Cybersecurity Guidelines for FSTI Providers
2.2.
Regular Password Updates
Implement a policy that requires password changes periodically, ideally every 60-90 days.
·
Implement a strong password policy, including minimum password length, a combination of upper and lower case letters, numbers, and the use of special characters.
·
2.3.
Least Privilege Principle
Provide minimum access levels to users according to their roles and responsibilities in performing their work.
·
Conduct periodic access level reviews to ensure compliance with the least privilege principle.
·
Software and System Updates
3.
3.1.
Regular Patch Management
Ensure all systems and software are up-to-date with the latest security patches.
·
·
Automatic updates to reduce the risk of human error.
3.2.
Vulnerability Management
Conduct periodic vulnerability assessments to identify weaknesses and take remedial actions for network and application security.
·
90
Made with FlippingBook. PDF to flipbook with ease