A company is developing a highly resilient application to be hosted on multiple Amazon EC2 instances. The application will store highly sensitive user data in
Amazon RDS tables.
The application must:
✑ Include migration to a different AWS Region in the application disaster recovery plan.
✑ Provide a full audit trail of encryption key administration events.
✑ Allow only company administrators to administer keys.
✑ Protect data at rest using application layer encryption.
A Security Engineer is evaluating options for encryption key management.
Why should the Security Engineer choose AWS CloudHSM over AWS KMS for encryption key management in this situation?
sanc
Highly Voted 3 years, 9 months agoacloudguru
3 years, 7 months agodfranco76
3 years, 7 months agodfranco76
3 years, 7 months agoVeeraB
Highly Voted 3 years, 7 months agoOCHT
Most Recent 2 years agoArad
1 year agoTofu13
2 years, 1 month agoAndrii223
2 years agoselim507
2 years, 4 months agoMimikabs
2 years, 6 months agoarae
2 years, 8 months agoarae
2 years, 8 months agobobsmith2000
2 years, 9 months agoserious7sam
2 years, 11 months agolotfi50
3 years agoMoreOps
3 years, 2 months agonainakaexam
3 years, 7 months agorefuz
3 years, 7 months agorefuz
3 years, 7 months agoAwsSuperTrooper
3 years, 7 months agosanjaym
3 years, 7 months agoca777
3 years, 7 months agocldy
3 years, 7 months ago