Cybersecurity Guideline Digital Financial Asset Trading Pro…

41

Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia

4.1.1 Zero Trust Implementation

The implementation of a Zero Trust architecture is a strategic step in enhancing the resilience of information systems against various complex and evolving cyber threats. Zero Trust no longer relies on the network perimeter as the main security barrier as it focuses on continuous verification, risk-based access control, and strict separation of access privileges. The implementation of Zero Trust in an operational environment can be carried out through the following key criteria:

Device Posture Checking 1 Device Posture Checking is the process of evaluating the condition and security status of a device before granting it access to an organization’s network or resources. The goal of this step is to ensure that only devices meeting minimum security standards are allowed to communicate within the system. The parameters to be checked should at least include: a. Operating system update status: to ensure the device does not contain known vulnerabilities. b. Active and updated antivirus: to detect and prevent potential malware that could threaten the system. This step directly supports the Zero Trust principle that access should not be granted merely based on network location, but based on the trustworthiness of the device.

Made with FlippingBook Ebook Creator