Establishing Cryptographic Asset Oversight
A national public sector authority responsible for land registries, geodetic control, and core geographic data systems operates mission-critical platforms that support land ownership, infrastructure planning, and public administration across multiple regions. To protect the reliability and availability of these systems, the organization required centralized visibility into certificates and cryptographic keys across its IT environment. The objective was to replace fragmented, manual tracking with a single, authoritative view of cryptographic assets that supports continuous monitoring, audit readiness, and compliance with European NIS2 and national cybersecurity authority regulations, while operating as a virtual appliance without Kubernetes.
ISS Solution: Identity Lifecycle Management (ILM)
ISS deployed its Identity Lifecycle Management (ILM) platform within the organization’s network as a virtual appliance, aligning with existing infrastructure and operational constraints. ILM scanned the environment and connected internal certification authorities, automatically discovering certificates issued by both internal and external CAs. This provided a continuously updated, centralized inventory of cryptographic assets, replacing static spreadsheet-based records with real-time, system-driven visibility.
By maintaining certificate data directly within the platform, ILM ensured that asset information always reflected the actual operational state of certificates and their precise location within the network—significantly improving accuracy, oversight, and trust in compliance reporting.
Key Capabilities Delivered
- Centralized discovery and inventory of all certificates across the organization’s network
- Real-time visibility into certificate status and cryptographic asset usage
- Audit-ready reporting to support IT security reviews and regulatory compliance
- Role-based access control for administrators and users
- Foundation for future automation, enabling lifecycle management expansion
Results
ISS deployed ILM as a virtual appliance within the organization’s network, enabling:
- Single authoritative source of truth for cryptographic assets
- Improved operational assurance for national land and geographic systems
- Stronger compliance posture for NIS2 and NÚKIB requirements
- Elimination of manual certificate tracking, reducing risk and overhead
- Clear path toward automated certificate lifecycle management