88
Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia
b. System Integrity Verification After the restoration process, perform a thorough check
on system and file integrity, including: 1. Validate file hash against the baseline,
2. Review of system and security configurations, 3. Inspection for suspicious activity post-restoration through logs and system monitoring (SIEM, EDR).
This ensures that the system has not only been functionally restored but is also free from malware, backdoors, or other open vulnerabilities. c. System Validation Testing Conduct User Acceptance Testing (UAT) or operational readiness checks in stages, starting from a staging environment before returning the system to the production network. Testing should cover performance, service functionality, and inter-system connectivity. d. Gradual Rollout Restart operations gradually to minimize the risk of subsequent impact. In this phase, it is important to: 1. Reactivate user access in a controlled manner, 2. Activate strict audit logging and monitoring, 3. Establish fallback procedures in case of failure during the recovery phase. Post-incident Activities The post-incident phase is a crucial part of the incident response cycle, aiming to assess the effectiveness of incident handling, understand the root cause of the event, and strengthen cyber defenses to prevent similar incidents in the future. This activity also reflects an organization’s commitment to continuous improvement in information security.
6.
Made with FlippingBook Ebook Creator