Data Encryption and Secrets Management Flashcards
1
Q
Allows you to generate and store encryption keys
A
Key Management Service (KMS)
2
Q
Keys managed by AWS
A
Encryption keys
3
Q
Used to create encrypted EBS volumes
A
KMS
4
Q
Hardware security module used to generate encryption keys
A
CloudHSM
5
Q
Dedicated hardware for security that generates and manages your own encryption keys
A
CloudHSM
6
Q
Manages and retrieves secrets (passwords or keys) that encrypts secrets at rest
A
Secrets Manager
7
Q
Allows you to retrieve database credentials with an API call
A
Secrets Manager