Best Encryption Key Management Software - Page 3

How Many Encryption Key Management Software Products Does G2 Track?

Total Products under this Category: 70

Category Stats (Sep 2026)

  • Average Rating: 4.46/5 The average rating of products in this category, based on all submitted ratings
  • Top Trending Product: Thales CipherTrust Data Security Platform (+0.74%) - Among all products in this category, Thales CipherTrust Data Security Platform recorded the largest rating increase compared to last month

Last updated: September 08, 2026

How Does G2 Rank Encryption Key Management Software Products?

Why You Can Trust G2's Software Rankings:

  • 30 Analysts and Data Experts
  • 2,400+ Authentic Reviews
  • 70+ Products
  • Unbiased Rankings

G2's software rankings are built on verified user reviews, rigorous moderation, and a consistent research methodology maintained by a team of analysts and data experts. Each product is measured using the same transparent criteria, with no paid placement or vendor influence. While reviews reflect real user experiences, which can be subjective, they offer valuable insight into how software performs in the hands of professionals. Together, these inputs power the G2 Score, a standardized way to compare tools within every category.

G2 Grid® for Encryption Key Management Software

G2 Grid® for Encryption Key Management Software plotting products by satisfaction and market presence

Highlighted products: Egnyte, Doppler secrets management platform, AWS Key Management Service (KMS), Google Cloud Key Management Service, Thales CipherTrust Data Security Platform, Azure Key Vault, DigiCert ONE, and Akeyless Identity Security Platform.

Underlying data: [Grid® JSON](https://www.g2.com/categories/encryption-key-management/grids.json?focus%5B%5D=egnyte&focus%5B%5D=doppler-secrets-management-platform&focus%5B%5D=aws-key-management-service-kms&focus%5B%5D=google-cloud-key-management-service&focus%5B%5D=thales-ciphertrust-data-security-platform&focus%5B%5D=azure-key-vault&focus%5B%5D=digicert-one&focus%5B%5D=akeyless-identity-security-platform)

Enterprise Encryption Management Platform

KAPALYA empowers organizations and their employees to securely store sensitive files at-rest and in-transit across multiple platforms through a user-friendly desktop and mobile application. This ubiquitous encryption solution protects all your corporate data by seamlessly encrypting files on: • End-points computers/mobile devices. • Corporate servers and public cloud providers. • With KAPALYA, users have the ability to share encrypted files across multiple cloud platforms. • Integrated with Box, Amazon S3 and Microsoft Azure. The main problem Kapalya solves is encryption key management across any organization, regardless of where that organization’s data resides – be it on laptops, desktops, smartphones, tablets, public clouds, virtual desktop environments and enterprise file-servers, with their Encryption Management Platform (EMP). Kapalya allows enterprise organizations to consolidate to a single key management platform vendor solution that can manage millions of keys. • For file and folder encryption, Kapalya’s approach delivers a unique key served per every file and folder, whereas other legacy vendor’s point solutions only manage a single key served per user for all their files. • For encryption, Kapalya’s design for client-side is files are encrypted on the endpoint before upload. This is different from traditional server-side approach where files are encrypted after data is uploaded. • Kapalya’s Cloud Key Management architecture is all about managing your own encryption keys, and not using a cloud provider’s encryption keys; this is even more relevant for organizations that may use multiple cloud vendors. • Kapalya is a Ransomware mitigation solution to minimize data files and folders from getting breached from all enemies.

Average Rating: 4.5/5.0

Total Reviews: 1

Who Is the Company Behind Enterprise Encryption Management Platform?

  • Seller: Kapalya
  • Year Founded: 2015
  • HQ Location: Berkeley, US
  • LinkedIn® Page: www.linkedin.com
    3 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Large

What Are Recent G2 Reviews of Enterprise Encryption Management Platform?

Entrust nShield as a Service

Entrust nShield as a Service is a subscription-based solution for generating, accessing, and protecting cryptographic key material, separately from sensitive data, using dedicated FIPS 140-2 Level 3 certified nShield Connect HSMs. The solution delivers the same functionality as on-premises HSMs and the benefits of a cloud service deployment, without the need to host and maintain the appliances.

Average Rating: 3.5/5.0

Total Reviews: 1

How Do G2 Users Rate Entrust nShield as a Service?

  • Scalability: 8.3/10 (Category avg: 8.7/10)
  • API/Integrations: 6.7/10 (Category avg: 8.5/10)
  • Ease of Use: 8.3/10 (Category avg: 8.8/10)

Who Is the Company Behind Entrust nShield as a Service?

  • Seller: Entrust, Inc.
  • Year Founded: 1969
  • HQ Location: Minneapolis, MN
  • Twitter: @Entrust_Corp
    6,414 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    3,742 employees on LinkedIn®
  • Phone: 1-888-690-2424

Who Uses This Product?

  • Company Size: 100% Large

EnvKey

EnvKey is a software that prevent insecure sharing and config sprawl. Works as an end-to-end encrypted configuration and secrets management.

Average Rating: 4.5/5.0

Total Reviews: 1

How Do G2 Users Rate EnvKey?

  • Regional Support: 6.7/10 (Category avg: 8.6/10)
  • Scalability: 6.7/10 (Category avg: 8.7/10)
  • API/Integrations: 8.3/10 (Category avg: 8.5/10)
  • Ease of Use: 8.3/10 (Category avg: 8.8/10)

Who Is the Company Behind EnvKey?

  • Seller: Envkey
  • HQ Location: N/A
  • Twitter: @EnvkeyConfig
    471 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    1 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Large

What Are Recent G2 Reviews of EnvKey?

Jellyfish by Cogito Group

Jellyfish is designed to simplify the creation and management of digital credentials. Jellyfish Certificate Authority is NIAP-certified and independently validated against Common Criteria and Protection Profile requirements, with certification valid until 2031. It provides verified security for government, Defence, and critical infrastructure environments requiring the highest level of digital trust. Jellyfish enhances your security through increased visibility, greater control, stronger protection, and seamless authentication. Jellyfish is a simple, cost-effective, low-risk, complete solution for connecting identities such as users, devices, services and credentials to each other. Jellyfish allows for enhanced security, better visibility, and simplified and central control. You can improve end-user productivity through seamless authentication, digital signing and automation of processes and changes, reducing your administrative burden. Uses include those in Finance, Healthcare, Education, Defence, and Legal businesses. Really anywhere you need to manage, protect or use credential types like digital certificates, one-time passwords, electronic keys, passwords or even passkeys. Uses include everything from digitally signing documents and code, to securing websites or internet communications as well as securely authenticating to a service or system. Jellyfish is available as a service via SecureSME or as installed software on your site or preferred cloud service. It can act as a simple point solution or as an as a service component for your users, devices and systems even when installed on your site. Users have access to a comprehensive training centre and documentation hub, featuring technical guides on everything from Post-Quantum Cryptography (PQC) to automated enrolment workflows.

Average Rating: 4.8/5.0

Total Reviews: 2

How Do G2 Users Rate Jellyfish by Cogito Group?

  • Ease of Use: 10.0/10 (Category avg: 8.8/10)

Who Is the Company Behind Jellyfish by Cogito Group?

  • Seller: Cogito Group
  • Company Website:
  • Year Founded: 2011
  • HQ Location: Barton, AU
  • Twitter: @CogitoGroup1
    253 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    25 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 50% Small, 50% Large

What Are Recent G2 Reviews of Jellyfish by Cogito Group?

Lockr

Lockr is the first hosted API & encryption key management for modern content management systems like Drupal and WordPress, providing an affordable and easy to deploy solution for all sites to properly manage secrets of all kinds, including API and encryption keys. Lockr's key management solution-as-a-service protects against critical vulnerabilities, delivers best-practice security to help sites comply with many industry regulations, and provides a Defense in Depth approach to securing your data. Lockr is affordable, enterprise-grade key management.

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate Lockr?

  • Ease of Use: 8.3/10 (Category avg: 8.8/10)

Who Is the Company Behind Lockr?

Who Uses This Product?

  • Company Size: 100% Small

What Are Recent G2 Reviews of Lockr?

What Are G2 Users Discussing About Lockr?

Payments Data Privacy Vault

Quick, secure PCI compliance, and much more. As easy as an API. Tokenization, data governance and access control, customer key management, fully customizable data schemas, REST and SQL APIs. Runs in your own dedicated VPC — AWS, GCP or Azure. Unlike other token vaults, with Skyflow you can run search and SQL analytics on fully encrypted data, with no limits on API calls.

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate Payments Data Privacy Vault?

  • Ease of Use: 10.0/10 (Category avg: 8.8/10)

Who Is the Company Behind Payments Data Privacy Vault?

  • Seller: Skyflow
  • Year Founded: 2019
  • HQ Location: Palo Alto, California, United States
  • LinkedIn® Page: www.linkedin.com
    142 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Medium

What Are Recent G2 Reviews of Payments Data Privacy Vault?

PK Encrypt

PK Encrypt® is an enterprise-grade encryption solution designed to provide persistent data protection across IBM Systems. It ensures that sensitive information remains secure, whether at rest, in use, or in motion, by applying robust encryption that stays with the data throughout its lifecycle. This approach addresses the challenges of safeguarding data as it moves beyond the secure confines of IBM Z environments into distributed systems and cloud platforms. Key Features and Functionality: - Persistent Encryption: Utilizes AES-256 encryption standards to maintain continuous protection of sensitive data, regardless of its location or state. - Cross-Platform Compatibility: Ensures seamless data security across various platforms, facilitating encrypted data exchanges between IBM Z and non-z/OS environments. - Seamless Integration: Integrates with IBM's security frameworks, including SAF, CPACF, ICSF, and IBM Pervasive Encryption®, providing a cohesive security experience. - Flexible Encryption Options: Offers encryption using OpenPGP or X.509 certificates, catering to diverse transfer and storage requirements. Primary Value and Problem Solved: PK Encrypt addresses the critical need for robust data security in organizations relying on IBM Systems. By implementing persistent encryption, it mitigates the risks associated with data breaches, unauthorized access, and compliance violations. This solution ensures that sensitive information remains protected throughout its journey across various networks and platforms, thereby enhancing organizational integrity and trustworthiness.

Average Rating: 4.5/5.0

Total Reviews: 1

How Do G2 Users Rate PK Encrypt?

  • Regional Support: 8.3/10 (Category avg: 8.6/10)
  • Scalability: 10.0/10 (Category avg: 8.7/10)
  • API/Integrations: 8.3/10 (Category avg: 8.5/10)
  • Ease of Use: 8.3/10 (Category avg: 8.8/10)

Who Is the Company Behind PK Encrypt?

  • Seller: PKWARE
  • Year Founded: 1986
  • HQ Location: Milwaukee, WI
  • Twitter: @PKWARE
    1,122 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    158 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Medium

What Are Recent G2 Reviews of PK Encrypt?

vSEC:CMS C-Series

vSEC:CMS C-Series is a comprehensive Credential Management System (CMS designed to streamline the deployment and management of both physical and virtual credentials within organizations. It facilitates the entire lifecycle of smart cards, USB tokens, virtual smart cards, and Windows Hello for Business (WHfB credentials, ensuring secure authentication and access control. By integrating seamlessly with enterprise directories, certificate authorities, and various security infrastructures, vSEC:CMS C-Series enhances operational efficiency and bolsters organizational security. Key Features and Functionality: - Credential Lifecycle Management: Manages the issuance, personalization, and revocation of credentials, supporting PKI/PIV, FIDO2 device-bound passkeys, and RFID technologies. - Integration Capabilities: Connects with enterprise directories, certificate authorities, physical access control systems, email servers, and hardware security modules (HSMs to provide a cohesive security environment. - User Self-Service Portal: Empowers users to perform tasks such as PIN changes and credential issuance through a web-based interface, reducing administrative overhead. - Batch Issuance Support: Facilitates the simultaneous issuance of multiple credentials, including FIDO2 devices, enhancing scalability for large organizations. - Advanced Security Features: Supports hardware-bound passkeys, multi-factor authentication, and integrates with leading identity providers like Microsoft, Thales, and Entrust. Primary Value and Problem Solved: vSEC:CMS C-Series addresses the complexities associated with managing diverse authentication credentials across an organization. By automating and centralizing credential management processes, it reduces the risk of security breaches, minimizes administrative costs, and ensures compliance with industry standards. The system's scalability and integration capabilities make it an ideal solution for organizations seeking to enhance their security posture while maintaining operational efficiency.

Average Rating: 5.0/5.0

Total Reviews: 1

How Do G2 Users Rate vSEC:CMS C-Series?

  • Ease of Use: 6.7/10 (Category avg: 8.8/10)

Who Is the Company Behind vSEC:CMS C-Series?

Who Uses This Product?

  • Company Size: 100% Small

What Do G2 Reviewers Say About vSEC:CMS C-Series?

AI-generated summary from verified user reviews

Pros
  • Users find the ease of use of vSEC:CMS C-Series particularly beneficial for coding with CSS and HTML.
Cons
  • Users face upgrade difficulties due to frequent updates, leading to confusion and complications in the system's functionality.

What Are Recent G2 Reviews of vSEC:CMS C-Series?

Absio Broker

Absio moves data security to the top of the stack with application-level data security solutions and consulting services

Who Is the Company Behind Absio Broker?

  • Seller: Absio
  • Year Founded: 2009
  • HQ Location: Denver, US
  • LinkedIn® Page: www.linkedin.com
    3 employees on LinkedIn®

DuoKey Key Management

DuoKey is a Swiss-based company, headquartered in Prilly, which specialises in advanced encryption and key management solutions. The company offers a comprehensive suite of key management and encryption products for various platforms like Microsoft 365, Amazon S3, Salesforce and AWS XKS, featuring Multi-Party Computation (MPC) encryption. This technology ensures secure, distributed encryption to ensure high level of control, confidentiality and security over sensitive data and encryption keys, even in the event of unauthorised access or breach. DuoKey helps businesses worldwide safeguard their confidential information and comply with ever-evolving regulations and industry standards, while maintaining full control over their encryption keys in multi-tenant and vault solutions powered by MPC or Hardware Security Module (HSM). Trusted by leading corporations in the automotive, financial and health industries, DuoKey strives in enhancing data protection, making it an ideal choice for safeguarding sensitive information and ensuring compliance with data security regulations in a simplified and scalable way.

Who Is the Company Behind DuoKey Key Management?

Encryptonizer

Transparent Data Encryption for any application or database on the Windows Platform. Physical, Virtual or Cloud. SQL Server, MySQL, Web Servers, Legacy Applications. With Centralized Key Management. No programming required.

Average Rating: 4.0/5.0

Total Reviews: 1

How Do G2 Users Rate Encryptonizer?

  • Ease of Use: 10.0/10 (Category avg: 8.8/10)

Who Is the Company Behind Encryptonizer?

  • Seller: Netlib Security
  • Year Founded: 1992
  • HQ Location: Stamford, US
  • Twitter: @NetLibSecurity
    547 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    4 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Small

What Are Recent G2 Reviews of Encryptonizer?

Entrust Cryptographic Security Platform

The Entrust Cryptographic Security Platform is a comprehensive cryptographic management solution designed to streamline and enhance the security of digital assets through the integration of various cryptographic services. This platform effectively combines the functionalities necessary for operating a robust public key infrastructure (PKI), managing certificate lifecycles, overseeing key and secrets management, and utilizing hardware security modules (HSMs) within a single, cohesive system. Targeted primarily at organizations that require stringent security measures, the Entrust Cryptographic Security Platform serves a diverse audience, including enterprises, government agencies, and financial institutions. These entities often face challenges related to data protection, regulatory compliance, and the management of cryptographic keys and certificates. By offering a unified platform, the solution simplifies these complex processes, enabling users to maintain a high level of security while ensuring compliance with industry standards. Key features of the Entrust Cryptographic Security Platform include a Compliance Manager that helps organizations adhere to regulatory requirements, and a Certificate Authority that facilitates the issuance and management of digital certificates. The Certificate Lifecycle Management component ensures that certificates are monitored and renewed as needed, reducing the risk of expired certificates leading to security vulnerabilities. Additionally, the Key and Secrets Management feature provides a secure environment for storing and managing sensitive information, while Enhanced PKI Services offer advanced capabilities for managing cryptographic keys. The platform also includes Enrollment Services for efficient certificate requests, a CA Gateway that provides a RESTful API for integration with other systems, and Timestamping services that ensure the integrity of data. The Validation Authority (OCSP) component allows for real-time validation of certificates, enhancing trust in digital transactions. Furthermore, the platform supports Third-Party Cryptographic Assets and provides a Vault Cluster for secure storage, ensuring that organizations can manage all their cryptographic needs in one place. Overall, the Entrust Cryptographic Security Platform stands out in its category by offering a holistic approach to cryptographic management. Its integration of multiple services into a single platform not only simplifies operations but also enhances security and compliance, making it a valuable asset for organizations looking to enhance their security posture and safeguard their digital environments.

Who Is the Company Behind Entrust Cryptographic Security Platform?

  • Seller: Entrust, Inc.
  • Year Founded: 1969
  • HQ Location: Minneapolis, MN
  • Twitter: @Entrust_Corp
    6,414 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    3,742 employees on LinkedIn®
  • Phone: 1-888-690-2424

Entrust KeyControl

Entrust KeyControl redefines cryptographic key and secrets management by combining key lifecycle management and a decentralized vault-based architecture with a comprehensive central policy and compliance management capabilities for a wide range of use cases. The Entrust KeyControl Compliance Manager policy engine provides fine-grained control of your cryptographic keys and secrets, offering full visibility, traceability, compliance tracking, and an immutable audit trail. This can help make it possible for your organization to stay in compliance with laws and regulations around the world that govern data privacy, security, and sovereignty. Multiple KeyControl Compliance Managers can easily be configured to isolate regions or organizational locations as needed. The KeyControl platform also offers a new distributed vault architecture supporting the creation of fully isolated vaults that can help your organization meet your compliance obligations related to geographical data residency and data sovereignty mandates for cryptographic assets, while reducing attack surfaces and providing flexible arrangements for disaster recovery (DR) and contingency planning. There are KeyControl Vaults for: • KMIP • Databases • Secrets Management • SSH Key Management • Privileged Account and Session Management (PASM) • Tokenization • VM Encryption • Cloud Key Management (BYOK) • Cloud Key Management (HYOK)

Who Is the Company Behind Entrust KeyControl?

  • Seller: Entrust, Inc.
  • Year Founded: 1969
  • HQ Location: Minneapolis, MN
  • Twitter: @Entrust_Corp
    6,414 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    3,742 employees on LinkedIn®
  • Phone: 1-888-690-2424

Evertrust Horizon

Evertrust Horizon is a comprehensive certificate lifecycle management and governance tool that provides centralized, automated management of digital certificates across multi-PKI environments. The platform supports all major certificate protocols (ACME, EST, SCEP, Microsoft WCCE) and integrates with both enterprise PKIs (ADCS, EJBCA, Nexus) and public certificate authorities (DigiCert, Entrust, GlobalSign). Key features include automated certificate enrollment and renewal, network-wide certificate discovery, compliance monitoring with customizable cryptographic policies, comprehensive audit trails, and native DevOps integrations for Kubernetes, Terraform, and Ansible environments. Horizon addresses the critical challenge of certificate sprawl and manual management that plagues modern enterprises, where certificate-related outages cost organizations millions in downtime and security incidents. Unlike traditional PKI management tools that lock organizations into specific vendors, Horizon's PKI-agnostic approach enables seamless migration between certificate authorities while maintaining unified governance and automation. The platform's emphasis on digital sovereignty helps organizations reduce geopolitical risks associated with over-dependence on foreign certificate authorities

Who Is the Company Behind Evertrust Horizon?

Exoscale

Exoscale is a European sovereign cloud service provider offering a full range of infrastructure solutions, including virtual machines, S3-compatible object storage, scalable Kubernetes clusters, block storage, managed databases, GPUs, AI services and many more. The platform is designed for simplicity and flexibility, allowing users to deploy resources quickly and manage their cloud environments efficiently, whether through self-service tools or ready-made solutions for operational ease. Exoscale supports a wide range of users, from developers and system administrators seeking automation to IT managers needing reliable hosting or powerful compute capacity. With data centers located in Europe and strong data protection commitments, your data and services are safeguarded against technical issues and external legal risks. Exoscale combines quality with competitive, pay-per-use pricing, so you can scale resources and costs in step with your business growth.

Who Is the Company Behind Exoscale?

  • Seller: Exoscale
  • Year Founded: 2011
  • HQ Location: Lausanne, CH
  • Twitter: @exoscale
    3,529 Twitter followers
  • LinkedIn® Page: www.linkedin.com
    86 employees on LinkedIn®

Who Uses This Product?

  • Company Size: 100% Large

What Are Recent G2 Reviews of Exoscale?

What Are G2 Users Discussing About Exoscale?

Lauren Worth
LW
Researched and written by Lauren Worth
Updated October 3, 2024