CoreWeave launches Remote Key Encryption to keep customer keys off its cloud
CoreWeave unveiled Remote Key Encryption, a service that encrypts customer data on its infrastructure with keys the company never holds. Encryption runs client-side using the customer's own KMS or HSM, so CoreWeave stores only ciphertext. Limited availability is planned for later this year, with IBM as launch partner.
- Keys are generated and stored in the customer's KMS or HSM, never imported into CoreWeave
- First release protects data on CoreWeave AI Object Storage via HashiCorp Vault
- Rotation, expiration and revocation follow the customer's existing schedule and tooling
- Limited availability later this year, with IBM as launch partner
Read next
Security