6

Fortanix unveils AWS integration for centralized key management

 1 year ago
source link: https://www.csoonline.com/article/3681848/fortanix-unveils-aws-integration-for-centralized-key-management.html
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.

Fortanix unveils AWS integration for centralized key management

Multicloud users have a new option for encryption key management across platforms, with the news that Fortanix has now integrated AWS support.

By Jon Gold

Senior Writer,

CSO | Nov 30, 2022 12:09 pm PST

4 encryption keys
Thinkstock

Cloud security vendor Fortanix has updated its Data Security Manager to incorporate support for AWS’ external encryption key store system, adding another major public cloud vendor to the list of those supported for the company’s key management system.

With this week's update, Fortanix, which already supports this type of cloud key management system in Azure and Google Cloud, is trying to solve one of the major security and regulatory problems posed by multicloud environments. Every public cloud provider has its own management service for digital keys, which generally don’t integrate with services provided by other vendors. That’s a serious headache for companies whose IT departments use products hosted in different clouds.

Using Fortanix’s system, however, users can segregate keys from operational workloads being run in AWS, which solves regulatory problems posed by GDPR and other data protection requirements, as well as offering an additional buffer of security between a workload—which could be compromised—and the security keys needed to access related data.

“By using Fortanix DSM as a centralized, external key store, customers maintain full custody of their keys with complete control over the data encryption policies on AWS or other cloud providers,” the company explained in a statement. “This control includes defining where the keys reside, access, and policy control.”

Key management and multicloud security is messy, according to Gartner senior director analyst Brian Lowans. It’s a mixed world, in terms of what different cloud and security vendors need to provide in order to offer reasonable security, which sometimes doesn’t always match up with what they actually do offer.

“The detail gets messier as you go into it,” he said. “The approach by the cloud service providers like AWS so far is that they’ve been very helpful in creating their own key management service, so they have leveraged a particular hardware security module and use that to create the key management service that’s then offered to customers.”

What Fortanix has done, however, offers an independent, integrated option for the multicloud users of the world, letting them leverage their own technology to provide key management as a service.

“That means they can help customers [utilize] key management systems in their own network … as well as help customers deliver and use [key management systems] across a variety of cloud service providers,” said Lowans.

Jon Gold covers IoT and wireless networking for Network World.

Follow

Copyright © 2022 IDG Communications, Inc.


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK