← SwissSign AG cases
Bugzilla #1990263
Audit Related
SwissSign: recommendation on BIA/BCP review
RESOLVED
FIXED
SwissSign AG
AI Summary
SwissSign AG received an audit recommendation to improve the synchronization of their Business Impact Analysis (BIA) and Business Continuity Plan (BCP) reviews. The audit highlighted that while both documents were reviewed periodically, their cycles were not formally aligned, posing a risk of divergence. In response, SwissSign has synchronized the review periodicity and updated their internal procedures accordingly. All action items related to this recommendation have been completed, and the CA is committed to maintaining aligned governance documentation as per ETSI EN 319 401.
Chronology
- Audit report containing recommendation published
- Action item to synchronize review periodicity completed
Participants
Sandy Balzer
External References
Similar Local Cases
SwissSign: recommendation on document release dual control
SwissSign: recommendation on CA-specific risk assessment
SwissSign: Findings in 2024 Audit
SwissSign Audit info
Certigna: Finding #2 ETSI Audit - Risks regarding the certification of device not described
Camerfirma: Qualified Audit Statements
Telia: Qualified Audit Statements
Telia: Qualified BR Audit Statement