145
Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia
No Ref
Domain Sub-Domain Technical Checklist
Status
Risk Treatment
107
Cyber Risk Management
Possessing Risk Treatment Procedures that at least contain the following points: 1. Risk tiering 2. Risk treatment options 3. Security Follow-up Actions 4. Periodic Monitoring & Review
5.2
Fulfilled Partially Fulfilled Unfulfilled
Description
Third-Party Risk Management
108
Cyber Risk Management
Possessing documentations concerning: 1. Third-party risk
5.4 (point 4)
Fulfilled Partially Fulfilled Unfulfilled
management policy
2. potential risk
Description
exposure arising from services, systems, or business process of the third party.
3. third-party
cooperation life cycle
4. cybersecurity
requirements that must be fulfilled by the third party
Third-Party Risk Management
109
Cyber Risk Management
Special functions related to third-party risk management.
5.4 (point 4)
Fulfilled Partially Fulfilled Unfulfilled
Description
END of document
Made with FlippingBook Ebook Creator