Question: Below is the architecture for a data protection service. It provides a Hold Your Own Key ( HYOK ) solution to enable customers who require

Below is the architecture for a data protection service. It provides a Hold Your Own Key (HYOK) solution to enable customers who require additional data-centric protection measures to address more stringent privacy regulations, such as not storing encryption keys in AWS.
End-of-day point-of-sale (POS) data is downloaded from wholesale/retail partner systems and saved onpremises. Data ingestion layer uses the encryption key held on-premises with Format-Preserving Encryption (FPE) mechanism to tokenize, anonymize, and map data flow for both structured and unstructured data, when additional protection is needed, before the data is sent to AWS. Data consumption layer uses the decryption key held onpremises to decrypt, de-tokenize, and map data flow back to its clear-text form before it is used by the onpremises applications or users.

Step by Step Solution

There are 3 Steps involved in it

1 Expert Approved Answer
Step: 1 Unlock blur-text-image
Question Has Been Solved by an Expert!

Get step-by-step solutions from verified subject matter experts

Step: 2 Unlock
Step: 3 Unlock

Students Have Also Explored These Related Programming Questions!