120
Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia
No Ref
Domain Sub-Domain Technical Checklist
Status
Zero Trust implementation
9
Cybersecuri- ty Implemen- tation
No user or device is automatically trusted, each access is strictly verified despite originated from internal network.
4.1.1
Fulfilled Partially Fulfilled Unfulfilled
Description
Device Posture Checking
10
Cybersecuri- ty Implemen- tation
Performing device posture checking before devices are allowed to access the network, at least ensuring that the OS is up-to-date and antivirus software is active on the device. Implementing dynamic policy enforcement that adjusts access policies in real time based on context (e.g., authorized geolocation, anomaly traffic detection) for each access request. Implementing security monitoring system (SIEM) and detection/ intrusion prevention (IDS/ IPS) to monitor traffic as well as prevent attacks proactively, in line with the Zero Trust principle.
4.1.1 (point 1)
Fulfilled Partially Fulfilled Unfulfilled
Description
Dynamic Policy Enforcement
11
Cybersecuri- ty Implemen- tation
4.1.1 (point 2)
Fulfilled Partially Fulfilled Unfulfilled
Description
Additional Technology and Security Architecture Support
12
Cybersecuri- ty Implemen- tation
4.1.1 (point 3)
Fulfilled Partially Fulfilled Unfulfilled
Description
Made with FlippingBook Ebook Creator