Cybersecurity Guideline Digital Financial Asset Trading Pro…

90

Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia

c.

Communication 1. Share findings and corrective actions with internal teams, including employees and leaders, to build awareness and trust in the Providers’ ability to respond to incidents. 2. Provide updates to consumers and partners with a focus on transparency, highlighting the steps taken to protect their data and prevent similar incidents in the future. 3. Submit mandatory reports to authorities to ensure compliance with data breach reporting regulations.

4.4.2 Resource Allocation

To ensure that the cybersecurity strategy can be implemented effectively and sustainably, Providers must ensure adequate resource allocation, whether in the form of supporting technology, personnel, or the development of cybersecurity team capabilities. The availability and utilization of these resources must be designed to support rapid threat response, improvement of operational efficiency, and adaptation to the ever-evolving threat landscape. 1. Access to Critical Security Systems The security team must have full access to essential systems and tools, such as: a. Security Information and Event Management (SIEM): A system used to collect, analyze, and correlate logs from various sources in real time, enabling early detection of potential incidents and threat escalation. b. Security Orchestration, Automation, and Response (SOAR): A framework that enables automated and coordinated responses to threats through predefined playbooks. With SOAR, functions such as system isolation, incident reporting, and notifications can be carried out

Made with FlippingBook Ebook Creator