Skip to content
Release: Australia · Updated: 2026-06-24 · Official documentation · View source

Using Field Encryption

Use Field Encryption to manage access to encrypted data on your instances.

There are two methods of encrypting field data:

  • Single module - Permits data encryption using a single encryption module in a deterministic method.
  • Multi module - Permits data encryption using multiple encryption modules in a non-deterministic method. Row Conditions is the new and preferred method of applying multiple modules to a field. Row Conditions applies the multi module capability in a deterministic way.

Field Encryption Experience

The Field Encryption Experience user interface provides a centralized interface for managing Field Encryption modules and configurations. It displays an overview of your encryption configuration, including all modules with their encrypted fields, access policies, and ServiceNow generated keys. You can filter your view and sort displayed data on the Modules and Configurations tabs.

Modules

Each module tile displays its name, state, and configuration status of the encrypted fields, access policies, and active encryption keys. Selecting the configuration steps allows you to complete the figuration of each. Detailed information can be viewed by selecting the module.

Image omitted: modules-tab.png
Field Encryption Experience Modules tab

The default module page provides an introductory video that demonstrates how Field Encryption works with keys, access policies, and encrypted fields. Contextual links to resources are provided in the interface for added assistance.

Configurations

The Configurations tab enables you to find all of your encrypted fields, access policies, and encrypted keys in one place.

Image omitted: configurations-tab.png
Field Encryption Experience Configurations tab

What you can do

The Field Encryption Experience provides a guided workflow that enables you to:

  • Create new Field Encryption modules- Initiate configurations for your data security requirements.
  • Add encryption keys- Use guided steps to generate and add encryption keys.
  • Configure encrypted fields- Specify which fields to encrypt through an intuitive selection process.
  • Define Module Access Policies- Control which users and roles can access encrypted data.

Field Encryption tasks

Use the related links to find information on common Field Encryption tasks.

Parent Topic:Field Encryption

Related topics

Create cryptographic module for Field Encryption

Create a cryptographic specification for Field Encryption

Configure advanced algorithms for Field Encryption Enterprise

Configure properties for customer-supplied keys

Encrypting fields and attachments

Field Encryption Enterprise examples