
Key Vault streamlines the key management process and enables you to maintain control of keys that access and encrypt your data. Protecting your keys is essential to protecting your data in the cloud.Īzure Key Vault helps safeguard cryptographic keys and secrets that cloud applications and services use.
Examples are transfer over the network, across a service bus (from on-premises to cloud and vice-versa, including hybrid connections such as ExpressRoute), or during an input/output process. In transit: When data is being transferred between components, locations, or programs, it's in transit.
At rest: This includes all information storage objects, containers, and types that exist statically on physical media, whether magnetic or optical disk. Best practices for Azure data security and encryption relate to the following data states: To help protect data in the cloud, you need to account for the possible states in which your data can occur, and what controls are available for that state. Opinions and technologies change over time and this article is updated on a regular basis to reflect those changes. The best practices are based on a consensus of opinion, and they work with current Azure platform capabilities and feature sets. This article describes best practices for data security and encryption.