139
Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia
No Ref
Domain Sub-Domain Technical Checklist
Status
Incident Response Phases
83
Incident Response
Utilizing threat intelligence frameworks such as MITRE ATT&CK to help identify attacker tactics and techniques and inform appropriate response strategies. Formulating immediate actions in incident procedures: for example, promptly suspending user accounts affected by phishing attacks, or isolating systems infected with malware/ ransomware, to prevent further escalation. Establishing clear responsibilities for each team member, and documenting incident handling procedures (playbook, escalation flow, communication plan) to avoid confusion during incidents. Establishing and documenting incident escalation procedures with clear thresholds (e.g., number of consumers affected, financial loss, regulatory reporting obligations) to ensure timely involvement of management and/or regulators according to the severity of the incident.
4.4.1 (point 1)
Fulfilled Partially Fulfilled Unfulfilled
Description
Incident Response Phases
84
Incident Response
4.4.1 (point 1)
Fulfilled Partially Fulfilled Unfulfilled
Description
Incident Response Phases
85
Incident Response
4.4.1 (point 1)
Fulfilled Partially Fulfilled Unfulfilled
Description
Incident Response Phases
86
Incident Response
4.4.1 (point 1)
Fulfilled Partially Fulfilled Unfulfilled
Description
Made with FlippingBook Ebook Creator