Trending...
- Omnitronics launches Ecosystem Health Dashboard to enable proactive monitoring across dispatch environments
- Salestrics Introduces PraiseEngine: The AI-Native Review Engine Built to Fix Social Proof
- Spokane City Council Passes Renters Right to Cooling Ordinance
SEATTLE--(BUSINESS WIRE)--The Cloud Security Alliance (CSA), the world's leading organization dedicated to defining standards, certifications, and best practices to help ensure a secure cloud computing environment, today released Cloud Key Management System with External Origin Key. Written by the Cloud Key Management Working Group to help organizations optimize such business outcomes as security, agility, cost, and compliance, the paper provides general guidance for choosing, planning, and deploying cloud-native key management systems (KMS) in cases where organizations either want to or must import key material (e.g., keys, vaults, secrets, policies) from an external source.
"A cloud service provider's KMS often has strong ties to its other cloud services, and this same cloud-native KMS using EKO can be used with a customer's on-premises technologies and cloud services from other providers. Unsurprisingly, integrating a cloud KMS with an organization's assets spanning traditional private data centers, as well as private and public cloud services in various geographic locations presents a host of challenges," said Paul Rich, co-chair of the Cloud Key Management Working Group and one of the paper's authors. "It's our hope that after reading this document, program and project managers who have been tasked with leading their organization through the selection, planning, and deployment stages of cloud-native KMS using EKO will be able map considerations to their organization."
More on Washingtoner
The guidance addresses the technical, operational, legal, regulatory, and financial aspects of leveraging a cloud-native KMS using external key origin (EKO) for each of the three stages of the lifecycle (choosing, planning, and deploying). Each aspect is broken down into further considerations and their accompanying justifications. Because cloud-native key management systems using EKO are relatively new, there isn't a large repository of best practices from which to draw. This guidance, therefore, combines best practices drawn from experience with traditional key management systems, cloud services in general, and cloud-native key management systems.
For further reading, Key Management in Cloud Services: Understanding Encryption's Desired Outcomes and Limitations provides the foundation for the choice of cloud KMS pattern and general guidance for using KMS whether the KMS is native to a cloud platform, external, self-operated, or yet another cloud service. Additionally, Recommendations for Adopting a Cloud-Native Key Management System provides more specific guidance for choosing, planning, and deploying cloud-native key management systems.
The Cloud Key Management Working Group aims to facilitate the standards for seamless integration between cloud service providers and key broker services. Those interested in participating in future research and initiatives involving cloud key management are invited to join the working group.
More on Washingtoner
Download Cloud Key Management System with External Origin Key now.
About Cloud Security Alliance
The Cloud Security Alliance (CSA) is the world's leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. CSA harnesses the subject matter expertise of industry practitioners, associations, governments, and its corporate and individual members to offer cloud security-specific research, education, training, certification, events, and products. CSA's activities, knowledge, and extensive network benefit the entire community impacted by cloud — from providers and customers to governments, entrepreneurs, and the assurance industry — and provide a forum through which different parties can work together to create and maintain a trusted cloud ecosystem. For further information, visit us at www.cloudsecurityalliance.org, and follow us on Twitter @cloudsa.
Contacts
Media Contacts
Kristina Rundquist for the CSA
kristina@zagcommunications.com
"A cloud service provider's KMS often has strong ties to its other cloud services, and this same cloud-native KMS using EKO can be used with a customer's on-premises technologies and cloud services from other providers. Unsurprisingly, integrating a cloud KMS with an organization's assets spanning traditional private data centers, as well as private and public cloud services in various geographic locations presents a host of challenges," said Paul Rich, co-chair of the Cloud Key Management Working Group and one of the paper's authors. "It's our hope that after reading this document, program and project managers who have been tasked with leading their organization through the selection, planning, and deployment stages of cloud-native KMS using EKO will be able map considerations to their organization."
More on Washingtoner
- Spokane: City Service Adjustments During Fire Response
- Qustone Launches Human-Centered Professional Network
- Portalz Publishes FES World First Architecture Introducing a New Cryptographic Platform
- ExtraCarry Sponsors Threat Response's Defensive Tactics Camp for Third Consecutive Year
- ExtraCarry Sponsors the World Revolver Championship
The guidance addresses the technical, operational, legal, regulatory, and financial aspects of leveraging a cloud-native KMS using external key origin (EKO) for each of the three stages of the lifecycle (choosing, planning, and deploying). Each aspect is broken down into further considerations and their accompanying justifications. Because cloud-native key management systems using EKO are relatively new, there isn't a large repository of best practices from which to draw. This guidance, therefore, combines best practices drawn from experience with traditional key management systems, cloud services in general, and cloud-native key management systems.
For further reading, Key Management in Cloud Services: Understanding Encryption's Desired Outcomes and Limitations provides the foundation for the choice of cloud KMS pattern and general guidance for using KMS whether the KMS is native to a cloud platform, external, self-operated, or yet another cloud service. Additionally, Recommendations for Adopting a Cloud-Native Key Management System provides more specific guidance for choosing, planning, and deploying cloud-native key management systems.
The Cloud Key Management Working Group aims to facilitate the standards for seamless integration between cloud service providers and key broker services. Those interested in participating in future research and initiatives involving cloud key management are invited to join the working group.
More on Washingtoner
- Tacoma City Council Funds Pilot with St. Leo Food Connection to Expand Food Access at Tacoma Public Library
- Tacoma: Applications Now Being Accepted for three Positions on the Urban Design Board
- Spokane: Wildfire and Insurance Informational Session
- Premier Expands Presence with New Bellevue Flexible Workspace Location
- Haven Treatment Center In-Network with MODA Health, Expanding Access to Behavioral Health
Download Cloud Key Management System with External Origin Key now.
About Cloud Security Alliance
The Cloud Security Alliance (CSA) is the world's leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. CSA harnesses the subject matter expertise of industry practitioners, associations, governments, and its corporate and individual members to offer cloud security-specific research, education, training, certification, events, and products. CSA's activities, knowledge, and extensive network benefit the entire community impacted by cloud — from providers and customers to governments, entrepreneurs, and the assurance industry — and provide a forum through which different parties can work together to create and maintain a trusted cloud ecosystem. For further information, visit us at www.cloudsecurityalliance.org, and follow us on Twitter @cloudsa.
Contacts
Media Contacts
Kristina Rundquist for the CSA
kristina@zagcommunications.com
0 Comments
Latest on Washingtoner
- Spokane: Community Resources Available to Those Impacted by Fires
- Spokane Police Urge Public to Stay Out of Fire Evacuation Areas
- Spokane launches wildfire relief fund
- VFW Mobilizes to Support Members and Communities Affected by Eastern Washington Wildfires
- Omnitronics launches Ecosystem Health Dashboard to enable proactive monitoring across dispatch environments
- New Research Identifies "The Great Junk Transfer": 49% of Americans Would Rather Inherit Nothing Than Sort Through a Relative's Belongings
- Minus K Technology launches it Educational Giveaway for Universities and Colleges in the USA
- UK Financial Ltd Verifies Maya Preferred PRA Circulating Supply, Proving Its Eight-Year Promise of Under 1M Tokens After Chainlink Labs Agreement
- Anamorphic 3D Only Works on Fixed Screens. Loud! OOH Put It on a Moving Ad Van for Flood Re
- From DJ Booths to Disney: Orlando Author Ryan Tiffin Launches "Chasing Magic"
- FDA Food Recall Notices After Outbreak Linked to 98 Hospitalizations: Practical Tips for Safer Grocery Shopping
- The 'Tax Squeeze': Betsson's Record Quarter Previews the Economics of Finland's 2027 Casino Market
- ImagineX Acquires Payteros to Strengthen Digital Transformation Capabilities
- From Pizza to Playlists: Marty The Pizza Guy Delivers Three Delicious New Songs
- Spokane: Mayor Brown looks to expand access to cooling resources
- Spokane: Mayor Brown Launches Data Center Work Group Following Adoption of One-Year Moratorium
- Spokane City Council Passes Renters Right to Cooling Ordinance
- Salestrics Introduces PraiseEngine: The AI-Native Review Engine Built to Fix Social Proof
- K2 Integrity Names Michael Kallabat Global Head of Investigations and Disputes
- Socialhose Eyes Southeast Asia and Rejects the Copy-Paste Expansion Playbook