One of our clients' strategies was to digitize their entire business, with public clouds playing a significant role. However, to be compliant with todays and future regulations, our customer made a risk-based decision that the encryption keys protecting sensitive (GDPR) information need to be on a separate platform than the data itself.
Our customer pointed out (in accordance with the EDPB's guidelines) that regarding data subject to GDPR, the encryption keys must be on a different platform than the data itself, and they must genuinely be under the client's control. The solution also needed to integrate with multiple public clouds. Our client needed help with the day-to-day administration of the solution due to their small IT department, and they also lacked in-depth knowledge of PKI or encryption practices. Insta Key Vault offered the possibility to use public cloud for these applications while maintaining compliance.
Unlike pure SaaS solutions, Insta was also able to offer much-needed additional support for managing the solution as well as creating the necessary key management processes and practices.