CipherStash Proven Data Security
CipherStash · Cybersecurity & IT
Certification per AWS Marketplace.
Evidence tier Source Confirmed · 4 captures on record
What the publisher says
As described on AWS Marketplace.
CipherStash believes organizations shouldn't have to choose between protecting their data or using it to drive growth. Together with AWS, CipherStash gives teams the confidence to collect and use high-value, sensitive data knowing it will be continuously protected, correctly governed, and fully auditable. By combining CipherStash with AWS-native services like KMS, RDS, DynamoDB, Aurora, and IAM, companies can think differently about how they use data to grow their business while still meeting security, compliance, and customer expectations. CipherStash ZeroKMS delivers searchable encryption, identity-aware encryption, and true zero-trust key management, all designed for enterprise scale on AWS. Keys are derived on demand and never stored, reducing storage overhead and improving security, while high-performance key generation delivers up to 10,000 keys per second per node for both single and bulk operations.
Using language-specific SDKs (including TypeScript and Go), developers can enable fully searchable encryption, automatic key rotation, multi-tenant encryption with Keysets, and encryption lock contexts that enforce attribute-based access control using cryptographic proofs.
Show the rest of the publisher’s description (2 more lines)
With identity-bound access controls that integrate with AWS IAM and identity providers like Auth0, Okta, and Clerk, CipherStash ensures both client and server must independently consent to every key operation, and data keys are never shared, making revocation instant.
Real-time access auditing provides full-context logs to help meet SOC 2, HIPAA, and GDPR requirements on AWS, turning data access into a provable, continuously monitored control surface. For specialized configurations and contract pricing for CipherStash on AWS Marketplace, contact sales@cipherstash.com.
Highlights
Highlighted by the publisher on AWS Marketplace.
Searchable encryption with ZeroKMS: Enable high-performance, zero-trust key management with on-demand key derivation.
Identity-aware, zero-trust access controls: Enforce fine-grained, identity-bound access using AWS IAM or providers like Auth0, Okta, and Clerk, with cryptographically isolated multi-tenant encryption and instant key revocation.
Continuous compliance and real-time auditing: Strengthen security posture with full-context audit logs to support SOC 2, HIPAA, and GDPR, while preserving developer productivity with language-specific SDKs that make searchable encryption simple to deploy.
Preview
2 imagesAgent build and provenance
See the full provenance
The layer-by-layer build, the evidence behind each claim, the risk basis and the cross-marketplace links are open to any account. Some rows are disclosed, some the source leaves Unknown; a free account shows you which.
Plans and pricing as listed
1 listed- Units
Refund terms
As stated by the publisher on AWS Marketplace.
Refer to the terms of service.
Sources
Publisher resources
2 linksLinked repositories
Unknown means this listing does not publish a repository. It is not a statement that the code is closed, and a linked repository is not a claim that the publisher wrote it: the registry computes that relationship privately and does not publish it.
Evidence risk is the share of the build you cannot see before you deploy, not a security rating. Sign in to see the layer-by-layer basis for this band.

