Cybersecurity Guideline Digital Financial Asset Trading Pro…

139

Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia

No Ref

Domain Sub-Domain Technical Checklist

Status

Incident Response Phases

83

Incident Response

Utilizing threat intelligence frameworks such as MITRE ATT&CK to help identify attacker tactics and techniques and inform appropriate response strategies. Formulating immediate actions in incident procedures: for example, promptly suspending user accounts affected by phishing attacks, or isolating systems infected with malware/ ransomware, to prevent further escalation. Establishing clear responsibilities for each team member, and documenting incident handling procedures (playbook, escalation flow, communication plan) to avoid confusion during incidents. Establishing and documenting incident escalation procedures with clear thresholds (e.g., number of consumers affected, financial loss, regulatory reporting obligations) to ensure timely involvement of management and/or regulators according to the severity of the incident.

4.4.1 (point 1)

 Fulfilled  Partially Fulfilled  Unfulfilled

Description

Incident Response Phases

84

Incident Response

4.4.1 (point 1)

 Fulfilled  Partially Fulfilled  Unfulfilled

Description

Incident Response Phases

85

Incident Response

4.4.1 (point 1)

 Fulfilled  Partially Fulfilled  Unfulfilled

Description

Incident Response Phases

86

Incident Response

4.4.1 (point 1)

 Fulfilled  Partially Fulfilled  Unfulfilled

Description

Made with FlippingBook Ebook Creator