Implement Open Banking API security per Common Banking Industry API Standards + OAuth 2.0 + OpenID Connect (OIDC) + FAPI 2.0 (Financial-grade API) + Mutual TLS (mTLS) client authentication. Apply encryption: TLS 1.3 in transit + AES-256 at rest. Use signed JWTs with detached signatures per FAPI requirements. Apply API rate limiting + token expiration + nonce + audience claims. Coordinate with Open Banking Nigeria Ltd standardisation body.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.