Summary
Operationalize key management beyond implementation code: rotation, revocation, and incident drills.
Problem
Even with signer isolation, production risk remains high without repeatable lifecycle operations.
Scope
- Define key lifecycle policy for owner/session/signer keys:
- rotation cadence
- revocation triggers
- emergency disable path
- Add drill scripts and checklist for:
- normal rotation
- compromised signer credential incident
- forced session mass-revocation
- Ensure logs are tamper-evident and correlated to drill IDs.
- Document minimal required controls for DFNS/HSM-backed profiles.
Acceptance Criteria
Related
Summary
Operationalize key management beyond implementation code: rotation, revocation, and incident drills.
Problem
Even with signer isolation, production risk remains high without repeatable lifecycle operations.
Scope
Acceptance Criteria
Related