Your own encryption keys for Zoom data stored in the cloud: you hold the key, not the platform.
Customer Managed Key inverts the usual arrangement: the data is stored in the Zoom cloud, but the key it is encrypted with is generated and held by you. Without your key there is nothing to decrypt.
The key can be stored in AWS KMS, Azure Key Vault, OCI Vault or on your own premises. Generation and decryption requests go through the Zoom key broker, and access to the data can be tracked and audited.
Protection covers meeting recordings, transcripts, AI Companion summaries, voicemail, messages, search metadata and a number of other assets.
This is exactly what your own cryptographic perimeter means: you do not simply trust the vendor, you technically limit its access.
The key is generated and stored on your side, not in the platform's cloud.
Support for AWS KMS, Azure Key Vault, OCI Vault and on-premises hosting.
Recordings, transcripts, AI Companion summaries, voicemail, messages, metadata.
You can see who accessed the encrypted data and when.
Technical rather than contractual control over the vendor's access.
Keys are connected and managed through the Zoom admin portal.
They needed stronger data protection in a difficult geopolitical environment.
We'll give you a remote demo Monday to Friday, 10:00–16:00 Moscow time, answer all your questions and provide trial access so you can explore the system yourself.
Please note: we work with legal entities only.