
ISO 11568:2023
ISO 11568:2023 Financial services – Key management (retail)
CDN $436.00
Description
This document describes the management of symmetric and asymmetric cryptographic keys that can be used to protect sensitive information in financial services related to retail payments. The document covers all aspects of retail financial services, including connections between a card-accepting device and an Acquirer, between an Acquirer and a card Issuer, and between an ICC and a card-accepting device. It covers all phases of the key life cycle, including the generation, distribution, utilization, archiving, replacement and destruction of the keying material. This document covers manual and automated management of keying material, and any combination thereof, used for retail financial services. It includes guidance and requirements related to key separation, substitution prevention, identification, synchronization, integrity, confidentiality and compromise, as well as logging and auditing of key management events.
Requirements associated with hardware used to manage keys have also been included in this document.
Edition
1
Published Date
2023-02-17
Status
PUBLISHED
Pages
115
Format 
Secure PDF
Secure – PDF details
- Save your file locally or view it via a web viewer
- Viewing permissions are restricted exclusively to the purchaser
- Device limits - 3
- Printing – Enabled only to print (1) copy
See more about our Environmental Commitment
Abstract
This document describes the management of symmetric and asymmetric cryptographic keys that can be used to protect sensitive information in financial services related to retail payments. The document covers all aspects of retail financial services, including connections between a card-accepting device and an Acquirer, between an Acquirer and a card Issuer, and between an ICC and a card-accepting device. It covers all phases of the key life cycle, including the generation, distribution, utilization, archiving, replacement and destruction of the keying material. This document covers manual and automated management of keying material, and any combination thereof, used for retail financial services. It includes guidance and requirements related to key separation, substitution prevention, identification, synchronization, integrity, confidentiality and compromise, as well as logging and auditing of key management events.
Requirements associated with hardware used to manage keys have also been included in this document.
Previous Editions
Can’t find what you are looking for?
Please contact us at:
Related Documents
-

ISO 9546:2024 Guidelines for security framework of information systems of third-party payment services
CDN $260.00 Add to cart -

ISO 23526:2023 Security aspects for digital currencies
CDN $192.00 Add to cart -

ISO 22126:2025 Financial services – Semantic technology – Part 2: OWL representation of the ISO 20022 metamodel and e-repository
CDN $348.00 Add to cart -

ISO 22126:2022 Financial services – Semantic technology – Part 5: Mapping from FIX Orchestra to the common model
CDN $85.00 Add to cart







