RESOURCES
Practitioner-grade playbooks for regulated industries.
Compliance checklists, procurement templates, and regulatory mappings — written by the specialists who deploy them. Bilingual ID + EN.
BROWSE THE LIBRARY
Resources we're preparing for launch
We're starting with one cornerstone checklist for banking digital signature procurement. More resources land as we publish them.
RESOURCES · GUIDE
Financial Conglomerate Reporting Guide (PIKK)
An integrated-reporting framework for financial conglomerates in Indonesia — from the legal basis (UU P2SK 4/2023, POJK 30/2024) and which entities must report, to the cross-entity consolidation challenge and a reporting-readiness checklist.
RESOURCES · CHECKLIST
EUDR Traceability for Palm-Oil Plantations
Understand the EUDR (Regulation (EU) 2023/1115) plot-geolocation and deforestation-free due-diligence obligation, who is affected across the palm-oil supply chain, and the role of geospatial-AI in export readiness and its links to ISPO/RSPO.
RESOURCES · GUIDE
e-KYC & Digital Identity for Banking & Fintech
The legal basis for e-KYC and certified electronic signatures (UU ITE, PP 71/2019, UU PDP 27/2022), the identity-verification components, and the digital onboarding + Tilaka PSrE integration flow for regulation-compliant onboarding.
RESOURCES · READINESS CHECKLIST
SatuSehat & BPJS Readiness Checklist
A visual guide to assess a hospital’s interoperability readiness — from the Electronic Medical Record foundation through SatuSehat (FHIR) integration and BPJS claims (V-Klaim / E-Klaim INA-CBG). Includes an integration flow diagram, six readiness domains, and a detailed per-domain checklist toward go-live.
RESOURCES · MIGRATION PLAYBOOK
SIMRS Migration Playbook
A structured five-phase approach to move from a legacy hospital information system to DHealth without disrupting care — from assessment, data migration, SatuSehat & BPJS integration, and training through go-live and hypercare. Includes a visual timeline and detailed per-phase steps.
RESOURCES · TECHNICAL GUIDE
Data Destruction Method Selection Guide
Not all media is destroyed the same way — degaussing does not work on SSD/flash. This technical guide helps you pick the correct method (degauss, crypto-erase, or physical destruction) via a decision tree and a media × method matrix, referencing NIST SP 800-88, IEEE 2883, and ISO/IEC 27001.
RESOURCES · COMPLIANCE CHECKLIST
Data Disposal Compliance Checklist
Compliant data disposal requires data to be irrecoverable plus auditable evidence. This checklist maps obligations from UU PDP, ISO/IEC 27001, POJK/PADK, Permenkes 24/2022, and the Archives Law to practical steps and the evidence (policy, records, certificates, audit trail) you need to prepare.
RESOURCES · LEGAL GUIDE
E-Signature Legal Validity & PSrE Guide
Electronic signatures are legally recognised in Indonesia — but not all are equal. This guide explains the legal basis (UU ITE, PP 71/2019), the difference between certified and non-certified TTE, when certified signatures (via a PSrE like Tilaka) matter, and an e-signature implementation checklist.
RESOURCES · INDUSTRY BRIEF
YubiKey for Banking & FSI
A two-page brief: the three pressures banks face (weak SMS OTP, IT-compliance pressure, account takeover), the FIDO2 solution, where it applies, and the POJK 11/2022 & PADK 1/2026 compliance hooks.
RESOURCES · BUYER’S GUIDE
YubiKey Buyer’s Guide
A YubiKey series matrix (5 Series, Security Key, Bio, FIPS) with protocols & form factors, plus a decision flowchart to match the key to your security, systems, and device-fleet needs.
RESOURCES · COMPARISON GUIDE
FIDO2 vs SMS OTP
A concise comparison guide: why SMS OTP is now a weak point (real-time phishing, SIM-swap, interception) and how FIDO2 (YubiKey) closes it — with the POJK 11/2022, FIPS 140-3, and AAL3 compliance angle.
RESOURCES · MIGRATION CHECKLIST
SMS OTP → FIDO2 Migration Checklist
A practical, phased checklist for moving admin logins and critical-system access off SMS OTP onto phishing-resistant FIDO2 hardware keys — aligned with POJK 11/2022 IT risk-management principles. Covers assessment, pilot, SSO integration, rollout, and audit evidence.
RESOURCES · CHECKLIST
Banking IT-Security Compliance Checklist
A control-area checklist for banking IT security based on POJK 11/2022 (IT operations for commercial banks) and PADK 1/2026 — IT governance & risk management, risk-based authentication & access management, data security & audit trail, and operational resilience and third-party risk.
CASE STUDIES
See DTI solutions in practice
Real deployments across healthcare, banking, and financial-conglomerate sectors.
MORE COMING
We publish new resources as the regulatory landscape shifts.
Healthcare SatuSehat integration, FIDO2 phishing-resistant procurement guides, and data sanitization compliance kits are next in the pipeline. Subscribe to be notified when each lands.
NEED SOMETHING SPECIFIC?
Tell us what playbook would help your team.
We write resources based on what regulated-industry teams actually ask us. If there's a compliance question or procurement workflow you wish was easier to navigate, we'll consider it for the editorial calendar.
