Key Management & Encryption
Who holds the keys controls the system — storage, disks, databases, secrets, and service-to-service trust.
Overview
Encryption protects data at rest and in transit while key management determines who can decrypt it. Cloud services like AWS KMS
and Azure Key Vault centralize secrets, certificates, and cryptographic keys. This pillar covers foundational cryptography labs,
cloud-native encryption, and advanced PKI/key lifecycle projects that support secure cloud architectures.
Completed Labs
No completed labs yet — this pillar is currently being built.
In Progress Labs
Cryptography Concepts
Securing Data with Encryption Software
PKI Management with Windows
Full-Disk Encryption with Intune BitLocker
Encrypting AWS EBS Volumes & Snapshots
RDS Database Encryption & Backups
Advanced Key Management Labs
Higher-level PKI, cloud encryption, and secrets management labs aligned with cloud security engineering.