Skip to main content

Recently Updated Pages

Signature and Certification Processing Time

PKI Service Integration Guidelines (For...

Objective Set clear expectations for how long signing and certification operations should ta...

Updated 1 month ago by RISA

Timestamp Validation

PKI Service Integration Guidelines (For...

Objective: Make sure the date and time attached to a digital signature are accurate and can be t...

Updated 1 month ago by RISA

Closing: Compliance and Integration Assessment

PKI Service Integration Guidelines (For...

By following these guidelines, developers can be confident that their PKI integration meets the r...

Updated 1 month ago by RISA

Verification After Signing

PKI Service Integration Guidelines (For...

Objective Every system that integrates with the PKI service must offer a way to verify a documen...

Updated 1 month ago by RISA

Prevention of Unauthorized Document Changes

PKI Service Integration Guidelines (For...

Objective Protect signed documents from any action that could damage their integrity or trustwor...

Updated 1 month ago by RISA

Prevention of Additional Untrusted Signatures

PKI Service Integration Guidelines (For...

Objective Stop anyone from quietly adding an unauthorized or untrusted signature to a document t...

Updated 1 month ago by RISA

Protection of Signed Documents Against Unauthorized Modification

PKI Service Integration Guidelines (For...

Objective Once a document is signed or certified, protect it so that any later change can be det...

Updated 1 month ago by RISA

Signature Appearance

PKI Service Integration Guidelines (For...

Objective Make sure the visible signature on a document looks professional and never hides the d...

Updated 1 month ago by RISA

Password Management

PKI Service Integration Guidelines (For...

Objective: Keep user certificate passwords safe. Guidelines: Never store user certificate pa...

Updated 1 month ago by RISA

Signature Validation

PKI Service Integration Guidelines (For...

Objective: Confirm that digital signatures are authentic (made by the right person) and that the...

Updated 1 month ago by RISA

Certificate Expiration

PKI Service Integration Guidelines (For...

Objective  Prevent expired certificates from being used in your system. Guidelines Automatic...

Updated 1 month ago by RISA

Certificate Revocation

PKI Service Integration Guidelines (For...

Objective: Make sure your system checks whether a certificate is still valid and has not been re...

Updated 1 month ago by RISA

The central Role of the Rwanda Information Society Authority (RISA)

Chief Digital Officers Handbook The Digital Context in Rwanda

Established under the Ministry of ICT and Innovation, the Rwanda Information Society Authority “R...

Updated 9 months ago by RISA

References

Software Security and Privacy by Design...

Law No 058/2021 Relating to the Protection of Personal Data and Privacy. Shifting the Balance ...

Updated 10 months ago by RISA

Awareness, Training and Best Practices

Software Security and Privacy by Design...

Provide role-specific training and general awareness sessions.  Topics should include: Data p...

Updated 10 months ago by RISA

Initiation

Software Security and Privacy by Design... Software development lifecycle step-by-...

Goal: Establish security and privacy expectations and identify risks before design work begins. ...

Updated 10 months ago by RISA

Scope

Software Security and Privacy by Design...

What this guideline covers This guideline applies to all software systems developed, acquired, d...

Updated 10 months ago by RISA

Objectives

Software Security and Privacy by Design...

This guideline aims to provide clear, actionable instructions to embed security and privacy into ...

Updated 10 months ago by RISA

Target Audience Roles and Responsibilities

Software Security and Privacy by Design...

Key roles include: Management: Approve security and privacy deliverables and ensure resourcing...

Updated 10 months ago by RISA

Compliance, Audit and Continuous Improvement

Software Security and Privacy by Design...

Schedule regular audits, internal and external assessments, and maintain documented evidence for ...

Updated 10 months ago by RISA