Indonesian Financial Services Authority
4. Incident Response
4.1.
Establish an incident response plan that includes procedures for detecting, reporting, isolating, eradicating incidents, and data recovery. Train the incident response team according to their roles and responsibilities and conduct regular exercises to ensure preparedness. Report all significant cybersecurity incidents to OJK in a timely manner, as required by regulation.
4.2.
4.3.
5.
Transparency and Accountability
5.1.
Openly disclose information about FSTI Provider’s cybersecurity practices, risk management, and incidents (as needed) to build customer and stakeholder trust. Maintain transparent and open communication with OJK and related authorities and comply with all disclosure requirements.
5.2.
6. Collaboration and Information Sharing
6.1.
Actively engage in industry collaboration to improve the cybersecurity ecosystem of FSTI Providers. Share information on threats and vulnerabilities with other FSTI Providers and participate in joint cyber defense implementation.
6.2.
105
Made with FlippingBook. PDF to flipbook with ease