All data stored in Google Cloud is encrypted at rest by default, with no action on your part. Google uses envelope encryption: data is encrypted with data encryption keys, which are themselves encrypted with key encryption keys held in Google's internal key management systems. Data in transit between Google data centers and to Google services is also encrypted. For many workloads, this default encryption with Google-owned and Google-managed keys is enough.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 4 more sections, 4 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.