4-1 Discussion: PKI Implementation Scenario Hello. Exciting times with the merger. From a security standpoint, there are some clarifications that should be made. I. II. III. IV. With the merger, are we creating a new infrastructure with new security certificates for all the users, or are we adding the users from the merged company to our existing infrastructure? This is an important consideration as we need to know the actual number of new users for us to effectively create the certificates repository. We should get all the certificate backups from the small company if they are backup up. This will help us with the issuance of security certificates to the new users. Additionally, we should back up all the security certificates existing and new ones, for the updated infrastructure, in the case of an event during or after the update. With the new merger, are there any new requirements for the certificate revocation process, if any? We also need to have an updated list of all the users from both the companies, and the level of their security access, so we can update and configure the databases with the correct security protocols. In addition to the above clarifications, it is also imperative that the changes and updates be communicated to all the users in an effective manner. With the changes and updates communicated to all the users, training on the changes should be extended to the users to ensure the effective implementation of the changes and the updates. Thank you.