ChaptersEventsBlog
Register now for the December 11 session on the rise of DeepSeek, AI experimentation, and critical security gaps.

Download Publication

Hyperledger Fabric 2.0 Architecture Security Controls Checklist
Hyperledger Fabric 2.0 Architecture Security Controls Checklist
Who it's for:
  • CISO
  • CSO
  • Blockchain Architects
  • Security Architects
  • Application and Smart Contract Developers
  • Blockchain Network Administrators

Hyperledger Fabric 2.0 Architecture Security Controls Checklist

Release Date: 06/28/2021

Blockchain technology is being rapidly adopted by enterprises to bring traceability and transparency to external business workflows. Considering that many of these workflows involve transactions and custody of value in the form of digital assets or other high-value data, cybersecurity attributes such as privacy, confidentiality, integrity, and availability certainly take center stage in the blockchain space.

In this spreadsheet, we deliver a fully implementable security controls checklist for the blockchain framework Hyperledger Fabric 2.0. These controls are aligned with the NIST Cybersecurity Framework’s controls to proactively prevent, detect and respond to the risks of Fabric 2.0, thus mitigating the business impacts downstream caused by loss of trade, trust, and ownership. In the accompanying Hyperledger Fabric 2.0 Architecture Security Report, we identified the cybersecurity risks of implementing Hyperledger Fabric 2.0’s architecture as a permissioned blockchain enterprise network for a trade finance business in a cloud-based environment.

Key Takeaways:
  • Definitions for terms relating to Hyperledger Fabric and cybersecurity
  • Descriptions for 156 controls
  • The cybersecurity functional area for each control, allowing for clear lines of roles and responsibilities
  • The architectural flaws or weaknesses that could be triggered or exploited to get access to the Fabric network
  • How each control works to mitigate the listed vulnerability
This publication is part of a larger series on Securing DLT Frameworks for Financial Institutes. If you’re interested in learning more, you can find all the papers in the series here.
Download this Resource

Prefer to access this resource without an account? Download it now.

Bookmark
Share
Related resources
AI Consensus Assessments Initiative Questionnaire (AI-CAIQ) v1.0.2
AI Consensus Assessments Initiative Questionnai...
Analyzing Log Data with AI Models to Meet Zero Trust Principles
Analyzing Log Data with AI Models to Meet Zero ...
Agentic AI Identity and Access Management: A New Approach
Agentic AI Identity and Access Management: A Ne...
One Day of Experience Building Agents
One Day of Experience Building Agents
Published: 11/25/2025
From Chatbots to Agents: The Evolution Toward Agentic AI
From Chatbots to Agents: The Evolution Toward Agentic AI
Published: 11/13/2025
Scattered Spider and the Finance Sector: Ransomware Tactics Banks Can’t Afford to Ignore
Scattered Spider and the Finance Sector: Ransomware Tactics Banks C...
Published: 11/10/2025
Streamlining Cloud Compliance Audits Using AI and Automation
Streamlining Cloud Compliance Audits Using AI and Automation
Published: 11/05/2025
Beyond Passwords: FIDO's Authentication Vision for Financial Services in the Cloud Era
Beyond Passwords: FIDO's Authentication Vision for Financial Servic...
December 12 | Virtual
FinCloud Fridays Webinar Series
FinCloud Fridays Webinar Series
February 28 | Virtual

Interested in helping develop research with CSA?

Related Certificates & Training