Specifying an encryption standard for data at rest and in motion
Whether your data is stored on-premises, in cloud infrastructure, on SaaS applications, or you have a hybrid architecture of all these, you should be encrypting your data. This includes utilizing some form of encryption of data at rest and using secure or encrypted channels for the transmission of data in motion. This section will provide information and solutions that you can use for specifying and recommending encryption for your company’s data. Let’s start with encryption at rest.
Encryption at rest
Encryption at rest protects the data when it is in the state of being stored. This is the data that resides in a database or a storage account. Having this data encrypted even though it is not being used or transmitted is important. If someone can gain access to a database or storage account and copy this data to a local source, unencrypted data could then be read and exposed. If this data is encrypted...