QuestionQ162
Ensuring data protectionYou are assisting a client that intends to migrate its data to Google Cloud. You must recommend an encryption service to manage its encrypted keys. The requirements are:
- The master key must rotate at least once every 45 days.
- The solution that stores the master key must be validated at FIPS 140-2 Level 3.
- For redundancy, the master key must be stored across multiple regions in the US.
Which solution satisfies these requirements?
- A Customer-managed encryption keys with Cloud Key Management Service
- B Customer-managed encryption keys with Cloud HSM
- C Customer-supplied encryption keys
- D Google-managed encryption keys
Community Discussion