Skip to main content

πŸ’Ό SC-12 Cryptographic Key Establishment and Management

Description​

Establish and manage cryptographic keys when cryptography is employed within the system in accordance with the following key management requirements: [Assignment: organization-defined requirements for key generation, distribution, storage, access, and destruction].

Similar​

  • Sections
    • /frameworks/aws-fsbp-v1.0.0/data-firehouse/01
    • /frameworks/aws-fsbp-v1.0.0/eks/03
    • /frameworks/aws-fsbp-v1.0.0/kms/03
  • Internal
    • ID: dec-c-7db512e5

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό AWS Foundational Security Best Practices v1.0.0 β†’ πŸ’Ό [DataFirehose.1] Firehose delivery streams should be encrypted at rest
πŸ’Ό AWS Foundational Security Best Practices v1.0.0 β†’ πŸ’Ό [EKS.3] EKS clusters should use encrypted Kubernetes secrets
πŸ’Ό AWS Foundational Security Best Practices v1.0.0 β†’ πŸ’Ό [KMS.3] AWS KMS keys should not be deleted unintentionally

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό FedRAMP High Security Controls β†’ πŸ’Ό SC-12 Cryptographic Key Establishment and Management (L)(M)(H)1911
πŸ’Ό FedRAMP Low Security Controls β†’ πŸ’Ό SC-12 Cryptographic Key Establishment and Management (L)(M)(H)11
πŸ’Ό NIST CSF v2.0 β†’ πŸ’Ό PR.DS-01: The confidentiality, integrity, and availability of data-at-rest are protected82
πŸ’Ό NIST CSF v2.0 β†’ πŸ’Ό PR.DS-02: The confidentiality, integrity, and availability of data-in-transit are protected69

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό SC-12(1) Cryptographic Key Establishment and Management _ Availability
πŸ’Ό SC-12(2) Cryptographic Key Establishment and Management _ Symmetric Keys11
πŸ’Ό SC-12(3) Cryptographic Key Establishment and Management _ Asymmetric Keys2
πŸ’Ό SC-12(4) Cryptographic Key Establishment and Management _ PKI Certificates
πŸ’Ό SC-12(5) Cryptographic Key Establishment and Management _ PKI Certificates / Hardware Tokens
πŸ’Ό SC-12(6) Cryptographic Key Establishment and Management _ Physical Control of Keys