top of page

SEC 1. How are you encrypting and protecting your data at rest?


A traditional security control is to encrypt data at rest. AWS supports this using both client-side (e.g., SDK-supported, OS-supported, Windows Bitlocker, dm-crypt, Trend Micro SafeNet, etc.) and server-side (e.g., Amazon S3 ). You can also use Server-Side Encryption (SSE) and Amazon Elastic Block Store Encrypted Volumes, etc.


Best practices:


ï‚· Data at rest is encrypted using AWS service specific controls (e.g., Amazon S3 SSE, Amazon EBS encrypted volumes, Amazon Relational Database Service (RDS) Transparent Data Encryption (TDE), etc.).
ï‚· Data at rest is encrypted using client side techniques.
ï‚· A solution from the AWS Marketplace or from an APN Partner.

© 2023 by Name of Site. Proudly created with Wix.com

  • Facebook App Icon
  • Twitter App Icon
  • Google+ App Icon
bottom of page