- Job title
- Sales Manager
- Sector
- Insurance
- Organization type
- two-branch business
- Joined
- Mar 2026
- Message
- 251
I take a daily backup with mysqldump and upload it to AWS S3. But I'm not doing any encryption, the SQL file sits on S3 in plain text. The backup file contains all customer data: first name, last name, phone, email, address, even some credit card numbers. If someone has my AWS access key, can they see everything?
How do I do encryption? Should I encrypt the mysqldump output with OpenSSL, or is there another way? Can I automatically encrypt files uploaded to S3?
If our backups are compromised, what do I need to do? Is it mandatory to notify my customers? Within how many hours do I need to tell them?