• Font Size:
  • S
  • M
  • L

Chapter Content

Title:

Reference Guidelines on the Protection of the Information and Communication Systems of Service Enterprises in Securities and Futures Markets  CH

Announced Date: 2024.01.09 (Articles 15 amended,English version coming soon)
Current English version amended on 2022.04.26 
Categories: Information Operations
   Chapter 4 Business Continuity Plan
Article 12    (System Backup)
  1. An organization shall prescribe the duration of the information and communication system’s tolerance of data loss.
  2. An organization shall make a backup of the source codes and data of programs of the information and communication system.
  3. An organization shall test the backup information of the information and communication system on a regular basis to verify the reliability of the backup media and exhaustiveness of the information.
  4. A core system of a type 1 organization shall restore backups as part of the test of the business continuity plan.
  5. A core system of a type 1 organization shall store backups of important information and communication system software and other security related information in independent facilities or fireproof cabinets at a location different from that of the operating system.
Article 13    (Redundancy)
  1. An organization shall prescribe the tolerable time from interruption to recovery of the information and communication system.
  2. When a service of the information and communication system is interrupted, an organization shall render the service using backup equipment or other means within the tolerable time.
  3. An organization shall develop contingency procedures to respond to material information system incidents or acts of God and shall confirm the corresponding resources to ensure reasonable impact of a material disaster on major operations and businesses.