AWS introduces new VPC Encryption Controls and further raises the bar on data encryption

AWS Launches VPC Encryption Controls
AWS has introduced VPC Encryption Controls to simplify auditing and enforcing encryption in transit within and across Amazon Virtual Private Clouds (VPC). This feature helps demonstrate compliance with encryption standards by monitoring encryption status of traffic flows and identifying resources allowing plaintext traffic. It also enforces encryption across different network paths by automatically enabling hardware-based AES-256 encryption on traffic between multiple VPC resources.
To meet compliance standards like HIPAA and PCI DSS, customers can now monitor, enforce, and demonstrate encryption within and across VPCs. Your information security team can turn it on centrally to maintain a secure and compliant environment, and generate audit logs for compliance and reporting.
What to do
- Turn on VPC Encryption Controls for your existing VPCs.
- Monitor encryption status of traffic flows.
- Identify VPC resources allowing plaintext traffic.
- Generate audit logs for compliance and reporting.
VPC Encryption Controls is now available in multiple AWS Commercial regions. To learn more, please see our documentation.
Source: AWS release notes
If you need further guidance on AWS, our experts are available at AWS@westloop.io. You may also reach us by submitting the Contact Us form.



