Livoa LogoLivoa
High-Level Security Architecture Sector A – FinTech Startup
Endpoint Security

Remote Employees

VPN / Gateway

MDM

EDR

Full Disk Encryption

Compliance Enforcement

Identity & Access Management

MFA

RBAC

Least Privilege Enforcement

PAM

Zero-Trust Identity: MFA + Least Privilege + Continuous Verification

Identity & Access Management

Identity Provider (IdP)

Access Policy Management

Network Security

Segmented VPC Subnets (Prod / Dev / Management)

Firewalls

De-militarized / De-encrypted Segments

Database Management

Micro-segmented VPCs for AI data and financial records

Data Protection

Encryption (At Rest & Transit)

Database Access Controls

DLP

PII & Financial Records Encryption

Tokenization / Masking for analytics

Development Security

Static & Dynamic Code Scanning

Open Source Dependency Scanning

Secrets Management

Environment Separation (Dev/Test/Prod)

Secure CI/CD Gates

Supply-Chain Controls for Open Source Libraries

Monitoring & Logging

Audit Logging

Security Monitoring

Alerting

Regular Resilience Tests

24/7 SOC visibility

Cloud Security Posture Management (CSPM) dashboards

External Interfaces

Public APIs

Mobile Apps

VPN GW

Cloud Environment (AWS / Azure)

AWS Icon Azure Icon

VPN / Gateway
Prod VPC
Dev VPC
Management VPC
GitHub Icon
GitLab Icon
Prisma Icon
Endpoint Security
Remote Employees

Remote Employees

MDM

Identity Security

Device Management (MDM)

Endpoint Detection & Response (EDR)

Full Disk Encryption

Compliance Enforcement

Identity & Access Management

Multi-Factor Authentication (MFA)

Role-Based Access Control (RBAC)

Least Privilege Enforcement

Privileged Access Management (PAM)

VPN / Gateway
Identity & Access Management

Identity Provider (IdP)

Rogice Management

Network Security

Segmented VPC Subnets (Prod / Dev / Management)

Firewalls

Dev / Encrypted

Database Management

Development Security

Static & Dynamic Code Scanning

Dependency (Open Source) Scanning

Secrets Management

Environment Separation (Dev / Test / Prod)

Data Protection

Encryption at Rest & Transit

Database Access Controls

Data Loss Prevention (DLP)

Monitoring & Logging

Audit Logging

Security Monitoring

Alerting

Regular Ress Tests

External Interfaces

Public APIs

Mobile Apps

VPIC Gewgwg

Cloud Environment (AWS / Azure)

aws Azure

👤
🖥️
🧱
🗄️
🐙
🦊
🔷
🛡️

Sector A

by John

0
0 uses