Encryption in Transit protects data while it travels over a network - between your application and an AWS service, between AWS services, or between your users and your application. The most common protocol is TLS (Transport Layer Security).
Protecting stored data by encrypting it on disk so that it cannot be read without the encryption key, even if the storage media is compromised.
A digital certificate that enables HTTPS by establishing encrypted connections between clients and servers, managed in AWS through ACM.
Cryptographic algorithms designed to resist attacks from quantum computers, available in AWS KMS, CloudFront, ACM Private CA, and Secrets Manager since 2025.
Toc Consulting: AWS Security & Cloud Architecture
Our team helps engineering teams secure and architect AWS the right way: assessment in week one, a prioritized action plan in week two.