Posted On: Jul 25, 2024

Amazon Step Functions now supports the use of Customer Managed Keys with Amazon Key Management Service (KMS) to encrypt Step Functions State Machine and Activity resources. This new capability enables you to encrypt your workflow definitions and execution data using your own encryption keys.

Amazon Step Functions is a visual workflow service capable of orchestrating virtually any Amazon Web Services service to automate business processes and data processing workloads. Now, with support for Customer Managed Keys, you have more fine-grained security control over your workflow data, making it easier to meet your organization's regulatory and compliance requirements. You can also audit and track usage of your encryption keys with Amazon CloudTrail.

This feature is available in all Amazon Web Services regions where Amazon Step Functions is available, including Amazon Web Services China (Beijing) Region, operated by Sinnet and Amazon Web Services China (Ningxia) Region, operated by NWCD.

To learn more about using Customer Managed Keys with Amazon Step Functions, visit Amazon Step Functions documentation.