Close Menu

    Sign Up for updates

    Get the latest news from QUATRO HIVE about law, policy, technology and innovation.

    By signing up, you agree to our terms and privacy policy agreement.

    Trending Now

    Pixels with a Price: Who Owns Your Images in the Age of AI Editing?

    October 29, 2025

    #SheInspires: Anurita Das, Co-Founder and CEO, Genovation Solutions

    October 24, 2025

    RBI issues draft norms to enable banks to fund acquisitions

    October 24, 2025
    Email WhatsApp LinkedIn Instagram Facebook
    LinkedIn Instagram Facebook
    Quatro Hive
    •  LOGIN
    SIGN UP
    • Experts Speak
      • #FinGurus
      • #NextStar
      • #SheInspires
      • #DesiDisruptors
      • #TheSpotlight
    • Dialogues
      • #CyberClout
      • #FinGurus
      • #NextStar
      • #SheInspires
      • #DesiDisruptors
      • #TheSpotlight
    • Directory
      • Tech Solution Providers
      • Universities
    • Resource Library
      • HiveBuzz
      • BuzzQ
      • Bulletin
    • News
      • Industry Updates
      • Media
    • Events & Partnerships
    • Sign Up
    • Login
    Quatro Hive
    Home » Data Leaks: IRDAI Directs two Insurers to Conduct IT Systems Audit
    Media

    Data Leaks: IRDAI Directs two Insurers to Conduct IT Systems Audit

    Star Health Insurance had recently admitted data breach. The name of the second insurer could not be immediately ascertained
    October 22, 2024By QH team
    Share
    Facebook Twitter LinkedIn WhatsApp

    Insurance regulator Irdai has directed two insurers to carry out audits of their IT systems following concerns over the recent instances of policyholders’ data leaks. The regulator is also in touch with their management to address the vulnerabilities.

    Without naming the insurers, the Insurance Regulatory and Development Authority of India (Irdai) said it takes data breaches very seriously and asserted that it will continue to engage with the companies to ensure that the policyholders’ interests are fully protected.

    Star Health Insurance had recently admitted data breach. The name of the second insurer could not be immediately ascertained.

    There have been reports of data leaks from two Insurers recently,” the regulator said. In a release, the IRDAI said it is closely monitoring the situation in the case of the concerned insurers and has been in touch with their management.

    Regular updates are being obtained to ensure that the policyholders’ data and interests are fully protected and the company is taking all steps to arrest the threat posed by this breach, the regulator said.

    Irdai said it will continue to engage with the insurance companies to ensure that the policyholders’ interests are fully protected.

    “The concerned insurers have been instructed to appoint an independent auditor to undertake a comprehensive audit of the company’s IT landscape with the aim that there are no vulnerabilities and the IT system are adequate to meet the scale and complexities of their operations,” the release said.

    As part of the standard operating procedures of the concerned insurers, they reported the cyber incident to the government and Irdai, it added.

    It also said the concerned insurers have ring-fenced the impacted IT system by isolating it and at the same time, appointed an external IT security company to undertake root cause analysis.

    “The audit firm reported vulnerabilities in the company’s IT system and the methodology used by the threat actor to exploit the same, which were acted upon by insurers. The Containment, Eradication and Recoverability plan as suggested by the audit firm is being implemented by the insurers,” Irdai said.

    Further preventive steps outlined in the report are in the process of implementation to keep the policyholders’ data safe and secure. System upgrades over immediate, short and medium periods, will be acted upon by the insurers, Irdai said.

    Also, the application programming interface (API) vulnerabilities, gap assessment, vulnerabilities assessment and penetration testing issues are at an advanced stage of rectification.

    “The insurers have filed a criminal complaint with the law enforcement agencies against the threat actors. It served legal notice on the social media platform to prevent the threat actor from selling the policyholders’ data,” the regulator said.

    Further, Irdai has issued an advisory to all insurers to check their IT systems for vulnerabilities and take necessary steps to protect the policyholders’ data.

    The regulator said it considers data security as very important and takes data breaches, cyber-attacks on IT systems of insurance companies, etc very seriously.

    Cyber security guidelines for insurance companies are in place, which require insurers to put in place robust IT and cyber security frameworks for carrying out their operations, it added.

     

    https://www.business-standard.com/industry/news/data-leaks-irdai-directs-two-insurers-to-conduct-it-systems-audit-124102100897_1.html

    Data Leak Data Privacy IRDAI Star Health

    Comments are closed.

    Share. Facebook Twitter LinkedIn WhatsApp

    Related Posts

    RBI issues draft norms to enable banks to fund acquisitions

    October 24, 2025By QH Editorial Team

    Indian Army signs MoU with Delhi Technological University to boost defence technology and AI skills

    October 21, 2025By QH Editorial Team

    Bengaluru startup taps AI to speed up analog chip development

    October 21, 2025By QH Editorial Team
    ads
    Experts Speak

    Pixels with a Price: Who Owns Your Images in the Age of AI Editing?

    October 29, 2025

    India’s Data Centre Policy Landscape : Balancing Incentives with Complexity

    October 27, 2025

    Power Plays: How the SCO Summit Could Transform BRICS’ Energy & Tech Leadership

    October 23, 2025

    From Farm to Fork: Can Agritech Solve India’s ₹1.5 Lakh Crore Food Waste Problem?

    October 15, 2025
    ads
    Stay In Touch
    • Twitch
    • WhatsApp
    • LinkedIn
    • Instagram
    • Facebook

    Quatro Hive is a media and knowledge platform built on four pillars which are law, policy, technology and innovation. In collaboration with key industry players, we are dedicated to cultivating a new era of innovation across industries.

    Address: D-65, Ground Floor, #ZBC-042, Defence Colony, New Delhi – 110024
    Email Us: reach@quatrohive.com
    Contact: +91 11 4121 2828, +91 9311 398 140

    Dribbble WhatsApp LinkedIn Instagram Facebook
    Quick Links
    • Experts Speak
    • Dialogues
    • Directory
    • HiveBuzz
    • BuzzQ
    • Bulletin
    • Industry Updates
    • Media
    • Events & Partnerships
    Newsletter

    Sign Up for updates

    Get the latest news from QUATRO HIVE about law, policy, technology and innovation.

    By signing up, you agree to our terms and privacy policy agreement.

    • Terms and Conditions
    • Privacy Policy
    © 2025 Quatro Hive.

    Type above and press Enter to search. Press Esc to cancel.

    Welcome Back!

    Login below or Register Now.

    Forgot Password?

    Register Now!

    Already registerd? Login.

    Lost your password? Please enter your username or email address. You will receive a link to create a new password via email.