πΌ SC-12 Cryptographic Key Establishment and Management
- Contextual name: πΌ SC-12 Cryptographic Key Establishment and Management
- ID:
/frameworks/nist-sp-800-53-r5/sc/12
- Located in: πΌ SC System And Communications Protection
Descriptionβ
Establish and manage cryptographic keys when cryptography is employed within the system in accordance with the following key management requirements: [Assignment: organization-defined requirements for key generation, distribution, storage, access, and destruction].
Similarβ
- Sections
/frameworks/aws-fsbp-v1.0.0/data-firehouse/01
/frameworks/aws-fsbp-v1.0.0/eks/03
/frameworks/aws-fsbp-v1.0.0/kms/03
- Internal
- ID:
dec-c-7db512e5
- ID:
Similar Sections (Take Policies From)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ AWS Foundational Security Best Practices v1.0.0 β πΌ [DataFirehose.1] Firehose delivery streams should be encrypted at rest | ||||
πΌ AWS Foundational Security Best Practices v1.0.0 β πΌ [EKS.3] EKS clusters should use encrypted Kubernetes secrets | ||||
πΌ AWS Foundational Security Best Practices v1.0.0 β πΌ [KMS.3] AWS KMS keys should not be deleted unintentionally |
Similar Sections (Give Policies To)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ FedRAMP High Security Controls β πΌ SC-12 Cryptographic Key Establishment and Management (L)(M)(H) | 1 | 9 | 11 | |
πΌ FedRAMP Low Security Controls β πΌ SC-12 Cryptographic Key Establishment and Management (L)(M)(H) | 11 | |||
πΌ NIST CSF v2.0 β πΌ PR.DS-01: The confidentiality, integrity, and availability of data-at-rest are protected | 82 | |||
πΌ NIST CSF v2.0 β πΌ PR.DS-02: The confidentiality, integrity, and availability of data-in-transit are protected | 69 |