Customer managed KMS keys now available for Automated Reasoning checks

Published
October 17, 2025
https://aws.amazon.com/about-aws/whats-new/2025/10/customer-managed-kms-keys-automated-reasoning-checks/

AWS Key Management Service (KMS) Key Support in Automated Reasoning Checks

AWS introduces support for customer managed AWS KMS keys in Automated Reasoning checks within Amazon Bedrock Guardrails. This feature allows you to use your own encryption keys to protect policy content and tests, ensuring full control over key management. Automated Reasoning checks are the first generative AI safeguard that corrects factual errors from hallucinations using logically accurate and verifiable reasoning.

This enhancement is particularly beneficial for organizations in regulated industries such as healthcare, financial services, and government, enabling them to meet compliance requirements for customer-owned encryption keys. For instance, a financial institution can now validate loan processing guidelines while maintaining control over the encryption keys protecting their policy content.

When creating an Automated Reasoning policy, you can now select a customer managed KMS key to encrypt your content instead of using the default key. This feature is available in all AWS Regions where Amazon Bedrock Guardrails is offered: US East (N. Virginia), US East (Ohio), US West (Oregon), Europe (Frankfurt), Europe (Ireland), and Europe (Paris).

What to do

Source: AWS release notes




If you need further guidance on AWS, our experts are available at AWS@westloop.io. You may also reach us by submitting the Contact Us form.

Follow our blog

Get the latest insights and advice on AWS services from our experts.

By clicking Sign Up you're confirming that you agree with our Terms and Conditions.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.