Glossary

Term

Description

Azure BYOK

Allows customers to use their own encryption keys in Azure.

ESKM

Utimaco system used to create and manage encryption keys outside Azure.

Customer‑Managed Key (CMK)

An encryption key owned and controlled by the customer.

Azure Key Vault

Azure service that stores and manages encryption keys.

Key Import

Process of importing an external key into Azure Key Vault.

Key Rotation

Creating a new version of a key to replace an old one.

Terms