows — Pro

Sign in to unlock — every free trial includes full Pro access to the deep-dive catalogues.

Sign in to unlock

Made with Emergent