Encryption at Rest in Storage Systems in GCP

As part of the security features, Google Cloud Platform encrypts all the data in all storage system. The data is encrypted before storing it in the storage system.

This is how the customer data is encrypted before storing it to storage systems.

Pic 1 : Steps Taken while Encryption

Once the data in encrypted, it can’t be used in this format. So the data needs to be decrypted before using. These are the steps taken when the encrypted data needs to be retrieved from the storage systems.


Pic 2: Steps Taken While Decryption



