You can control and rotate the key material which is used to encrypt your data using Shield Platform Encryption.
Note – As such, there is no Consideration for the Shield Enable Org, You can do it as per your business requirements.
Here are some points which are considered for SOQL
SOQL
You can’t include fields encrypted with the probabilistic encryption scheme in the following SOQL and SOSL clauses and functions:
- Aggregate functions such as MAX(), MIN(), and COUNT_DISTINCT()
- WHERE clause
- GROUP BY clause
- ORDER BY clause
Accounts, Person Accounts, and Contacts
When Person Accounts are turned on, encrypting any of the following Account fields encrypts the equivalent Contact fields and vice versa.
- Name
- Description
- Phone
- Fax
When you encrypt any of the following Account or Contact fields, the equivalent fields in Person Accounts are also encrypted.
- Name
- Description
- Mailing Address
- Phone
- Fax
- Mobile
- Home Phone
- Other Phone
When the Account Name or Contact Name field is encrypted, searching for duplicate accounts or contacts to merge doesn’t return any results.
When you encrypt the First Name or Last Name field on contact, that contact appears in the Calendar Invite lookup only if you haven’t filtered by First Name or Last Name.