We are excited to announce native support for AWS Key Management Service (AWS KMS) with Oracle Autonomous AI Database on Oracle Database@AWS, giving customers greater flexibility, stronger security alignment, and centralized key governance across cloud environments, allowing customers to keep encryption keys entirely within AWS while running Oracle Autonomous AI Database.

AWS KMS integration adds to Oracle’s Key management options: Oracle Key Vault, OCI Vault, and Oracle managed keys.

This enhancement enables organizations running Autonomous AI Database Dedicated to use AWS KMS to protect their data, meeting security, compliance, and regulatory requirements while maintaining the simplicity and performance of Autonomous AI Database.

Why this matters

As enterprises adopt multi-cloud strategies, security teams increasingly want consistent key ownership and control across platforms.

With AWS KMS integration, customers can now:

  • Retain full control over encryption keys using AWS native tooling
  • Align database encryption with existing AWS security and compliance policies
  • Centralize auditing, rotation, and access controls for keys

This brings Autonomous AI Database seamlessly into enterprise AWS security architectures.

Key benefits

Customer-controlled encryption

You own and manage your encryption keys in AWS KMS.

Multi-cloud security consistency

Use the same key management model across AWS and Oracle environments, reducing operational complexity.

Security and Compliance

Achieve security and compliance goals using AWS recommended practices for key ownership, isolation, and lifecycle management. With AWS KMS, you can meet data residency requirements and govern encryption keys according to organizational policies across AWS.

 Zero application changes

Encryption is handled transparently at the database layer, no changes required to applications or schemas.

Getting started

  1. Create an AWS IAM role and configure the identity domain to allow the IAM role association to Autonomous VM Clusters
  2. Create and register an AWS KMS Customer Managed Key 
  3. Enable AWS KMS integration for Autonomous VM Cluster and start using it for Autonomous Container databases

Learn More

For more details, refer to Autonomous AI Database documentation and AWS Key Management Service.