Later this year, the Cyber Security Agency of Singapore (CSA) will launch a separate code of practice for cloud environments. It will lay out the cybersecurity requirements governing the secure deployment, operation, and management of critical information infrastructure systems hosted on cloud, said Mrs Teo.
Earlier this year, CSA wrote to boards and senior leadership of all critical information infrastructure owners to review their cybersecurity in light of artificial intelligence-enabled threats.
At the time, Senior Minister of State for Digital Development and Information Tan Kiat How said that the letter from CSA sets out clear expectations on what the review should include.
In its letter, CSA said the organisation’s review should look at whether its current cyber risk assessment takes relevant account of AI-enabled threats, as well as whether visibility over critical systems, internet-facing assets, privileged access, cloud services and third-party dependencies remains sufficient.
It should also consider whether vulnerability management, patching, monitoring and incident response arrangements are fast enough, and if its use of AI is appropriately governed.
Read Full Article At Source




.jpg?itok=WCpRnQzi)
