1Visibility
Do you have a complete inventory of all certificates across your organization?
2Visibility
How do you track certificate expiry dates?
3Architecture
How many Certificate Authorities (CAs) does your organization use?
4Architecture
Do you operate a private/internal PKI (e.g., Microsoft AD CS, EJBCA, or cloud-based)?
5Automation
What level of certificate lifecycle automation do you have?
6Automation
How are private keys managed?
7Governance
Do you have a documented certificate/PKI policy?
8Governance
How do you handle compliance requirements related to certificates (PCI DSS, HIPAA, SOC 2, etc.)?
9Operations
Have you experienced certificate-related outages in the past 12 months?
10Future Readiness
Have you started planning for post-quantum cryptography (PQC) migration?
11Operations
How do you manage SSH keys across your infrastructure?
12Operations
Do you use code signing for your software releases?