Encryption Key Management

Encryption key management is the practices associated with generating, storing, deletion, backup and transport of encryption keys.

Key management best practices include separation of key management duties from other administrative roles, comprehensive audit trails of all events associated with keys, secure key storage (via an HSM) and key life cycle policies (generation, rotation, distribution and destruction of keys) consistent with the organizations specific industry and compliance requirements (e.g. PCI DSS, FISMA, HIPAA).

