The Department of Information Security ( Ministry of Information and Communications ) has just issued an urgent warning after the agency discovered an increasing trend of cyber attacks, especially ransomware attacks.
Accordingly, recently, a number of information systems of agencies, organizations and enterprises in Vietnam have been attacked, causing disruptions in operations and material damage to the image of agencies, organizations and enterprises, as well as activities to ensure national cyberspace security.
Therefore, the Department of Information Security recommends that units review and deploy network information security assurance for information systems under their management.
Specifically, it is necessary to review and strengthen solutions to ensure network information security for information systems, prioritize solutions to monitor, give early warning, and evaluate information security assurance for information systems under management. In case of detecting risks, vulnerabilities, and weaknesses, it is necessary to immediately deploy remedial measures.
Before April 15, it is necessary to complete information systems for storing and processing personal information and personal data and ensuring information security at level 1.
In addition, units need to develop a plan to implement and complete regulations on ensuring information system security by level, ensuring that 100% of operating information systems must be approved for information system security levels no later than September 2024.
In addition, fully implement the information security assurance plan according to the approved level proposal documents no later than December 2024.
Illustration
Units must ensure information security according to the 4-layer model, especially improving the capacity of the monitoring layer, professional protection and maintaining continuous, stable connections.
The National Cyber Security Monitoring Center under the Department of Information Security, Ministry of Information and Communications, said that priority should be given to using cyber security products, solutions, and services produced or mastered by Vietnamese enterprises.
The Department of Information Security requires units to deploy a plan to periodically back up systems and important data to promptly restore data when attacked by data encryption and report incidents to the Department of Information Security according to regulations and participate in the national network information security incident response network according to regulations.
For systems that have been found to have a serious security vulnerability, after fixing the vulnerability, it is necessary to immediately perform threat hunting to determine the possibility of previous intrusion.
Check and update information security patches for important systems according to warnings from the Information Security Department and related agencies and organizations; periodically check, evaluate, and review to promptly detect information security vulnerabilities and weaknesses existing in the system...
Source: https://nld.com.vn/bo-thong-tin-va-truyen-thong-canh-bao-khan-ve-ma-doc-tong-tien-19624033115584643.htm
Comment (0)