Definition
Encryption Settings is a Setup page where administrators configure Shield Platform Encryption to encrypt sensitive data at rest in the Salesforce database. Administrators can select which fields, files, and attachments to encrypt, manage encryption keys, and control encryption policies across the org.
Real-World Example
The security admin at FinServe Bank enables Shield Platform Encryption on the Social Security Number and Account Number custom fields. She generates a tenant secret, which combines with Salesforce's master secret to create unique encryption keys. Now these fields are encrypted at rest in the database and appear masked to users without the "View Encrypted Data" permission.
Why Encryption Settings Matters
Encryption Settings is a foundational element of Salesforce administration. Admins rely on it to control how users interact with the platform, ensuring that the right people have the right access while maintaining data integrity across the organization. Misconfiguring this area can lead to security gaps, data leakage, or frustrated users who cannot do their jobs.
As your Salesforce org grows and evolves, Encryption Settings becomes increasingly important for governance. It helps administrators enforce business policies without writing code, making it an essential tool for the 80% of Salesforce customization that happens declaratively through clicks, not code.
How Organizations Use Encryption Settings
- •Globex Industries — Configured Encryption Settings to enforce their data governance policies across 500+ users. By setting up proper controls, they reduced unauthorized data exports by over 90% and passed their annual security audit without any findings for the first time.
- •Initech Corp — Used Encryption Settings to streamline their onboarding process for new hires. Instead of manually configuring access for each person, they built standardized configurations that could be assigned in minutes, reducing IT onboarding time from two days to under an hour.
- •Umbrella Co — Applied Encryption Settings as part of a broader org cleanup initiative. By auditing and optimizing their setup, they improved page load times, reduced user confusion caused by unnecessary fields, and made their Salesforce instance more maintainable for the admin team.
