Cybersecurity Guideline Digital Financial Asset Trading Pro…

145

Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia

No Ref

Domain Sub-Domain Technical Checklist

Status

Risk Treatment

107

Cyber Risk Management

Possessing Risk Treatment Procedures that at least contain the following points: 1. Risk tiering 2. Risk treatment options 3. Security Follow-up Actions 4. Periodic Monitoring & Review

5.2

 Fulfilled  Partially Fulfilled  Unfulfilled

Description

Third-Party Risk Management

108

Cyber Risk Management

Possessing documentations concerning: 1. Third-party risk

5.4 (point 4)

 Fulfilled  Partially Fulfilled  Unfulfilled

management policy

2. potential risk

Description

exposure arising from services, systems, or business process of the third party.

3. third-party

cooperation life cycle

4. cybersecurity

requirements that must be fulfilled by the third party

Third-Party Risk Management

109

Cyber Risk Management

Special functions related to third-party risk management.

5.4 (point 4)

 Fulfilled  Partially Fulfilled  Unfulfilled

Description

END of document

Made with FlippingBook Ebook Creator