Back to catalog
CRY-09CRYCryptographic Protections
Cryptographic Key Management
Description
Mechanisms exist to facilitate cryptographic key management controls to protect the confidentiality, integrity and availability of keys.
Cross-Mappings
30 paths across 3 frameworks
Cross-Mappings
NIST 800-531 mapping
SC-28(3)
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
CCI2 mappings
CCI-004910
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
CCI-004911
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
STIG16 mappings
SV-263545r982397_ruleThe ALG must provide protected storage for cryptographic keys with organization-defined safeguards and/or hardware protected key store.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2 · disa_xccdf · related
SV-263555r981717_ruleThe application server must provide protected storage for cryptographic keys with organization-defined safeguards and/or hardware protected key store.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 4 · disa_xccdf · related
SV-263583r982447_ruleThe Central Log Server must provide protected storage for cryptographic keys with organization-defined safeguards and/or hardware protected key store.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 3 · disa_xccdf · related
SV-263600r982475_ruleThe container platform must provide protected storage for cryptographic keys with organization-defined safeguards and/or hardware protected key store.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2 · disa_xccdf · related
SV-263620r982507_ruleThe DBMS must provide protected storage for cryptographic keys with organization-defined safeguards and/or hardware protected key store.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 4 · disa_xccdf · related
SV-263644r982545_ruleThe DNS server implementation must provide protected storage for cryptographic keys with organization-defined safeguards and/or hardware protected key store.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 4 · disa_xccdf · related
SV-263660r982565_ruleThe operating system must provide protected storage for cryptographic keys with organization-defined safeguards and/or hardware protected key store.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 3 · disa_xccdf · related
SV-263685r982601_ruleThe Mainframe Product must provide protected storage for cryptographic keys with organization-defined safeguards and/or hardware protected key store.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 3 · disa_xccdf · related
SV-264325r984290_ruleThe VMM must provide protected storage for cryptographic keys with organization-defined safeguards and/or hardware protected key store.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 2 · disa_xccdf · related
SV-264357r984416_ruleThe web server must provide protected storage for cryptographic keys with organization-defined safeguards and/or hardware protected key store.
1.00
- Secure Controls Framework · 2026.2 · scf_strm · equivalent
- DISA · 2025-01-23 · disa_cci_list · equivalent
- DISA · 4 · disa_xccdf · related
+6 more (top 10 by confidence shown)
Control mappings provided by the Secure Controls Framework (SCF).
SCF
Powered by the Secure Controls Framework
The control catalog, cross-mappings, and STRM relationship data shown here are provided by the Secure Controls Framework (SCF), 2026.2. Every mapping is credited to SCF as the methodology, with the SCF reference and version stored alongside it.
© SCF Council, LLC. Secure Controls Framework content is free and shown here with attribution. securecontrolsframework.com · About SCF on STIGViewer