← All topics

Learn free · topic 139

Data Encryption andDecryption

Encryption is a technique to convert the normal text in the email, text message, databases, data lakes etc. into scrambling format to make it unreadable which is also called 'CipherText'.

‘Encryption and Decryption use to convert and revert data from another format to target confidentiality requirement and use Key to read data.’

This is one of the most known terms in the Data World concerning Security and there is hardly any organization in the World that doesn't use Data Encryption to protect its data from black hawks.

Let's take this opportunity to go one level down.

Which Data to Encrypt

  • Data-at-Rest means data sitting in your database, data warehouse, data lake, in-memory in solutions like delta lake, Databricks, snowflake etc. all must be encrypted.
  • Data-at-Transit means when data is moving between devices, such as within private networks, through the Internet, or from laptop to thumb drive etc. all must be in encryption mode.
  • Diagram

Description automatically generatedData-in-Use means, when data is exposed to end-users which can be in a BI tool or on a website or web portals like Facebook, LinkedIn etc.

Decryption is the opposite to Encryption and is used to bring back the data in its original format. There is always a Key generated while Encryption which is also used for Decryption.

Encryption is often applied in two different forms.

  1. Symmetric key, or secret key, uses one key to both encode and decode the information. This is best used for one-to-one sharing and smaller data sets.
  2. Asymmetric, or public-key cryptography, uses two linked keys – one private and one public. The encryption key is public and can be used by anyone to encrypt. The opposite key is kept private and used to decrypt.

Data Encryption Standards

  • Data Encryption Standard (DES)
  • Triple DES (3DES or TDES)
  • RSA
  • Blowfish
  • Twofish
  • Secure sockets layer (SSL)
  • Elliptic Curve Cryptography (ECC)
  • The Advanced Encryption Standard (AES)
  • End-to-end encryption (E2EE)

Benefits of Encryption

  • Data encryption enables more secure communications.
  • Against Hacking which is a serious risk
  • Encryption supports data integrity.
  • Regulations require it.
  • Data encryption protects intellectual property.
  • It can enhance trust and provide a competitive edge.

Implementing Encryption, is a process with several important elements:

  • Collaborative strategy: Approach the development of a data encryption strategy as a collaborative effort.
  • Data classification: Define a data classification policy that divides information into risk groups.
  • Protect decryption keys: Decryption keys and certificates should always be centrally managed according to set protocols.
  • Key management: Encryption key lifecycle management refers to centrally managing keys from the time they are created until they are deactivated and terminated.
  • Control and limit access: Only authorized users should be able to access sensitive data.
  • Use SSL decryption technology: Encryption alone is not enough, SSL technology affords your insight into sensitive data at points of egress and ingress, where it is vulnerable.

Finished reading? Test yourself with 10 questions on this topic.

Go to the questions →

From I Am Datapedia! by Mustafa Qizilbash, published here free by the author. Nothing about your reading is stored.