Trending...
- Tacoma: Applicants Sought for the Board of Ethics
- Share your workplace safety solutions at 2027 Applied Ergonomics Conference
- Qscription Technologies and NEOPATHOLOGY CORP. Sign MOU to Bring FDA-Cleared Lung Imaging AI into U.S. Clinical Practice
SEATTLE--(BUSINESS WIRE)--The Cloud Security Alliance (CSA), the world's leading organization dedicated to defining standards, certifications, and best practices to help ensure a secure cloud computing environment, today released Cloud Key Management System with External Origin Key. Written by the Cloud Key Management Working Group to help organizations optimize such business outcomes as security, agility, cost, and compliance, the paper provides general guidance for choosing, planning, and deploying cloud-native key management systems (KMS) in cases where organizations either want to or must import key material (e.g., keys, vaults, secrets, policies) from an external source.
"A cloud service provider's KMS often has strong ties to its other cloud services, and this same cloud-native KMS using EKO can be used with a customer's on-premises technologies and cloud services from other providers. Unsurprisingly, integrating a cloud KMS with an organization's assets spanning traditional private data centers, as well as private and public cloud services in various geographic locations presents a host of challenges," said Paul Rich, co-chair of the Cloud Key Management Working Group and one of the paper's authors. "It's our hope that after reading this document, program and project managers who have been tasked with leading their organization through the selection, planning, and deployment stages of cloud-native KMS using EKO will be able map considerations to their organization."
More on Washingtoner
The guidance addresses the technical, operational, legal, regulatory, and financial aspects of leveraging a cloud-native KMS using external key origin (EKO) for each of the three stages of the lifecycle (choosing, planning, and deploying). Each aspect is broken down into further considerations and their accompanying justifications. Because cloud-native key management systems using EKO are relatively new, there isn't a large repository of best practices from which to draw. This guidance, therefore, combines best practices drawn from experience with traditional key management systems, cloud services in general, and cloud-native key management systems.
For further reading, Key Management in Cloud Services: Understanding Encryption's Desired Outcomes and Limitations provides the foundation for the choice of cloud KMS pattern and general guidance for using KMS whether the KMS is native to a cloud platform, external, self-operated, or yet another cloud service. Additionally, Recommendations for Adopting a Cloud-Native Key Management System provides more specific guidance for choosing, planning, and deploying cloud-native key management systems.
The Cloud Key Management Working Group aims to facilitate the standards for seamless integration between cloud service providers and key broker services. Those interested in participating in future research and initiatives involving cloud key management are invited to join the working group.
More on Washingtoner
Download Cloud Key Management System with External Origin Key now.
About Cloud Security Alliance
The Cloud Security Alliance (CSA) is the world's leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. CSA harnesses the subject matter expertise of industry practitioners, associations, governments, and its corporate and individual members to offer cloud security-specific research, education, training, certification, events, and products. CSA's activities, knowledge, and extensive network benefit the entire community impacted by cloud — from providers and customers to governments, entrepreneurs, and the assurance industry — and provide a forum through which different parties can work together to create and maintain a trusted cloud ecosystem. For further information, visit us at www.cloudsecurityalliance.org, and follow us on Twitter @cloudsa.
Contacts
Media Contacts
Kristina Rundquist for the CSA
kristina@zagcommunications.com
"A cloud service provider's KMS often has strong ties to its other cloud services, and this same cloud-native KMS using EKO can be used with a customer's on-premises technologies and cloud services from other providers. Unsurprisingly, integrating a cloud KMS with an organization's assets spanning traditional private data centers, as well as private and public cloud services in various geographic locations presents a host of challenges," said Paul Rich, co-chair of the Cloud Key Management Working Group and one of the paper's authors. "It's our hope that after reading this document, program and project managers who have been tasked with leading their organization through the selection, planning, and deployment stages of cloud-native KMS using EKO will be able map considerations to their organization."
More on Washingtoner
- Lawsuit Alleges American Deli Food Caused Severe Illness, Acute Kidney Failure, And Eight-day Hospitalization
- FBI/DoW plot uncovered to hurt Trump/Vance through encouraged "widespread" cybersecurity breaches and racketeering theft of $80m in USDA payments
- City of Tacoma Aligns Parking Rates and Facilities for Downtown Parking Network Effective October 13
- Bettingbladet releases H1 2026 report on the Swedish online gambling market
- Garage door installation or repair in Minnesota? Which makes more sense for your family?
The guidance addresses the technical, operational, legal, regulatory, and financial aspects of leveraging a cloud-native KMS using external key origin (EKO) for each of the three stages of the lifecycle (choosing, planning, and deploying). Each aspect is broken down into further considerations and their accompanying justifications. Because cloud-native key management systems using EKO are relatively new, there isn't a large repository of best practices from which to draw. This guidance, therefore, combines best practices drawn from experience with traditional key management systems, cloud services in general, and cloud-native key management systems.
For further reading, Key Management in Cloud Services: Understanding Encryption's Desired Outcomes and Limitations provides the foundation for the choice of cloud KMS pattern and general guidance for using KMS whether the KMS is native to a cloud platform, external, self-operated, or yet another cloud service. Additionally, Recommendations for Adopting a Cloud-Native Key Management System provides more specific guidance for choosing, planning, and deploying cloud-native key management systems.
The Cloud Key Management Working Group aims to facilitate the standards for seamless integration between cloud service providers and key broker services. Those interested in participating in future research and initiatives involving cloud key management are invited to join the working group.
More on Washingtoner
- Tacoma: Application for 2027 Community Arts Projects Funding Now Available
- Haven Treatment Center Now In-Network Partnership with ComPsych, Expanding Access to Youth Health
- Tacoma: OMWBE Certification 201 Workshop on September 28
- Super Rooter Expands to 190 Plumbing, Sewer, and Drain Service Locations Across the United States
- European Patent for ALS Program Expands the Story: HOPE Deploys Robotic TMS & FDA Commercialization Path Advances: NRx Pharmaceuticals: NAS DAQ: NRXP
Download Cloud Key Management System with External Origin Key now.
About Cloud Security Alliance
The Cloud Security Alliance (CSA) is the world's leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. CSA harnesses the subject matter expertise of industry practitioners, associations, governments, and its corporate and individual members to offer cloud security-specific research, education, training, certification, events, and products. CSA's activities, knowledge, and extensive network benefit the entire community impacted by cloud — from providers and customers to governments, entrepreneurs, and the assurance industry — and provide a forum through which different parties can work together to create and maintain a trusted cloud ecosystem. For further information, visit us at www.cloudsecurityalliance.org, and follow us on Twitter @cloudsa.
Contacts
Media Contacts
Kristina Rundquist for the CSA
kristina@zagcommunications.com
0 Comments
Latest on Washingtoner
- Haven Treatment Center Now In-Network Partnership with Aetna, Expanding Access to Youth Health Care
- Applicants Sought for the Tacoma Arts Commission and the Tacoma Creates Advisory Board
- Spokane City Council Approves Emergency Tenant Protections
- HydroExcavation.com Relaunches With Exclusive Local Service Areas and Dedicated Hydrovac Manufacturer Directory
- Sky Quarry Enters a Powerful New Chapter: Refinery Restart Emminent, Nevada Oil Initiative and Visibility Put (NAS DAQ: SKYQ) in the Spotlight
- Intelligence Daily Features Veteran Hollywood Producer Kirk Shaw On AI And The Future Of Entertainment
- OneVizion Launches Vera AI, Bringing Connected Operational Context to Infrastructure Teams
- P-Wave Press Announces Pushing the Wave 2025 by L.A. Davenport
- DONGSHENG Titanium Recycling: Promoting a Closed-Loop Cycle for High-End Titanium Materials
- TBM Council Establishes TBM as The Business Operating System for AI
- Spokane: SFD's 8th Annual Kids Jr Firefighter Academy
- Tacoma Dome Unveils Salish Mural
- French Camp Academy Releases New Video Inviting Individuals to Consider a Life of Service
- Tacoma: Northbound I-705 Stadium Way Off-Ramp to Close at Noon Today for Emergency Repairs
- LET US READ Documentary on Dyslexia and Literacy to Screen at TCL Chinese 6 in Hollywood
- PeopleNTech LLC to Participate in CWS Summit North America 2026
- Defense & Space Strategy Strengthens as New Leadership Builds on NASA Results and Expanding Multi-Orbit Opportunities for Ascent Solar Technologies
- STS Capital Partners is pleased to announce the appointment of Barry Brown as Vice President, Business Development
- Qscription Technologies and NEOPATHOLOGY CORP. Sign MOU to Bring FDA-Cleared Lung Imaging AI into U.S. Clinical Practice
- Tidy-Up Tacoma Teams Up with Community Partners for Citywide Cleanup Event September 19