HKMA C-RAF iCAST (Intelligence-led Cyber Attack Simulation Testing) - mandatory for HIGH inherent risk AIs + optional for medium tier + modeled on UK CBEST + ECB TIBER-EU (verified separately in this corpus) + intelligence-led red team testing methodology. iCAST OBJECTIVES: (a) test AI cyber defenses against realistic + threat-intelligence-informed attack scenarios; (b) assess people + processes + technology resilience against simulated APT + ransomware + insider + supply-chain attacks; (c) provide actionable findings + remediation recommendations; (d) build sectoral threat-intelligence + lessons-learned. iCAST 5 PHASES: (1) SCOPE DEFINITION - critical services + critical functions + scope of testing + risk acceptance + ground rules + RoE + HKMA coordination + executive sponsorship; AI engages Threat Intelligence Provider + Red Team Service Provider both pre-approved by HKMA; (2) THREAT INTELLIGENCE - threat intelligence provider develops threat scenarios based on AI + sectoral threat landscape + intelligence reports + APT/ransomware/criminal/state-actor groups + tactics + techniques + procedures (TTPs); produces Threat Intelligence Report (TIR) detailing scenarios + indicators of compromise + attribution; (3) RED TEAM EXECUTION - red team service provider executes scenarios + simulating realistic adversarial actions against AI systems + people + processes; covers reconnaissance + initial access + persistence + privilege escalation + lateral movement + data exfiltration + impact; ~6-12 weeks duration + carefully managed within RoE; (4) PURPLE TEAM REPLAY - red team + AI blue team (defenders) jointly replay scenarios + walk through detection + response gaps + identify what defenses worked + what didn't + tabletop replay; collaborative learning + skills transfer; (5) iCAST FINDINGS + REMEDIATION - red team findings + blue team observations + joint analysis + remediation roadmap + tracking + closure + sharing key learnings with sector via CISP + HKMA. PROVIDER REQUIREMENTS: HKMA-recognized Threat Intelligence + Red Team Service Providers; meeting accreditation standards including CREST + Tiger Scheme + ESEC-aligned; experience + track record + sectoral expertise + ethical standards; CONFIDENTIALITY + LEGAL: extensive legal framework + NDAs + chain-of-custody + evidence handling + responsible disclosure + reporting. POST-iCAST: AI submits iCAST Report + findings + remediation roadmap to HKMA + supervisory review + tracking + lessons learned + sharing via CISP. FREQUENCY: 3-year cycle minimum (more frequent for HIGH-inherent-risk AIs). COORDINATION: HKMA C-RAF iCAST aligned with UK CBEST + ECB TIBER-EU (verified) + Singapore MAS Adversarial Attack Simulation Exercises (AASE) + similar global sectoral frameworks.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.