70
Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia
c. Conducting internal reviews • Performing internal reviews of the maturity assessment reports before being submitted to OJK or relevant authorities to ensure accuracy and completeness. • Including a peer review process by cybersecurity experts in the AKD/AK industry to validate findings and proposed actions, if necessary. d. Submitting reports to OJK or relevant authorities • Establishing communication channels for submitting the maturity assessment reports to OJK or relevant authorities. • Ensuring the security of communication channels to protect sensitive information. • Including a summary of key findings, identified risks, and proposed mitigation strategies. e. Follow-up • Developing follow-up based on input from OJK or relevant authorities. • Maintaining records of all reports and correspondence submitted to OJK for accountability and future reference. f. Ongoing Communication • Establishing regular communication with OJK or relevant authorities to obtain the latest information on reporting requirements or cybersecurity regulations. • Participating in AKD/AK industry forums to enhance knowledge and insights. g. Documentation • Preparing comprehensive documentation of all maturity assessment reports, including supporting evidence and remediation actions. • Ensuring records are securely stored and easily accessible for audits or inspections by OJK.
Made with FlippingBook Ebook Creator