Cybersecurity

Demystifying Encryption

Table of Contents

How encryption works and why itโ€™s critical for Cybersecurity

With ground-breaking technology becoming more publicly available each day, securing sensitive data is becoming an increasing threat in the Cyber Security landscape. Encryption is a key part of cyber security, and it’s important to understand what it is and how it works. To keep data and documents confidential and accessible only by the intended users, encryption plays a critical role in achieving this. Encryption is embedded into so many products you may not realise you are already using it regularly! So, what is Encryption and how does it work?ย 

What is Encryption?

Encryption is the process of encoding information. In simpler terms, it is the process of converting plain text into a code or cipher using keys. By encrypting data, anyone who manages to intercept the information cannot read the contents without the cryptographic key. Sort of like a secret code only you and the other person know and understand. Encryption is similar to a cryptogram word puzzle, in which you are given a key to decipher encoded text:ย 

Ciphertext: “QFJNIPNRXI MY OWYV”ย ย 

Key:ย 

Q = c, F = l, J = o, N = u, I = d, P = g, R = a, X = r, M = i Y = s, O = b, W = e, V = tย 

How does it work?ย 

There are a few different types of encryptions and each one behaves slightly differently, but ultimately data is encrypted and decrypted using specified cryptographic keys.ย ย 

The most common form of encryption is โ€˜Symmetric Encryptionโ€™. As the name suggests, symmetric encryption is where one key is used to both encrypt and decrypt the information. This method of encryption is very fast and efficient, however, the major flaw with symmetric encryption is that the cryptographic key needs to be securely sent to the recipient for them to decode the message. The symmetric key must not be exposed publicly otherwise all confidentiality is breached.ย ย 

โ€˜Asymmetric Encryptionโ€™ (also known as Public-key encryption) behaves like symmetric encryption, except a pair of keys are used instead of one. A public key is used to encrypt the data and a private key is used to decrypt it. This example below will help explain how it works in a real-world scenario:ย 

Alice would like to send a message to Bob. This message contains sensitive information, such as home addresses and payment details. Alice needs to ensure the message is delivered confidentially and cannot be intercepted.ย 

Bob generates a public key – private key pair. The public key is used to encrypt the data and can be shared with anyone without causing a security risk. The private key can decrypt any message that has been encrypted with the public key. The private key should not be shared with anyone.ย 

Alice encrypts her private message with Bobโ€™s public key and emails the encoded message to Bob.ย 

Bob receives the email and uses the private key from the pair to decrypt the message and receive Aliceโ€™s original message securely.ย 

Asymmetric encryption provides a more secure method of encryption but comes with the drawback of being less efficient and slower.ย 

What should my next steps be?ย 

Now you have a better grasp of what encryption is, you are probably curious about how this impacts you and what changes you can make going forward.ย 

Fortunately, thanks to compliance and regulations, most software must include a base level of encryption. However, it is always best to check that devices and applications are using a high level of encryption by default, especially if they are regularly used. This can usually be found within the โ€˜Aboutโ€™ or โ€˜Settingsโ€™ section.ย 

One step you can take to include more encryption within your network is making use of Virtual Private Networks (VPNs). A VPN is typically a paid service that will encrypt all internet traffic from a device, providing a higher level of security when using online services. This can assure you that an attacker is not intercepting any sensitive information or communications across the internet.ย 

You may also wish to migrate to more encryption-focused messaging platforms like WhatsApp or ProtonMail. These messaging/email services utilise end-to-end encryption to secure the content of any messages or emails from unwanted readers. You can take this another layer deeper by using third-party encryption tools such as VeraCrypt to encrypt the individual files you wish to send to another person.ย 

In summary, it is important to understand how you can safely send information to another person and the tools you can use to achieve this in your personal or work life.ย 

How does Sentinel use encryption?

At the core of CloudGuardโ€™s protection is Sentinel. Sentinel is Microsoftโ€™s SIEM solution, which in laymanโ€™s terms is a security tool that ingests data, monitors, and alerts on any suspicious information it discovers.ย 

ย To provide robust security and protect customer data, Sentinel uses encryption in various methods to achieve this:

  • Encryption at Rest: Sentinel uses Azure Storage Service Encryption (SSE) for any data stored within Azure. SSE uses AES-256 for its encryption method.
  • Encryption in transit: For data being transferred between Azure and/or Sentinel, Transport Layer Security (TLS) encryption is implemented for end-to-end encryption meaning the data is encrypted at the source, transmitted, and only decrypted once delivered to the recipient.
  • Azure Key Vault: Within Azure, a service named Key Vault allows users to store and manage encryption keys. Key Vault is a secure key management system that uses Hardware Security Modules (HSMs) to store keys.ย ย 

How does CloudGuard utilise encryption?ย 

Within the CloudGuard service, encryption is baked into every aspect. We use encryption for our messaging platforms, emails, web applications, sharing files, and much more! When handling passwords or sensitive information, CloudGuard will always configure the highest level of encryption available for the service (Typically AES-256 and TLS 1.2 and 1.3 where available).ย ย 

The most common areas CloudGuard makes use of encryption is within our databases and data transmission. Databases can contain an assortment of sensitive and critical information which could be fatal in the hands of an attacker. Using the strongest Advanced Encryption Standard (AES-256), we are able to protect data stored on disks within the database servers. This gives us the confidence that our data is secured and resilient to any attacks on our databases.ย 

Data transmission requires a different type of encryption to ensure the communications are secured whilst the data is being transferred over the internet. Data transmission can consist of sharing data or messages typically over the internet or private network. To secure data in transit, a connection is established and authenticated between the sender and recipient. The data is then encrypted and transferred between the two users. CloudGuard enables the securest level of TLS to achieve this goal and transfers data through VPN tunnels (private networks) where possible to assure the dataโ€™s confidentiality.ย ย 

Keeping your information safe is CloudGuardโ€™s highest priority and utilising encryption allows us to retain dataโ€™s confidentiality and ensure it is only visible to those it is intended for.ย 

Author: Liam Houlihan
Share:
Author: Liam Houlihan
Share:

Related Resources

Who Owns Your Data? No CISO, No Problem: Microsoft Purview for SMBs
AI Cybersecurity: 8 Things Your IT Teams Need to Know In 2026
AI Cybersecurity: 8 Things Your IT Teams Need to Know In 2026 AI is changing how attackers work and how organisations manage risk. When deciding how your organisation should embrace AI, cybersecurity should be top of the consideration list. For IT leaders, a priority is control of AI tools that...
Microsoft Purview Licensing: The breakdown SMBs actually NEED
Microsoft Purview Licensing Explained: Business Premium vs E3 vs E5 If you’ve looked into Microsoft Purview and come away confused about which license you actually need, you’re not alone. It’s the single biggest blocker CloudGuard sees when SMBs and mid-sized organisations start a data governance project, not the technology, the...
Microsoft Project Perception, Explained: Why Multi-Model Security Changes Everything
Why Multi-Model Security Changes Everythingย  Six years building an agentic SOC analystย (ANSEL)ย teaches you something quickly: more data isย critical butย not the answer. Better understandingย through contextย of what it means is.ย ย  Microsoft Project Perceptionย is built on exactly that insight.ย Itโ€™sย not another security product.ย Itโ€™sย a different wayย of thinking about how AI should reason,ย with context, consequence, and...
A glowing vendor evaluation checklist on a dark purple background
Why Your Vendor Evaluation Process Is Failing You (do this BEFORE YOU SIGN)
Most vendor evaluation processes are built to survive procurement, not to protect you eighteen months after go-live. Here’s the gap almost nobody catches before signing. Outlining The Problem The majority of security technologies need 90 days just to establish an accurate behavioural baseline and fair comparison. Please remember your existing...
two men talking on a podcast posted on linkedin with a red arrow pointing towards a deepfake
Why Social Engineering Always Works: How Hackers Use Phishing & Deepfakes
Weโ€™ve all done the training, so why are attackers still getting through? Attackers no longer rely on bad spelling or suspicious links, they use AI-generated deepfakes and psychological profiling to manipulate people with astonishing precision. By exploiting the brainโ€™s emergency response system, they trigger fear, urgency, or authority to override...
Dark purple background with claude logo and words pro, team and enterprise.
Claude Business Security: Choosing the Right Account for SMBs
When I shared my last article, a few people got in touch asking for a more practical follow-up, specifically around how small teams can use Claude Pro without putting business data at risk. This piece goes step by step through exactly that. Understand what you’re actually adopting Claude Pro is...
Two analysts looking surprised. Purple cyber background with phishing hook.
What Happens After a Phishing Attack? A Real Microsoft 365 Incident Walkthrough
If your organisation thinks a password reset or MFA alone are enough, think again. In this phishing attack breakdown by CloudGuard’s SOC team, Conor and Jon reveal the reality behind an actual breach involving a UK law firm, exposing how hackers use four methods to regain access long after initial...
purple background with computer that says threat from the field in cartoon like design
Cyber Threat Trends Q1 2026: Data Theft, AI Attacks and Emerging Risks
Executive Summary Every 90 days, we review the latest cyber threat trends to identify what IT leaders should learn, where resilience gaps are widening, and what practical actions organisations should take next.ย  The first quarter of 2026 has been intense. The UK threat picture is not defined by one single...
Get In Touch

Our Cybersecurity Services Can Instantly Improve Your Businessโ€™ Security Posture

Complete the form to find out more about any of our one-off or managed cybersecurity services. Not seeing what youโ€™re looking for? Our cybersecurity consultants and MXDR experts are always on-hand to provide the guidance and support you need.