design cloud key management and secrets handling including the key hierarchy with scope and ownership and rotation state, envelope encryption and key policy, secret store selection and per-consumer access policy, rotation with dual-slot cutover, short-lived workload credentials replacing static acce
design cloud key management and secrets handling including the key hierarchy with scope and ownership and rotation state, envelope encryption and key policy, secret store selection and per-consumer access policy, rotation with dual-slot cutover, short-lived workload credentials replacing static access keys, configuration layering and precedence across environments, secret delivery into compute and