I like the idea
I like the idea that "Google does not retain your keys, and only holds them transiently in order to fulfill your request," but the keys and the clear text data is still exposed exposed in the cloud infrastructure.
Gartner released the report "Simplify Operations and Compliance in the Cloud by Protecting Sensitive Data" in June 2015 that highlighted key challenges as "cloud increases the risks of noncompliance through unapproved access and data breach."
The report recommended CIOs and CISOs to address data residency and compliance issues by "applying encryption or tokenization," and to also "understand when data appears in clear text, where keys are made available and stored, and who has access to the keys."
Ulf Mattsson, CTO Protegrity