Trending...
- City of Spokane Launches New Webpage, Notice Document to Connect Residents with Eviction Prevention Resources
- Tacoma: Homicide Investigation – 800 Block of Martin Luther King JR Way
- City of Tacoma Attracts More Affordable Housing to Proctor Neighborhood
SEATTLE--(BUSINESS WIRE)--The Cloud Security Alliance (CSA), the world's leading organization dedicated to defining standards, certifications, and best practices to help ensure a secure cloud computing environment, today released Cloud Key Management System with External Origin Key. Written by the Cloud Key Management Working Group to help organizations optimize such business outcomes as security, agility, cost, and compliance, the paper provides general guidance for choosing, planning, and deploying cloud-native key management systems (KMS) in cases where organizations either want to or must import key material (e.g., keys, vaults, secrets, policies) from an external source.
"A cloud service provider's KMS often has strong ties to its other cloud services, and this same cloud-native KMS using EKO can be used with a customer's on-premises technologies and cloud services from other providers. Unsurprisingly, integrating a cloud KMS with an organization's assets spanning traditional private data centers, as well as private and public cloud services in various geographic locations presents a host of challenges," said Paul Rich, co-chair of the Cloud Key Management Working Group and one of the paper's authors. "It's our hope that after reading this document, program and project managers who have been tasked with leading their organization through the selection, planning, and deployment stages of cloud-native KMS using EKO will be able map considerations to their organization."
More on Washingtoner
The guidance addresses the technical, operational, legal, regulatory, and financial aspects of leveraging a cloud-native KMS using external key origin (EKO) for each of the three stages of the lifecycle (choosing, planning, and deploying). Each aspect is broken down into further considerations and their accompanying justifications. Because cloud-native key management systems using EKO are relatively new, there isn't a large repository of best practices from which to draw. This guidance, therefore, combines best practices drawn from experience with traditional key management systems, cloud services in general, and cloud-native key management systems.
For further reading, Key Management in Cloud Services: Understanding Encryption's Desired Outcomes and Limitations provides the foundation for the choice of cloud KMS pattern and general guidance for using KMS whether the KMS is native to a cloud platform, external, self-operated, or yet another cloud service. Additionally, Recommendations for Adopting a Cloud-Native Key Management System provides more specific guidance for choosing, planning, and deploying cloud-native key management systems.
The Cloud Key Management Working Group aims to facilitate the standards for seamless integration between cloud service providers and key broker services. Those interested in participating in future research and initiatives involving cloud key management are invited to join the working group.
More on Washingtoner
Download Cloud Key Management System with External Origin Key now.
About Cloud Security Alliance
The Cloud Security Alliance (CSA) is the world's leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. CSA harnesses the subject matter expertise of industry practitioners, associations, governments, and its corporate and individual members to offer cloud security-specific research, education, training, certification, events, and products. CSA's activities, knowledge, and extensive network benefit the entire community impacted by cloud — from providers and customers to governments, entrepreneurs, and the assurance industry — and provide a forum through which different parties can work together to create and maintain a trusted cloud ecosystem. For further information, visit us at www.cloudsecurityalliance.org, and follow us on Twitter @cloudsa.
Contacts
Media Contacts
Kristina Rundquist for the CSA
kristina@zagcommunications.com
"A cloud service provider's KMS often has strong ties to its other cloud services, and this same cloud-native KMS using EKO can be used with a customer's on-premises technologies and cloud services from other providers. Unsurprisingly, integrating a cloud KMS with an organization's assets spanning traditional private data centers, as well as private and public cloud services in various geographic locations presents a host of challenges," said Paul Rich, co-chair of the Cloud Key Management Working Group and one of the paper's authors. "It's our hope that after reading this document, program and project managers who have been tasked with leading their organization through the selection, planning, and deployment stages of cloud-native KMS using EKO will be able map considerations to their organization."
More on Washingtoner
- The Problem With AI Isn't Compute. It's Memory
- Golden Visa Countries Outpace Eurozone Growth Over Eight Years, New La Vida Analysis Finds
- Allstream Energy Partners Announced as Official Media Partner for the 2nd Annual Permian Power Conference
- ATTENTION: DGCA India & CAAC China — Boeing Quality Chief Doug Ackerman Linked To 24 Year Unaccredited Manufacturing Gap Ahead Of 787 Failures
- City of Tacoma to Implement Temporary Road Closures and Traffic Restrictions on June 12
The guidance addresses the technical, operational, legal, regulatory, and financial aspects of leveraging a cloud-native KMS using external key origin (EKO) for each of the three stages of the lifecycle (choosing, planning, and deploying). Each aspect is broken down into further considerations and their accompanying justifications. Because cloud-native key management systems using EKO are relatively new, there isn't a large repository of best practices from which to draw. This guidance, therefore, combines best practices drawn from experience with traditional key management systems, cloud services in general, and cloud-native key management systems.
For further reading, Key Management in Cloud Services: Understanding Encryption's Desired Outcomes and Limitations provides the foundation for the choice of cloud KMS pattern and general guidance for using KMS whether the KMS is native to a cloud platform, external, self-operated, or yet another cloud service. Additionally, Recommendations for Adopting a Cloud-Native Key Management System provides more specific guidance for choosing, planning, and deploying cloud-native key management systems.
The Cloud Key Management Working Group aims to facilitate the standards for seamless integration between cloud service providers and key broker services. Those interested in participating in future research and initiatives involving cloud key management are invited to join the working group.
More on Washingtoner
- Spokane: Notice from SPD as Team Egypt Arrives & FIFA Events Begin
- Spokane: Significant Impacts to North-South Travel
- CCHR Calls Out Psychiatry's Pattern of Resistance to Antidepressant Deprescribing
- Boston Industrial Solutions Introduces New Natron® 310 Hyper White UV Ink for Enhanced Printing Performance
- New Tribute Song Celebrating Seattle'
Download Cloud Key Management System with External Origin Key now.
About Cloud Security Alliance
The Cloud Security Alliance (CSA) is the world's leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. CSA harnesses the subject matter expertise of industry practitioners, associations, governments, and its corporate and individual members to offer cloud security-specific research, education, training, certification, events, and products. CSA's activities, knowledge, and extensive network benefit the entire community impacted by cloud — from providers and customers to governments, entrepreneurs, and the assurance industry — and provide a forum through which different parties can work together to create and maintain a trusted cloud ecosystem. For further information, visit us at www.cloudsecurityalliance.org, and follow us on Twitter @cloudsa.
Contacts
Media Contacts
Kristina Rundquist for the CSA
kristina@zagcommunications.com
0 Comments
Latest on Washingtoner
- netElastic Powers LigaT's High-Performance Broadband Expansion and IPv6 Modernization in Portugal
- Raiku launches rkuSOL with Sanctum, Kamino, Loopscale and Exponent
- Greenland Mines Ltd (N A S D A Q: GRML) Advances Strategic Growth Initiatives as Critical Minerals Demand Accelerates
- Entering the $69 Billion Animal Health Market, Delivering Record Growth, AI-Driven Healthcare Innovation, and Targeting $200 Million Revenue by 2029
- $97.9 Million Q1 Revenue Growth Reinforces Transformation Into a Global AI & Digital Services Powerhouse: IQSTEL, Inc. (N A S D A Q: IQST)
- City of Tacoma Attracts More Affordable Housing to Proctor Neighborhood
- Tacoma: Homicide Investigation – 800 Block of Martin Luther King JR Way
- Spokane: Community Days At City Council Celebrating Student Civic Engagement
- Boston Industrial Solutions Launches Natron® 348 UV Inkjet Ink for Epson S3200 Print Heads
- Heritage at South Brunswick Unveils Luxury Resort-Style Amenities Designed for Every Generation
- Spokane: Working Smoke Alarms Help Seven Escape Early-Morning House Fire
- CAPHRA warns push for ASEAN vape ban ignores science
- Spokane: Egypt National Team to Hold Open Training Session at Gonzaga University Ahead of FIFA World Cup 2026™
- Your Mortgage Toolbox Launches Free Mortgage Calculators That Show the Real Monthly Payment and Cash Needed to Close
- ENTOUCH Recognized on Inc.'s 2026 Best Workplaces List for the Third Year Running
- P-Wave Classics Opens Pre-Orders for Volume II of Robert Bage's Hermsprong
- City of Spokane Launches New Webpage, Notice Document to Connect Residents with Eviction Prevention Resources
- Tuckwell Machinery Launches New Range of Woodworking Machinery
- A Brave Little Hero with Four Paws
- Arux Group CEO Calls on Security Industry to End Hidden Subcontracting and White-Papering