We have a major enterprise client leaving our SaaS platform, and their legal team is demanding absolute proof that their data is permanently destroyed. We use AWS, so obviously I cannot just walk into a cloud data center and smash a hard drive. To make it harder, their data is sitting on the same storage drives as our other active customers, so I cannot just wipe the disks.
Our lead architect casually mentioned we should just do crypto shredding to satisfy the legal requirement. I understand the basics of encryption, but how does simply deleting an encryption password actually prove to a lawyer that the data is gone forever?