Cybersecurity Guideline Digital Financial Asset Trading Pro…

80

Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia

e. Establishing an effective incident response team and assigning clear responsibilities to each team member to prevent overlaps during incident handling. The incident response team should consist of members from various departments to ensure a comprehensive approach to incident management and should include at least the following: 1. Incident Coordinator : Oversees the incident response process, ensures adherence to protocols, and maintains communication with stakeholders. 2. Technical Specialists : Includes cybersecurity analysts, forensic specialists, and IT staff with expertise in malware analysis, network defense, and system recovery. 3. Legal Advisor : Ensures responses comply with regulatory requirements, assesses legal implications, and manages interactions with law enforcement. 4. Public Communication Function : Manages external communication to maintain the Providers’ reputation and build trust with the affected public and consumers. To accelerate incident response coordination, the incident response team may also involve other stakeholders, such as relevant governmental and non-governmental authorities. f. C onducting regular training and evaluation of the incident response team on the incident response plan, such as phishing simulations, ransomware recovery scenarios, DDoS mitigation drills, security tools, and incident handling procedures. g. Developing an escalation policy, including thresholds for each escalation stage, as well as decision-making authority and reporting of cyber incidents to the OJK or relevant authorities according to the established communication channels.

Made with FlippingBook Ebook Creator