Skip to main content
DTI

INDUSTRY · GOVERNMENT & BUMN

Secure technology for government agencies & SOEs — digital identity, authentication, and data governance.

DTI supports public services and SOE operations with phishing-resistant authentication aligned to BSSN guidance, PSrE-certified e-signatures, and standards-based data destruction — with close local support.

REGULATORY LANDSCAPE

Procurement, security, accountability — all three matter.

Indonesian government and BUMN technology operates under multiple compliance frameworks at once. BSSN sets cyber security and cryptography guidelines for government systems. LKPP governs procurement through e-Catalogue and Tender frameworks. UU PDP No. 27/2022 mandates data subject rights, breach reporting, and DPO designation for public bodies handling citizen data.

Specific use cases add specific rules. PSrE-standard digital signatures (KOMDIGI 11/2018) for e-Government forms and internal approvals. FIDO2/FIPS hardware authentication for classified system access. Document destruction and storage sanitation under BSSN guidelines for sensitive records.

DTI has served 200+ ministries, BUMN, and government agencies — including KPK, BSSN, Komdigi, Imigrasi, AHU. We operate under LKPP procurement frameworks and the audit-ready documentation public-sector procurement demands.

GOVERNMENT & BUMN CHALLENGES

Where teams in this industry need depth

Four areas where Government & BUMN teams most often need specialist technology that meets regulator expectations without disrupting operations.

CHALLENGE

Phishing-resistant officer access

Ministry and BUMN admin access to sensitive systems needs hardware-grade MFA. SMS OTP and software tokens remain vulnerable to social engineering attacks that target public servants.

SOLVED BY
YubiKey Security Key
CHALLENGE

Digital signing for public service

e-Government services need PSrE-standard digital signatures to be legally binding. Wet signatures slow public service digitalization mandates and create paper-trail audit burden.

SOLVED BY
Tilaka Digital Signature
CHALLENGE

Document sanitation & disposal

Classified document destruction, degaussing, and storage sanitation under BSSN guidelines requires certified equipment and process. Improper disposal becomes an audit finding.

SOLVED BY
Certified sanitation hardware
CHALLENGE

Procurement & e-Catalogue compliance

Government procurement requires e-Catalogue listing, LKPP-compliant vendor framework, and audit-ready documentation. Many vendors lack procurement experience — DTI brings 200+ deployments worth.

SOLVED BY
LKPP-experienced delivery

TRUSTED BY · GOVERNMENT & SOE

Institutions using DTI solutions

Kedutaan Besar Polandia
Uses YubiKey

GOVERNMENT COMPLIANCE

Credentials that defend in BSSN audit

Our partner technologies hold the certifications required for Indonesian public-sector deployments.

PSrE Komdigi
Tilaka · NSK No. 423/2021
FIDO2 / FIPS
Yubico Preferred Partner
UU PDP
Law No. 27/2022 Compliant
ISO 27001:2013
DTI Certified InfoSec

FAQ

Frequently asked questions

Do government agencies and state-owned enterprises need certified digital signatures for official documents?

The ITE Law and Government Regulation 71/2019 distinguish between certified and uncertified electronic signatures, with certified signatures (TTE) from a licensed PSrE carrying stronger legal evidentiary weight equivalent to a wet-ink signature. Many government agencies and BUMN set certified electronic signatures as their internal standard for documents requiring legal certainty, in line with Indonesia’s Electronic-Based Government System (SPBE) agenda. Tilaka, a KOMDIGI-licensed PSrE, provides certified electronic signatures for this purpose.

Why do administrator accounts on government or BUMN systems need hardware security keys?

Administrator accounts hold privileged access to strategic electronic systems, making them a prime target for phishing and credential-theft attacks. FIDO2/FIPS-certified hardware security keys provide phishing-resistant authentication because no shared secret is transmitted that a fake site could capture. This practice aligns with the layered cybersecurity principles promoted by BSSN (Indonesia’s cyber and crypto agency) for government electronic systems.

How should a government agency dispose of data on storage devices removed from inventory?

Government records and data management fall under Indonesia’s Archives Law, which governs the document lifecycle including disposal, while the technical aspects of media sanitization follow standards such as NIST SP 800-88. Standard deletion does not guarantee data is unrecoverable, particularly for classified or citizen personal data. DTI’s Data Sanitization service provides degaussing, physical destruction, and destruction documentation usable as audit evidence.

What is e-KYC and how does it apply to digital public services?

e-KYC (electronic Know Your Customer) is a digital identity verification process that lets citizens register for public or financial services without an in-person visit. It is typically paired with an electronic signature to give legal weight to the consent a user provides. DTI supports this workflow through Tilaka’s integrated identity verification and electronic signing.

Does destroying data on government devices need to be accompanied by formal proof or a certificate?

Yes, destruction documentation matters for accountability and for review by Indonesia’s Supreme Audit Agency (BPK) or internal Inspektorat, especially for devices that held classified or citizen personal data. DTI issues a destruction report/certificate stating the sanitization method used, referenced against NIST SP 800-88, giving agencies a clear audit trail.

READY TO MODERNIZE?

Your Government & BUMN operation deserves specialist technology.

Schedule a 30-minute consultation. We'll review your regulatory landscape, existing systems, and integration requirements — and architect a solution that fits.

Chat via WhatsApp