103
Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia
3.
Periodic monitoring and review a. C onducting regular or periodic risk assessments to identify new risks and re-evaluate existing risks. b. Performing annual reviews of the effectiveness of risk management measures through audits, penetration testing, and vulnerability assessments to evaluate the effectiveness of the implemented controls. c. Providing feedbacks based on the lessons learned from the incidents and undergoing risk management process updates. Action plan implementation a. Setting risk priorities based on the potential impact and likelihood, and prioritize resource allocation to the most critical areas. b. Allocating the necessary resources, including budget, personnel, and technology, to the aspects with the highest risk or the most widespread potential impact in order to implement risk management measures effectively.
4.
Made with FlippingBook Ebook Creator