Secrets Management
Kind: activity
Layer: Security Core
Record: architecture:secrets-management
Severity: mandatory
Scope: config, deployment, runtime
Canonical: Ontology
The practice of keeping credentials in a secret store, reading them at runtime and rotating them on a schedule.
Listed in Architecture principles, after Encryption in Transit and before Privacy by Design.
Requires
Reinforces
Enables
Conflicts with
In tension with
Tensions
Contracts
Violated by
Refactored by
Severity
Category
Enforced by
Linked from
- The deploy is a file operation
- Anti-patterns
- Core Vocabulary
- Security Privacy Compliance
- Architectural Rules
- Severity levels
- The resolutions