|
+CRY-11.01B |
1. ÜbersichtCRY-11.01BThe cloud service provider has documented and implemented procedures and technical safeguards for the secure archiving of cryptographic keys. These include:1. Storage of archived keys in a repository to prevent unauthorised access; 2. Restriction of access to archived keys to authorised personnel based on the principle of least privilege; 3. Support of later recovery of information through archived keys; 4. Retention of archived keys only for as long as needed and secure destruction afterwards; and 5. Logging of all activities related to the storage and recovery of archived keys.
1.1 Referenzen1.2 Identifizierte Anforderungen1.2 Related Regulation2. Identifizierte Anforderungen
3. Related Regulations
|