Cybersecurity Guidelines for Financial Sector Te…

Cybersecurity Guidelines for FSTI Providers

2.2.

Regular Password Updates

Implement a policy that requires password changes periodically, ideally every 60-90 days.

·

Implement a strong password policy, including minimum password length, a combination of upper and lower case letters, numbers, and the use of special characters.

·

2.3.

Least Privilege Principle

Provide minimum access levels to users according to their roles and responsibilities in performing their work.

·

Conduct periodic access level reviews to ensure compliance with the least privilege principle.

·

Software and System Updates

3.

3.1.

Regular Patch Management

Ensure all systems and software are up-to-date with the latest security patches.

·

·

Automatic updates to reduce the risk of human error.

3.2.

Vulnerability Management

Conduct periodic vulnerability assessments to identify weaknesses and take remedial actions for network and application security.

·

90

Made with FlippingBook. PDF to flipbook with ease