Genesys Cloud - Main

 View Only

Sign Up

  • 1.  Using thrid-party simmetric key mechanisms to encrypt data within payload for payments compliant

    Posted 2 days ago

    Hi Community,

    Do you know if a thrid-party simmetric key mechanisms are supported in Genesys Cloud instead AWS KMS to encrypt the data within payload? If so, I will appreciate you if share and example on how to get this.

    regards,


    #ArchitectandDesign

    ------------------------------
    JORGE LOPEZ
    PRESALES
    ------------------------------


  • 2.  RE: Using thrid-party simmetric key mechanisms to encrypt data within payload for payments compliant
    Best Answer

    Posted 16 hours ago

    Hello Jorge, 

    Yes,  Genesys Cloud does support alt encryption key management besides AWS KMS. There are Genesys Cloud Managed Keys and Local Key Manager

    With GC managed keys the keys are generated and stored internally by Genesys Cloud this means GC owns and manages the keys and no maintenance is required from your side. 

    With LKM you can maintain your own key pairs, this provides more control over encryption keys but you are responsible for key management.

    From your post it looks like LKM is what you are looking for, If you click on the link I posted for LKM it will take you to our resource center page for more details and set up. 

    Cheers, 



    ------------------------------
    Cameron
    Online Community Manager/Moderator
    ------------------------------



  • 3.  RE: Using thrid-party simmetric key mechanisms to encrypt data within payload for payments compliant

    Posted 15 hours ago

    Hi Cameron,

    Thank you for the feedback, and apologies for the confusion.

    I am trying to validate if it is possible to use another mechanisms instead AWS KMS to encrypt the payload data in transit into a secure IVR flow, this is because the confidential information of the clients (PAN information like credit card number, secret code, etc.) is not encrypted into the payload when transit in the TLS transport to Genesys Cloud and for example it can be read by Genesys Care if they need troubleshoot. So for local regulatories compliances the customer want to use doubble encryption at transport level as well as payload level.

    regards,



    ------------------------------
    JORGE LOPEZ
    PRESALES
    ------------------------------



  • 4.  RE: Using thrid-party simmetric key mechanisms to encrypt data within payload for payments compliant

    Posted 13 hours ago

    Hello Jorge, 

    Thank you for the clarification. Currently, GC secure IVR flows are primarily designed to work with the built-in security mechanisms, and there isn't a direct out of box solution for implementing custom encryption mechanisms at the payload level while the data is in transit. This means AWS KMS is the default encryption for payload data. 

    Cheers, 



    ------------------------------
    Cameron
    Online Community Manager/Moderator
    ------------------------------