67
Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia
By implementing a comprehensive secure coding approach, Providers can significantly reduce the attack surface and enhance system resilience against potential cyber exploitation.
4.2 Cybersecurity Maturity Level Assessment
Providers must conduct maturity assessments to identify cybersecurity vulnerabilities, enabling the implementation of appropriate measures to strengthen defenses, ensure compliance with applicable regulations, and reduce legal and financial risks. Steps that can be taken in a maturity assessment include: 1. Utilizing standardized Assessment Tools, which can be done by adopting the following frameworks: a. Using the Cyber Security Maturity Assessment (CSMA) tools from BSSN to evaluate cybersecurity capabilities across various domains and identify areas needing improvement; or b. Using the CREST framework to assess the maturity of cyber threat intelligence (CTI). CREST helps determine the Providers’ readiness and capability to respond to and manage cyber threats, align cyber threat intelligence with business needs, and integrate it into broader security practices; or c. Using the NIST Cybersecurity Framework (CSF) 2.0 for a structured approach to assessing cybersecurity maturity. The NIST CSF identifies weaknesses in six core functions, namely: Identification, Protection, Detection, Response, Governance, and Recovery.
Made with FlippingBook Ebook Creator