Thales Announces new Security-as-a-Service for Centralized Control of Encryption Keys used for Microsoft Azure and Amazon Web Services
By FF Newsroom · 27 October 2017

CipherTrust Cloud Key Manager delivers full security, visibility, and management for enterprises to control their "bring your own" encryption keys
Thales, a leader in critical information systems, cybersecurity and data security, announces CipherTrust Cloud Key Manager for support of Microsoft Azure Key Vault and Amazon Web Services (AWS) Key Management Service (KMS) bring your own key (BYOK) capabilities. The solution allows users of these dominant public cloud solutions to meet compliance mandates and further protect their most sensitive data by creating and managing encryption keys separate from their cloud provider's infrastructure.
To help save time and money, a growing number of enterprises are eschewing legacy technologies in favor of cloud and SaaS environments. While these technologies are digitally transforming businesses, they present challenges: enterprise data is fair game for cybercriminals regardless of operating environments, and meeting compliance and best practices requirements isn't always straightforward. In response, enterprises are developing encryption strategies to better protect and control their data. While effective, this presents a new hurdle; when considering that many enterprises utilize multiple cloud providers, the management of encryption keys can prove difficult.
Thales CipherTrust Cloud Key Manager offers a number of benefits to help enterprises control and secure encryption keys in multi-cloud environments, including:
- Providing unique, enterprise-ready encryption key lifecycle management spanning an ever-growing list of leading cloud vendors (Salesforce, Microsoft Azure, AWS)
- Centralizing multi-cloud encryption key creation and management separate from the cloud provider's control with a choice of a SaaS or on-premises deployment
- Achieving compliance with a FIPS 140-2 and Common Criteria certified key store with visibility into how, when and by whom encryption keys are used through logging and a set of built-in usage reports