The invention discloses a
data processing method and
system, and belongs to the technical field of
data security, and the method comprises the steps that a
service gateway receives a data
encryption request sent by a first user, and routes the data
encryption request to a service cluster, and the data
encryption request carries to-be-encrypted data and a
data access authority; the service clustercalls a corresponding service instance to encrypt the to-be-encrypted data in the plurality of service instances to generate a
ciphertext, and generates an encryption event; the
data access authority,the event number of the encryption event, the encryption
algorithm used for encrypting the to-be-encrypted data and the secret key are correspondingly stored into a
database; an encryption result including the
ciphertext, the identifier of the service cluster and the event number are returned to the
service gateway; and the
service gateway returns the encryption result to the first user. According to the embodiment of the invention, the risk of secret
key leakage of a data producer and a data user can be reduced, so that the
data security is higher; and a guarantee is provided for landing ofa
data access permission minimization principle.