Controls prevent sensitive data from leaving the organisation inappropriately
This policy facet defines how keys and certificates are generated, stored, rotated, recovered and retired, with a named owner for each step, the core of A.8.24's key-management demand.