Amazon Web Services

Enabling data encryption for data at rest and in transit

Data encryption is a critical aspect of security in the cloud. This technical reference guide will provide you with a step-by-step process for enabling data encryption for data at rest and in transit.
Loved by leading security teams around the world.

Data encryption is a critical aspect of security in the cloud. This technical reference guide will provide you with a step-by-step process for enabling data encryption for data at rest and in transit. 

1. Enabling encryption for data at rest:

  • To enable encryption for data at rest in AWS, you can use services such as Amazon S3, Amazon EBS, and Amazon RDS.
  • To enable encryption for data stored in Amazon S3, navigate to the S3 dashboard in the AWS Management Console and choose the bucket you want to enable encryption for.
  • In the Properties tab, choose the Default encryption dropdown and select the encryption method you want to use.
  • To enable encryption for data stored on Amazon EBS volumes, navigate to the EC2 dashboard in the AWS Management Console and choose the volume you want to enable encryption for.
  • Choose the Actions dropdown, and then choose Encrypt.
  • To enable encryption for data stored in Amazon RDS, navigate to the RDS dashboard in the AWS Management Console and choose the database you want to enable encryption for.
  • In the Configuration tab, choose the Edit encryption support button and follow the on-screen instructions to enable encryption.

2. Enabling encryption for data in transit:

  • To enable encryption for data in transit in AWS, you can use services such as Amazon S3, Amazon RDS, and Amazon VPC.
  • To enable encryption for data transferred to and from Amazon S3, navigate to the S3 dashboard in the AWS Management Console and choose the bucket you want to enable encryption for.
  • In the Properties tab, choose the Default encryption dropdown and select the encryption method you want to use.
  • To enable encryption for data transferred to and from Amazon RDS, navigate to the RDS dashboard in the AWS Management Console and choose the database you want to enable encryption for.
  • In the Configuration tab, choose the Edit encryption support button and follow the on-screen instructions to enable encryption.
  • To enable encryption for data transferred within your Amazon VPC, you can use an AWS VPN or an AWS Direct Connect.
  • To set up an AWS VPN, navigate to the VPC dashboard in the AWS Management Console and choose VPN Connections.
  • Choose Create VPN connection, and then follow the on-screen instructions to set up an encrypted VPN connection.
  • To set up an AWS Direct Connect, navigate to the Direct Connect dashboard in the AWS Management Console and choose Create connection.
  • Follow the on-screen instructions to set up an encrypted Direct Connect connection.

By following these steps, you can enable encryption for data at rest and in transit in your AWS environment to protect sensitive data.

Connect, Protect, Defend

Streamline your approach to security posture management throughout your entire company.
Get a Free Security Assessment
By installing or using the software, you acknowledge and agree to be bound by the Terms of Service.