A New Era of Data Protection

Unlock the Power of External Key Management with DuoKey for AWS XKS. Take control of your encryption keys and strengthen the security of your AWS environment

Secure Your Data with Our Advanced Encryption Solution

Unleash the Power of DuoKey for AWS XKS

DuoKey for Amazon XKS

In an era where data is the new gold, protecting it becomes paramount. DuoKey for AWS XKS is a revolutionary solution that empowers you to take control of your data security. Our module is designed for customers who need to store and use their encryption keys outside of the AWS Cloud or on-premises, ensuring that your sensitive data is always under your control.

Full Control Over Encryption Keys

With DuoKey, you have full control over your encryption keys, ensuring that only authorized personnel can access sensitive data.

Data Protection at Rest

Protect your Data at Rest stored in AWS Cloud using our innovative MPC-based Key Management, where key material never leaves the XKS.

Security and Privacy

DuoKey’s solution uses secure multi-party computation (MPC) rather than traditional hardware security modules (HSM), which guarantees that AWS has no access to any of your encryption keys.

In detail

Enhanced Encryption

Take Control of Data Security with DuoKey for AWS XKS

DuoKey for AWS XKS leverages secure multi-party computation (MPC) to enhance the encryption process in AWS. When an AWS service requests a data encryption key (DEK) to encrypt data at rest, AWS KMS generates a unique DEK and encrypts it using a customer-managed root key. With DuoKey for AWS XKS, the generation of root key material occurs through an MPC process, ensuring that the key material remains protected and confidential. This advanced approach prevents the exposure of the root key material to any single entity, including AWS KMS. The root keys can be customized based on data classification, AWS service, or project tags, and they can be uniquely assigned to each AWS Region. All encryption and decryption operations occur within the secure environment of the MPC, providing enhanced security and confidentiality for data in AWS.

Always client-side encryption is performed

No third-party can ever access your data

Dedicated tenant and vault for storing your keys

Monitor who uses your keys


What our partners think of AWS xks with DuoKey

We appreciate DuoKey's cutting-edge approach to cloud security. Their double key encryption and advanced key management solutions not only enhance data protection but also ensure compliance. Utilizing advanced Multi Party Computation (MPC) protocols developed over decades by our team of acclaimed researchers, DuoKey delivers a superior level of cryptographic security, making it a reliable choice for safeguarding cloud applications and sensitive data.

Ahmet Tuncay - Former CEO, Sepior ApS

Blockdaemon Inc

