Trending...
- From the Racetrack to the Boardroom: Aston Martin and Aramco Formula One Partnership Accelerates Circle8 Group: (N A S D A Q: CIRC)
- Spokane: Council Member Zappone Awarded Certificate of Municipal Leadership
- Dynamic Dachshund Dog Goes Global: Remember Point Launches a New Bilingual Children's Book
SEATTLE--(BUSINESS WIRE)--The Cloud Security Alliance (CSA), the world's leading organization dedicated to defining standards, certifications, and best practices to help ensure a secure cloud computing environment, today released Cloud Key Management System with External Origin Key. Written by the Cloud Key Management Working Group to help organizations optimize such business outcomes as security, agility, cost, and compliance, the paper provides general guidance for choosing, planning, and deploying cloud-native key management systems (KMS) in cases where organizations either want to or must import key material (e.g., keys, vaults, secrets, policies) from an external source.
"A cloud service provider's KMS often has strong ties to its other cloud services, and this same cloud-native KMS using EKO can be used with a customer's on-premises technologies and cloud services from other providers. Unsurprisingly, integrating a cloud KMS with an organization's assets spanning traditional private data centers, as well as private and public cloud services in various geographic locations presents a host of challenges," said Paul Rich, co-chair of the Cloud Key Management Working Group and one of the paper's authors. "It's our hope that after reading this document, program and project managers who have been tasked with leading their organization through the selection, planning, and deployment stages of cloud-native KMS using EKO will be able map considerations to their organization."
More on Washingtoner
The guidance addresses the technical, operational, legal, regulatory, and financial aspects of leveraging a cloud-native KMS using external key origin (EKO) for each of the three stages of the lifecycle (choosing, planning, and deploying). Each aspect is broken down into further considerations and their accompanying justifications. Because cloud-native key management systems using EKO are relatively new, there isn't a large repository of best practices from which to draw. This guidance, therefore, combines best practices drawn from experience with traditional key management systems, cloud services in general, and cloud-native key management systems.
For further reading, Key Management in Cloud Services: Understanding Encryption's Desired Outcomes and Limitations provides the foundation for the choice of cloud KMS pattern and general guidance for using KMS whether the KMS is native to a cloud platform, external, self-operated, or yet another cloud service. Additionally, Recommendations for Adopting a Cloud-Native Key Management System provides more specific guidance for choosing, planning, and deploying cloud-native key management systems.
The Cloud Key Management Working Group aims to facilitate the standards for seamless integration between cloud service providers and key broker services. Those interested in participating in future research and initiatives involving cloud key management are invited to join the working group.
More on Washingtoner
Download Cloud Key Management System with External Origin Key now.
About Cloud Security Alliance
The Cloud Security Alliance (CSA) is the world's leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. CSA harnesses the subject matter expertise of industry practitioners, associations, governments, and its corporate and individual members to offer cloud security-specific research, education, training, certification, events, and products. CSA's activities, knowledge, and extensive network benefit the entire community impacted by cloud — from providers and customers to governments, entrepreneurs, and the assurance industry — and provide a forum through which different parties can work together to create and maintain a trusted cloud ecosystem. For further information, visit us at www.cloudsecurityalliance.org, and follow us on Twitter @cloudsa.
Contacts
Media Contacts
Kristina Rundquist for the CSA
kristina@zagcommunications.com
"A cloud service provider's KMS often has strong ties to its other cloud services, and this same cloud-native KMS using EKO can be used with a customer's on-premises technologies and cloud services from other providers. Unsurprisingly, integrating a cloud KMS with an organization's assets spanning traditional private data centers, as well as private and public cloud services in various geographic locations presents a host of challenges," said Paul Rich, co-chair of the Cloud Key Management Working Group and one of the paper's authors. "It's our hope that after reading this document, program and project managers who have been tasked with leading their organization through the selection, planning, and deployment stages of cloud-native KMS using EKO will be able map considerations to their organization."
More on Washingtoner
- Boston Industrial Solutions, Inc. Introduces SAP-G70 Primer for bonding silicone to silicone and other materials
- Tacoma: Capital Ready: Preparing Businesses for Growth in Public Contracting Workshop on August 26, 2026
- Final Week for Spokane Falls Boulevard Survey
- 'Reflections: Enlightening Insights Into the Divine Mystery' — The Latest Book by Philosopher Steven Colborne
- Scott G. Hoy of Hoy Law Earns 11th Consecutive Super Lawyers Selection
The guidance addresses the technical, operational, legal, regulatory, and financial aspects of leveraging a cloud-native KMS using external key origin (EKO) for each of the three stages of the lifecycle (choosing, planning, and deploying). Each aspect is broken down into further considerations and their accompanying justifications. Because cloud-native key management systems using EKO are relatively new, there isn't a large repository of best practices from which to draw. This guidance, therefore, combines best practices drawn from experience with traditional key management systems, cloud services in general, and cloud-native key management systems.
For further reading, Key Management in Cloud Services: Understanding Encryption's Desired Outcomes and Limitations provides the foundation for the choice of cloud KMS pattern and general guidance for using KMS whether the KMS is native to a cloud platform, external, self-operated, or yet another cloud service. Additionally, Recommendations for Adopting a Cloud-Native Key Management System provides more specific guidance for choosing, planning, and deploying cloud-native key management systems.
The Cloud Key Management Working Group aims to facilitate the standards for seamless integration between cloud service providers and key broker services. Those interested in participating in future research and initiatives involving cloud key management are invited to join the working group.
More on Washingtoner
- Spokane: SPD is Seeking Assistance in Locating Missing Adult Male
- Tacoma: Hylebos Bridge Closed to Vehicular Traffic
- L2 Aviation Selected for U.S. Air Force KC-46 CASPER Multiple Award Contract
- Leeds Billboard Campaign Drives 188% Traffic Uplift as AI Enquiries Rise 266% for Loud! OOH
- Sister Files Lawsuit Against Georgia Funeral Home for Alleged Mishandling of Brother's Remains
Download Cloud Key Management System with External Origin Key now.
About Cloud Security Alliance
The Cloud Security Alliance (CSA) is the world's leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment. CSA harnesses the subject matter expertise of industry practitioners, associations, governments, and its corporate and individual members to offer cloud security-specific research, education, training, certification, events, and products. CSA's activities, knowledge, and extensive network benefit the entire community impacted by cloud — from providers and customers to governments, entrepreneurs, and the assurance industry — and provide a forum through which different parties can work together to create and maintain a trusted cloud ecosystem. For further information, visit us at www.cloudsecurityalliance.org, and follow us on Twitter @cloudsa.
Contacts
Media Contacts
Kristina Rundquist for the CSA
kristina@zagcommunications.com
0 Comments
Latest on Washingtoner
- Spokane: SPD Assists Stevens County Sheriff's Office Locate a Reckless Vehicle
- Elevate Your Sneakers With Crep Protect Trek Laces
- Meet Privateer: Tucson's High-Tech Security Force Built With Paramilitary Precision
- James Richey, CEO of JouleFit, to Be Featured on the July Edition of the Longevity Leaders Project
- Dynamic Dachshund Dog Goes Global: Remember Point Launches a New Bilingual Children's Book
- DARPA Selects NRx Pharmaceuticals Defense Subsidiary for Contract Negotiations on FDA-Authorized SPARC-TMS Clinical Trial Advancing Mental Health Care
- The Great Junk Hunt is Coming Home
- From the Racetrack to the Boardroom: Aston Martin and Aramco Formula One Partnership Accelerates Circle8 Group: (N A S D A Q: CIRC)
- Neighbors' Barbershop Launches New Online Haircut Appointment System for Wedgewood & View Ridge Res
- U.N. Committee Reiterates Forced Psychiatric Detention a Human Rights Violation; CCHR Calls on the U.S. to Implement Protections
- Spokane Community Urged to Prepare for Inclement Weather
- Tacoma City Council Receives Positive Streets Initiative Update
- Valgar LLC Launches The Briefing Room: Education Leaders
- Spokane: SPD Respond to Several Underage Drivers on Electric Motorcycles
- New Novel WINCE Takes Unflinching Aim at American Gun Culture and Masculinity
- New Research Puts the Cost of Enterprise Decision Delay at $630 Billion a Year Across the Global 2000
- Cover Story about Matthew Cossolotto – Author of Harness Your PromisePower -- Published in July 2026 Enterprise World Magazine
- Lineus Medical Signs Partnership Agreement with DIMA MedTech to Support Expansion into Italy
- New Research: Deterministic Decompilation of Hermes Bytecode Back to Readable JavaScript
- Lionheart Holdings and KEO Energy Sign Letter of Intent for Proposed Business Combination