Cybersecurity Guideline Digital Financial Asset Trading Pro…

138

Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia

No Ref

Domain Sub-Domain Technical Checklist

Status

Collaboration

79

Cybersecuri- ty Support

Conducting regular joint cybersecurity exercises or training among institutions, attack detection and response capabilities (e.g., ransomware recovery, DDoS mitigation, phishing simulations, AML/KYC standard analysis). involving various industry stakeholders, to improve Adopting a bug bounty program as a collaborative effort with the ethical hacker community, and regularly evaluating the results of joint training to continuously improve security strategies. Establishing a proactive and structured cyber incident response plan covering all phases of response: Preparation, Detection & Analysis, Isolation, Eradication, Recovery, and Post- Incident Activities, so that Exchanges are ready to manage threats effectively. Developing a detailed incident playbook or guidebook for specific attack scenarios (e.g., phishing, ransomware, DDoS), with detailed handling steps and clear role assignments, to ensure that all parties know the actions to take.

4.3.3 (point 5)

 Fulfilled  Partially Fulfilled  Unfulfilled

Description

Collaboration

80

Cybersecuri- ty Support

4.3.3 (point 5)

 Fulfilled  Partially Fulfilled  Unfulfilled

Description

Incident Response Phases & Planning

81

Incident Response

4.4.1 (point 1)

 Fulfilled  Partially Fulfilled  Unfulfilled

Description

Incident Response Phases

82

Incident Response

4.4.1 (point 1)

 Fulfilled  Partially Fulfilled  Unfulfilled

Description

Made with FlippingBook Ebook Creator