Recently Updated Pages
Signature and Certification Processing Time
Objective Set clear expectations for how long signing and certification operations should ta...
Timestamp Validation
Objective: Make sure the date and time attached to a digital signature are accurate and can be t...
Closing: Compliance and Integration Assessment
By following these guidelines, developers can be confident that their PKI integration meets the r...
Verification After Signing
Objective Every system that integrates with the PKI service must offer a way to verify a documen...
Prevention of Unauthorized Document Changes
Objective Protect signed documents from any action that could damage their integrity or trustwor...
Prevention of Additional Untrusted Signatures
Objective Stop anyone from quietly adding an unauthorized or untrusted signature to a document t...
Protection of Signed Documents Against Unauthorized Modification
Objective Once a document is signed or certified, protect it so that any later change can be det...
Signature Appearance
Objective Make sure the visible signature on a document looks professional and never hides the d...
Password Management
Objective: Keep user certificate passwords safe. Guidelines: Never store user certificate pa...
Signature Validation
Objective: Confirm that digital signatures are authentic (made by the right person) and that the...
Certificate Expiration
Objective Prevent expired certificates from being used in your system. Guidelines Automatic...
Certificate Revocation
Objective: Make sure your system checks whether a certificate is still valid and has not been re...
The central Role of the Rwanda Information Society Authority (RISA)
Established under the Ministry of ICT and Innovation, the Rwanda Information Society Authority “R...
References
Law No 058/2021 Relating to the Protection of Personal Data and Privacy. Shifting the Balance ...
Awareness, Training and Best Practices
Provide role-specific training and general awareness sessions. Topics should include: Data p...
Initiation
Goal: Establish security and privacy expectations and identify risks before design work begins. ...
Scope
What this guideline covers This guideline applies to all software systems developed, acquired, d...
Objectives
This guideline aims to provide clear, actionable instructions to embed security and privacy into ...
Target Audience Roles and Responsibilities
Key roles include: Management: Approve security and privacy deliverables and ensure resourcing...
Compliance, Audit and Continuous Improvement
Schedule regular audits, internal and external assessments, and maintain documented evidence for ...