Terminology Index
Glossary
1801 terms
Showing 577-608 of 1801 terms
Encryption at Rest (Cloud)
Encrypting data stored in cloud services, disks, databases, object storage, so it is unreadable without the keys, protecting it if the underlying storage is accessed improperly. A cloud engineer enables and manages it across services.
Encryption at rest protects stored cloud data by keeping it encrypted on disk, with the cloud platform handling encryption transparently or the customer controlling keys. A cloud security engineer ensures it is enabled across storage, databases, and volumes, and decides on key control (provider-managed versus customer-managed). It is a baseline control for data protection and compliance, defending against improper access to the storage layer itself.
Introduced in: Cloud Security Engineer Fundamentals
Examples
- Enabling encryption on a cloud object-storage bucket and its database.
- Choosing customer-managed keys for at-rest encryption of sensitive data.
- Confirming all storage volumes are encrypted at rest as a baseline.
No related terms linked yet.
