

# Key management
<a name="nx-security-key-management"></a>

To encrypt your AWS End User Messaging data, AWS End User Messaging uses internal AWS KMS keys that the service owns and maintains on your behalf. We rotate these keys on a regular basis. You cannot provision and use your own AWS KMS or other keys to encrypt data that you store in AWS End User Messaging.