As recently as last month I had a small organization tell me, “I just pay the PCI fines. It is part of my monthly budget and cheaper than doing encryption.” This sort of thinking is making less and less sense these days. Today, we can tell these smaller organizations that encryption and key management is now affordable and that we have a solution that was built specifically for their SQL Server.
I recently sat down with Patrick Townsend, our Founder & CTO and asked him what Microsoft customers should be thinking about when they consider using TDE and EKM on Microsoft SQL Server 2008:
A number of questions pop up right away for Microsoft customers when they start thinking about SQL Server EKM. The first question is usually, “What is the performance impact going to be?” I think Microsoft has done a great job of minimizing the performance impact using TDE. Microsoft says that you will see about a 2-4% additional load on servers when you implement encryption. In a practical sense, and from our customers, I think those are pretty good numbers. There is some impact on doing encryption, but it is probably much less than you might think. The performance impact has been really minimized by Microsoft in this approach. Cell Level Encryption will have a little bit higher performance impact, but most people will use TDE and that has a very good performance profile for encryption.
Finally, an organization needs to look at the affordability of an encryption key management appliance. In the past, I think one of the real barriers for encryption has been the very high cost of acquiring HSM technology. I am very proud of our company for really beating down those costs and making them much more reasonable in terms of creating affordable HSM solutions. With our solution, every mid-market to large-enterprise customer now has HSM technology within their grasp that is affordable and easy to deploy.
Download our podcast “Encryption Key Management with Microsoft SQL Server 2008” to listen to our complete discussion and learn even more about TDE and EKM.