51
Cybersecurity Guidelines for Digital Financial Asset Trading Providers in Indonesia
4.1.4 End-to-End Encryption
End-to-End Encryption (E2EE) is a key pillar in maintaining the confidentiality and integrity of sensitive information throughout the entire data lifecycle, from transmission, storage, to processing. In principle, an E2EE system ensures that data can only be accessed and read by parties with legitimate authorization, while third parties, including service providers, network operators, and system authorities, are unable to decrypt or read the original data during transmission. E2EE must be comprehensively implemented across the three stages of data transport, i.e., data in transit, data at rest, and data in use. The implementation for each stage is as follows: 1. D ata in Transit Data in transit refers to information being transmitted over a network (e.g., between a user’s browser and an application server). Protection measures include:
Made with FlippingBook Ebook Creator