A company is developing a highly resilient application to be hosted on multiple Amazon EC2 instances. The application will store highly sensitive user data in
Amazon RDS tables.
The application must:
✑ Include migration to a different AWS Region in the application disaster recovery plan.
✑ Provide a full audit trail of encryption key administration events.
✑ Allow only company administrators to administer keys.
✑ Protect data at rest using application layer encryption.
A Security Engineer is evaluating options for encryption key management.
Why should the Security Engineer choose AWS CloudHSM over AWS KMS for encryption key management in this situation?
sanc
Highly Voted 3 years, 7 months agoacloudguru
3 years, 5 months agodfranco76
3 years, 5 months agodfranco76
3 years, 5 months agoVeeraB
Highly Voted 3 years, 5 months agoOCHT
Most Recent 1 year, 10 months agoArad
11 months, 1 week agoTofu13
1 year, 11 months agoAndrii223
1 year, 10 months agoselim507
2 years, 2 months agoMimikabs
2 years, 4 months agoarae
2 years, 6 months agoarae
2 years, 6 months agobobsmith2000
2 years, 7 months agoserious7sam
2 years, 9 months agolotfi50
2 years, 10 months agoMoreOps
3 years agonainakaexam
3 years, 5 months agorefuz
3 years, 5 months agorefuz
3 years, 5 months agoAwsSuperTrooper
3 years, 6 months agosanjaym
3 years, 6 months agoca777
3 years, 6 months agocldy
3 years, 6 months ago