A company is developing a highly resilient application to be hosted on multiple Amazon EC2 instances. The application will store highly sensitive user data in
Amazon RDS tables.
The application must:
✑ Include migration to a different AWS Region in the application disaster recovery plan.
✑ Provide a full audit trail of encryption key administration events.
✑ Allow only company administrators to administer keys.
✑ Protect data at rest using application layer encryption.
A Security Engineer is evaluating options for encryption key management.
Why should the Security Engineer choose AWS CloudHSM over AWS KMS for encryption key management in this situation?
sanc
Highly Voted 3 years, 10 months agoacloudguru
3 years, 9 months agodfranco76
3 years, 9 months agodfranco76
3 years, 9 months agoVeeraB
Highly Voted 3 years, 9 months agoOCHT
Most Recent 2 years, 2 months agoArad
1 year, 2 months agoTofu13
2 years, 2 months agoAndrii223
2 years, 2 months agoselim507
2 years, 6 months agoMimikabs
2 years, 8 months agoarae
2 years, 10 months agoarae
2 years, 10 months agobobsmith2000
2 years, 11 months agoserious7sam
3 years, 1 month agolotfi50
3 years, 2 months agoMoreOps
3 years, 4 months agonainakaexam
3 years, 9 months agorefuz
3 years, 9 months agorefuz
3 years, 9 months agoAwsSuperTrooper
3 years, 9 months agosanjaym
3 years, 9 months agoca777
3 years, 9 months agocldy
3 years, 9 months ago