"Hold your own key" as a Service

"Hold your own key" as a Service

Cloud2
Cloud2

12 Feb 2023

2 min read

Amazon Web Services (AWS) has recently launched its new External Key Store (XKS) solution, providing customers with a hold-your-own-key option for extended data encryption. This key management service (KMS) provides customers with a higher level of control over their data and helps them meet compliance requirements like GDPR etc. Cloud2 is proud to present the most advanced XKS solution on the market. The solution is based on technology from Thales and its LUNA HSM, which has set the standard for advanced and secure encryption for many years. Cloud2’s XKS solution is fully managed and offers many of the same benefits as Cloud2’s other managed services.

Enables Key Store outside AWS

With AWS XKS solution, customers are able to control their own encryption keys outside AWS and manage access to their data, while still taking advantage of AWS’ advanced encryption and security features. The process works by allowing customers to create their own encryption keys in their own Hardware Security Module (HSM), which is approved by AWS. Then, the customers can register their HSM in AWS KMS and use their own keys to encrypt their data in AWS services such as S3, RDS, and EBS. One of the major benefits of the XKS service is that it gives customers the ability to maintain full control over their keys, even when they are stored in AWS. This means that customers can choose to move the keys to another HSM or even take them out of AWS completely, if necessary. XKS also provides advanced security features like multi-factor authentication and audit logging to ensure that only authorized individuals have access to the keys. This helps customers maintain compliance with data protection and security regulations. With Cloud2’s XKS solution, customers can be sure that their data is protected in the best possible way and meets the high security standards set by both Danish and EU law. For more information on XKS, and Cloud2’s managed services, please visit the following links: XKS link #block-yui_3_17_2_1_1728391364825_4855 {–sqs-block-content-flex: 0; } Cloud2 Managed Services #block-yui_3_17_2_1_1728391364825_4520 {–sqs-block-content-flex: 0; }

Cloud2

Cloud2

Field Notes

Related Articles

Continue exploring cloud technology and best practices

"Hold your own key" as a Service

Security

2 min read

One SSL renewal used to last a year. By 2029 you'll need eight.

SSL/TLS certificate validity is shrinking fast — from 398 days to 47. If your team is still renewing by hand, the math no longer works.

Read more
"Hold your own key" as a Service

AI

Cloud

3 min read

Run Claude in your own AWS environment: Cloud2 is now an Anthropic Authorised Reseller

Nordic organizations can now purchase Anthropic's Claude AI models directly from Cloud2 via Amazon Bedrock with EU data residency and enterprise-grade governance from day one.

Read more
"Hold your own key" as a Service

Modernization

8 min read

SQL Server 2016 ends in July. Your modernization clock just started.

On 14 July 2026 SQL Server 2016 reaches end of extended support, Windows Server 2016 follows in January 2027. Here is what actually happens, the real options, and the steps to take before the clock runs out.

Read more

Services

Related Services

Explore Cloud2 services related to this topic

Ready to discuss your cloud strategy?

Let's talk about how Cloud2 can help your organization.

Field Notes

Stay ahead of the cloud

Practical insights on AWS, Azure, security and AI. Delivered to your inbox.

No spam. Unsubscribe any time.