93
Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia
2.
Monitoring and Automation a. U se automated monitoring tools to detect anomalies in real time and trigger activities defined in the playbook instantly. b. Integrate incident response tools with other security solutions, such as firewalls and Intrusion Detection Systems (IDS), to streamline the threat mitigation process 12 .
4.4.4 Incident Reporting
1.
Initial Notification Any incident that affects the security of information systems, including but not limited to security breaches, unauthorized access attempts, or operational failures, must be reported by the Providers to the OJK in the form of an initial notification no later than 24 (twenty-four) hours after the incident is discovered. The initial notification report must include the following information: a. Provider Information 1. Provider name; 2. Address of the main operational office; 3. Telephone number; 4. Name of the primary contact person handling the incident; 5. Telephone number of the contact person; 6. List of other authorities or institutions that have also been informed about the incident (if any). b. General Information on Cyber Incidents 1. Date and time of the cyber incident; 2. Date and time when the incident was first discovered;
12 Dawadi, Babu, et al. “Deep Learning Technique-Enabled Web Application Firewall for the Detection of Web Attacks.” Sensors, vol. 23, no. 4, 2023, p. 2073.
Made with FlippingBook Ebook Creator