Cipher
What is Cipher?
An algorithm for performing encryption or decryption of data. Ciphers transform plaintext into ciphertext (encryption) and back again (decryption) using a key.
Terms that appear alongside cipher
Each of these is named in at least one of the same controls as cipher. The number is how many controls name both.
- tls 7 shared controls
- owasp 3 shared controls
- forward secrecy 3 shared controls
- encryption 3 shared controls
- certificate pinning 2 shared controls
- key rotation 2 shared controls
- ipsec 2 shared controls
- policy 2 shared controls
Frameworks that govern cipher
What the standards actually require on cipher
Requirements naming cipher across 6 standards, quoted from the control text.
Cryptographic cipher suites and protocols in use are documented and reviewed at least every 12 months, with a plan to address known weaknesses and respond to changes.
12.3.3 · Cryptographic cipher suites and protocols inventory →RRC and UP security over air interface including ciphering and integrity protection
TS33.501-6.6 · AS Security →Require TLS 1.2 or higher for all client to service and service to service traffic, including within VPCs, and disable legacy protocols and ciphers.
SEC09-BP02 · Enforce encryption in transit →Sensitive data is encrypted in transit using current TLS versions with strong cipher suites and certificate validation.
IS-IV.F.2 · Data in Transit Encryption →HL7 FHIR Transport Security. TRANSPORT LAYER SECURITY (TLS) - all FHIR APIs MUST use TLS 1.2+ for production + TLS 1.3 recommended; certificate validation + trust chain + certificate pinning where appropriate + HSTS + secure session establishment + cipher suit...
HL7-FHIR-Transport-TLS-Communication · HL7 FHIR Transport Security - TLS 1.2+, Communication Security, Time Keeping, Server CapabilityStatement →ISMAP Data Protection establishes comprehensive data lifecycle controls. (1) Data Classification: customer government data must be classified per Japanese government data classification scheme + including (a) General + (b) Sensitive + (c) Confidential + (d) St...
ISMAP-DataProtection-Classification-Encryption-DataResidencyJapan-Backup-SecureDeletion-Cryptography-FIPS · ISMAP Data Protection - Data Classification + AES-256 Encryption At Rest + TLS 1.3 In Transit + Data Residency Japan + Backup + Secure Deletion + Cryptography per FIPS 140-3 + CRYPTREC + KMS HSM →Questions people ask about cipher
What is Cipher?
Why is Cipher important for compliance?
Which compliance frameworks address Cipher?
Where can I learn more about Cipher?
See how Cipher applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.