Trending...
- Heritage at South Brunswick Introduces New Ferndale Floorplan: The Largest Single-Family Home Design in the Community - 166
- Tacoma Voters Approve Connect Tacoma: Safe Streets and Sidewalks Levy (Proposition 1)
- City of Spokane Staff on Hand at Disaster Assistance Center
SEATTLE--(BUSINESS WIRE)--The Cloud Security Alliance (CSA), the world's leading organization dedicated to defining standards, certifications, and best practices to help ensure a secure cloud computing environment, today released Cloud Key Management System with External Origin Key. Written by the Cloud Key Management Working Group to help organizations optimize such business outcomes as security, agility, cost, and compliance, the paper provides general guidance for choosing, planning, and deploying cloud-native key management systems (KMS) in cases where organizations either want to or must import key material (e.g., keys, vaults, secrets, policies) from an external source.
"A cloud service provider's KMS often has strong ties to its other cloud services, and this same cloud-native KMS using EKO can be used with a customer's on-premises technologies and cloud services from other providers. Unsurprisingly, integrating a cloud KMS with an organization's assets spanning traditional private data centers, as well as private and public cloud services in various geographic locations presents a host of challenges," said Paul Rich, co-chair of the Cloud Key Management Working Group and one of the paper's authors. "It's our hope that after reading this document, program and project managers who have been tasked with leading their organization through the selection, planning, and deployment stages of cloud-native KMS using EKO will be able map considerations to their organization."
More on Washingtoner
The guidance addresses the technical, operational, legal, regulatory, and financial aspects of leveraging a cloud-native KMS using external key origin (EKO) for each of the three stages of the lifecycle (choosing, planning, and deploying). Each aspect is broken down into further considerations and their accompanying justifications. Because cloud-native key management systems using EKO are relatively new, there isn't a large repository of best practices from which to draw. This guidance, therefore, combines best practices drawn from experience with traditional key management systems, cloud services in general, and cloud-native key management systems.
For further reading, Key Management in Cloud Services: Understanding Encryption's Desired Outcomes and Limitations provides the foundation for the choice of cloud KMS pattern and general guidance for using KMS whether the KMS is native to a cloud platform, external, self-operated, or yet another cloud service. Additionally, Recommendations for Adopting a Cloud-Native Key Management System provides more specific guidance for choosing, planning, and deploying cloud-native key management systems.
The Cloud Key Management Working Group aims to facilitate the standards for seamless integration between cloud service providers and key broker services. Those interested in participating in future research and initiatives involving cloud key management are invited to join the working group.
More on Washingtoner
Download Cloud Key Management System with External Origin Key now.
About Cloud Security Alliance
The Cloud Security Alliance (CSA) is the world's leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. CSA harnesses the subject matter expertise of industry practitioners, associations, governments, and its corporate and individual members to offer cloud security-specific research, education, training, certification, events, and products. CSA's activities, knowledge, and extensive network benefit the entire community impacted by cloud — from providers and customers to governments, entrepreneurs, and the assurance industry — and provide a forum through which different parties can work together to create and maintain a trusted cloud ecosystem. For further information, visit us at www.cloudsecurityalliance.org, and follow us on Twitter @cloudsa.
Contacts
Media Contacts
Kristina Rundquist for the CSA
kristina@zagcommunications.com
"A cloud service provider's KMS often has strong ties to its other cloud services, and this same cloud-native KMS using EKO can be used with a customer's on-premises technologies and cloud services from other providers. Unsurprisingly, integrating a cloud KMS with an organization's assets spanning traditional private data centers, as well as private and public cloud services in various geographic locations presents a host of challenges," said Paul Rich, co-chair of the Cloud Key Management Working Group and one of the paper's authors. "It's our hope that after reading this document, program and project managers who have been tasked with leading their organization through the selection, planning, and deployment stages of cloud-native KMS using EKO will be able map considerations to their organization."
More on Washingtoner
- Q1 2026 Arizona Technology Industry Impact Report Recaps Advanced Manufacturing Growth, High-Value Jobs and Workforce Investment
- Spokane Police Respond to Midday Shooting on STA Bus
- Sparta Services' Dave Galy Named to CRN's 2026 Next-Gen Solution Provider Leaders List
- Former Prosecutor Opens Stegall Law in Summerville
- Vboost Celebrates 14 years of Automotive Viral Marketing
The guidance addresses the technical, operational, legal, regulatory, and financial aspects of leveraging a cloud-native KMS using external key origin (EKO) for each of the three stages of the lifecycle (choosing, planning, and deploying). Each aspect is broken down into further considerations and their accompanying justifications. Because cloud-native key management systems using EKO are relatively new, there isn't a large repository of best practices from which to draw. This guidance, therefore, combines best practices drawn from experience with traditional key management systems, cloud services in general, and cloud-native key management systems.
For further reading, Key Management in Cloud Services: Understanding Encryption's Desired Outcomes and Limitations provides the foundation for the choice of cloud KMS pattern and general guidance for using KMS whether the KMS is native to a cloud platform, external, self-operated, or yet another cloud service. Additionally, Recommendations for Adopting a Cloud-Native Key Management System provides more specific guidance for choosing, planning, and deploying cloud-native key management systems.
The Cloud Key Management Working Group aims to facilitate the standards for seamless integration between cloud service providers and key broker services. Those interested in participating in future research and initiatives involving cloud key management are invited to join the working group.
More on Washingtoner
- Spokane: Notice of Intent to Make a Section 4(f) De Minimis Impact Determination
- Spokane Complex Fire Parks & Recreation update 08-12-26
- Ignazio Arces Wins Stevie® Award for Maverick of the Year at the 2026 International Business Awards
- Tickeron Highlights AI Trading Agent Performance Across Multiple Market Sectors
- Stop Bleeding Cash on Mediocre Talent. Build a Powerhouse Remote Team Instead
Download Cloud Key Management System with External Origin Key now.
About Cloud Security Alliance
The Cloud Security Alliance (CSA) is the world's leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. CSA harnesses the subject matter expertise of industry practitioners, associations, governments, and its corporate and individual members to offer cloud security-specific research, education, training, certification, events, and products. CSA's activities, knowledge, and extensive network benefit the entire community impacted by cloud — from providers and customers to governments, entrepreneurs, and the assurance industry — and provide a forum through which different parties can work together to create and maintain a trusted cloud ecosystem. For further information, visit us at www.cloudsecurityalliance.org, and follow us on Twitter @cloudsa.
Contacts
Media Contacts
Kristina Rundquist for the CSA
kristina@zagcommunications.com
0 Comments
Latest on Washingtoner
- ASSIST Software Becomes One of the First European Companies Certified to ISO/IEC 42001
- The World's No.1 Superstar® Enters the Occult with New Track and Cinematic Visual "Under Your Spell"
- PricZone Launches Online Shopping Platform Offering Electronics, Gaming, and More
- Heritage at South Brunswick Introduces New Ferndale Floorplan: The Largest Single-Family Home Design in the Community
- Lineus Medical Elevates Leadership to Accelerate Growth After Breakthrough Clinical Results
- Gateway Center Arena Announces Duane Curry as General Manger
- Spokane Police Respond to Overnight Shooting in Garland District
- XRPPower Expands Platform Security With Enhanced Brand Protection and Official Verification Standards
- Spokane-Area VFW Posts Open Their Doors to Wildfire Evacuees
- QuickBooks Online Advanced: Features, Benefits Guide
- Cuvo Health, the #1 White Label Telehealth Platform, Surpasses 300 Exclusive Providers Serving All 50 States
- Spokane: City To Provide Extra Garbage Collection for Downgraded Evacuation Zones
- Spokane: City offers guidance on safely returning home after fires
- Qustone Brings Leadership as Infrastructure to the Commercial Space Ecosystem
- Inappropriate Jazz - It's a Musical!
- Spokane: City Testing Shows Water Quality is Safe
- RAS AP Consulting Expands Managed AP Governance™ Ecosystem, Launches Trademark Process, and Secures IFOL Speaker Invitation
- UK Financial Ltd Makes History: Chainlink CRE Circulating Supply Verification Goes Live Across Its Complete Ecosystem Of Nine Exchange-Traded Tokens
- International Rights Groups Raise Alarm Over Freedom of Religion and Expression in South Korea
- WDTA Hosts Landmark DWC Seattle AI Summit in Bellevue, Bridging AI Governance and Innovation