U.S. Department of
Transportation
Research and Innovative
Technology Administration
4Controls are implemented in PKI
systems to address risk associated with both internal and external threats
Physical, Technical, and Procedural
Controls
Physical Controls
4Address the
physical design elements of PKI equipment and security of facilities and stored data
§Department
of Defense
Procedural Controls
4Address the
methods by which processes are carried out by the PKI. Other controls (such as
personnel controls) were rolled into this category during analysis
§Federal
Bridge Certification Authority
Technical Controls
4Address the
specific hardware and software security specifications as well as how certain
technical processes, such as those associated with public and private keys,
are carried out
§SAFE-BioPharma
§CertiPath