Cybersecurity Guidelines for FSTI Providers
2. Security Measures/Tools
a) Deploy advanced security measures, such as multi-factor authentication, data encryption, and secure coding practices to mitigate identified risks. b) Utilise automated monitoring tools to track and analyse network traffic and system activities for signs of potential threats. c) Develop and implement a robust incident response plan that includes specific actions for detecting, containing, eradicating, and recovering from security incidents. d) Ensure third-party vendors comply with FSTI Provider’s security policies and are willing to undergo inspection by OJK if necessary. Regularly, FSTI Providers assess their security posture to mitigate supply chain risks.
3. Regular Monitoring and Review
a) Conduct regular risk assessments to identify new risks and re-evaluate existing risks. b) Conduct annual reviews of the effectiveness of risk treatment measures through audits, penetration tests, and vulnerability assessments.
c) Provide feedback based on lessons learned from past incidents and update the risk management processes. d) Regularly monitor compliance with industry standards and applicable regulations.
48
Made with FlippingBook. PDF to flipbook with ease