Advanced persistent threats awareness and readiness: a case study in Malaysian financial institutions

Advanced Persistent Threats (APT) has targeted the financial institutions (FI) for intelligence gathering on sensitive customer information and monetize the attack. APT could cause disastrous impact to the targeted FI and the country's economy if there is a lack of preparation to confront these...

Full description

Bibliographic Details
Main Authors: Zainudin, Zeti Suhana, Abdul Molok, Nurul Nuha
Format: Conference or Workshop Item
Language:English
English
English
Published: Institute of Electrical and Electronics Engineers Inc. 2019
Subjects:
Online Access:http://irep.iium.edu.my/72590/
http://irep.iium.edu.my/72590/
http://irep.iium.edu.my/72590/
http://irep.iium.edu.my/72590/1/72590_Advanced%20Persistent%20Threats.pdf
http://irep.iium.edu.my/72590/2/72590_Advanced%20Persistent%20Threats_SCOPUS.pdf
http://irep.iium.edu.my/72590/3/72590_Advanced%20Persistent%20Threats_WOS.pdf
Description
Summary:Advanced Persistent Threats (APT) has targeted the financial institutions (FI) for intelligence gathering on sensitive customer information and monetize the attack. APT could cause disastrous impact to the targeted FI and the country's economy if there is a lack of preparation to confront these challenges and attacks. A case study on local FI was carried out to examine the influencing factors of APT awareness among FI's cybersecurity practitioners and to investigate the security strategies employed by FI to protect them from APT attacks. Feedback from CyberSecurity Malaysia (CSM) was sought to validate the findings. It was found that the factors that influence APT awareness in local FI include the emphasis on informal learning on APT, attackers' financial motivation, the FI's reputational risks and the availability of financial regulatory requirements to combat any cybersecurity risks. The awareness has led cybersecurity practitioners in local FI to implement advanced security technologies and integrated security controls as their readiness to defend FI against APT attacks.