
Explanation:
Utilizing a cloud-based key management service (KMS) that supports automatic key rotation is the most efficient and secure option for implementing an advanced encryption key management system in a lakehouse architecture dealing with highly sensitive data. Here‘s why:
This approach is the most efficient and secure for managing encryption keys in a lakehouse architecture with highly sensitive data.
Ultimate access to all questions.
In a lakehouse architecture handling highly sensitive data, what is the best approach to implement an advanced encryption key management system that allows for periodic key rotation without disrupting services?
A
Develop a custom key rotation application that uses dual keys temporarily during the rotation period for both old and new data access.
B
Store all encryption keys in a secure on-premises hardware security module (HSM), manually updating lakehouse configurations during rotation periods.
C
Utilize a cloud-based key management service (KMS) that supports automatic key rotation and seamless integration with the lakehouse storage layer.
D
Implement a manual process where new keys are generated and applied to data at rest during scheduled maintenance windows.
No comments yet.