Zilliz Cloud Introduces Customer-Managed Encryption Keys for Complete Data Control

In a progressive step for data security management, Zilliz—known for Milvus, the prominent open-source vector database—has rolled out its general availability of Customer-Managed Encryption Keys (CMEK) on Zilliz Cloud. This innovative feature grants enterprises a decisive edge in maintaining ownership of their encryption keys, thereby enabling true data sovereignty crucial for AI workloads, especially in highly regulated industries.

With the increasing integration of AI into vital workflows, the nature of the data involved—from customer records and medical images to financial transactions—necessitates heightened security measures that surpass traditional encryption models. Regulatory standards such as GDPR, HIPAA, PCI-DSS, and SOC 2 are evolving, with organizations now expected to exhibit exclusive control over not just their data but the encryption keys that protect it.

"Security teams within regulated sectors are seeking more than just encryption. They demand assurance that no external parties, including their database service providers, have access to their sensitive information. By leveraging CMEK, enterprises can attain the highest level of data sovereignty in a managed service setting, thus clearing a significant hurdle for scaling AI applications in fields like healthcare, finance, and government," remarked Charles Xie, founder and CEO of Zilliz.

Importance of CMEK for Enterprise AI


Zilliz Cloud’s CMEK functionality distinctly separates key ownership from data handling processes, ensuring that Zilliz never comes into possession of or accesses customer encryption keys. This separation yields multiple advantages:

1. Complete Segregation of Duties: While Zilliz engages in data processing, customers retain unilateral control over their encryption keys, fulfilling the stringent requirements that auditors and compliance teams necessitate.
2. Rapid Key Revocation: Terminating a key within AWS Key Management Service (KMS) triggers immediate cryptographic inaccessibility for all corresponding cluster data—no further vendor collaboration is necessary.
3. Centralized Audit Trails: Each instance of key access is meticulously logged in AWS CloudTrail, ensuring seamless integration with pre-existing enterprise security monitoring frameworks.

Setting up CMEK is straightforward, taking only a few minutes via the Zilliz Cloud console. It comes equipped with auto-generated IAM policies alongside support for zero-downtime key rotation, streamlining processes for users.

Availability


As of today, the CMEK service is fully available for Dedicated clusters under the Zilliz Cloud Business-Critical plan, initially focused on AWS infrastructure. Interested enterprises can commence by visiting the Zilliz Cloud console or reaching out to the Zilliz team for personalized deployment discussions.

About Zilliz


Zilliz is at the forefront of revolutionizing data management through its open-source vector database, Milvus. The Zilliz Cloud enhances this capability by offering a fully managed, cloud-native environment designed for scalable, low-latency vector search and hybrid retrieval, enabling organizations to tackle billion-scale workloads with latencies beneath 10ms. Aimed at transforming AI from concept to reality, Zilliz emphasizes performance and cost-effectiveness, assisting engineering teams to transition from experiments to full-fledged production without unnecessary resource commitment. Today, over 10,000 enterprises across the globe trust Zilliz for their intelligent application development needs.

With headquarters in Redwood Shores, California, Zilliz benefits from the support of influential investors including Aramco's Prosperity 7 Ventures, Temasek's Pavilion Capital, Hillhouse Capital, 5Y Capital, and others. Explore more at Zilliz.com.

Topics Business Technology)

【About Using Articles】

You can freely use the title and article content by linking to the page where the article is posted.
※ Images cannot be used.

【About Links】

Links are free to use.