36
Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia
3.2.6 Authorization
Authorization governs user access rights after the authentication process is successfully completed. Implementing Role-Based Access Control (RBAC) so that only authorized parties can access or modify certain data and systems is a measure that can be used as a reference for effective authorization mechanisms.
3.2.7. Non-repudiation
The principle of non-repudiation is critical in implementing authentication and authorization for consumer transactions in digital asset trading to ensure that any actions or transactions carried out by a consumer cannot be denied or replicated by any party. Thus, in the event of a dispute or suspicious activity, the Authorities and Providers can prove who was responsible for the transaction.
Made with FlippingBook Ebook Creator