Cloud KMS – Google Cloud’s key management service.

Google Cloud Key Management Service provides a centralized platform for managing cryptographic keys and performing cryptographic operations. It supports both symmetric and asymmetric key algorithms, automatic key rotation, and version control. Cloud KMS features integration with Cloud HSM for FIPS 140-2 Level 3 compliance, IAM for access control, and audit logging through Cloud Audit Logs. The service includes support for customer-managed encryption keys (CMEK), key import capabilities, and integration with most Google Cloud services. It provides automatic replication across regions and supports both hardware and software protection levels.