Cloud HSM
E697165
Cloud HSM is a cloud-based hardware security module service that provides dedicated, tamper-resistant cryptographic key storage and operations for enhanced security and compliance.
Observed surface forms (2)
| Surface form | Occurrences |
|---|---|
| AWS CloudHSM | 1 |
| Google Cloud HSM | 1 |
Statements (48)
| Predicate | Object |
|---|---|
| instanceOf |
cloud-based hardware security module service
ⓘ
cryptographic key management service ⓘ |
| aimsAt |
enhanced security
ⓘ
regulatory compliance ⓘ |
| benefit |
elastic capacity for cryptographic workloads
ⓘ
reduced operational burden compared to on-premises HSMs ⓘ |
| designedFor |
high-assurance key management
ⓘ
isolation of cryptographic keys from application layer ⓘ secure key lifecycle management ⓘ |
| feature |
auditing of cryptographic operations
ⓘ
high availability deployment options ⓘ logical isolation of customer keys ⓘ role-based access control ⓘ scalability in the cloud ⓘ secure key backup ⓘ |
| hasCharacteristic |
cloud-based
ⓘ
dedicated hardware security module ⓘ multi-tenant cloud environment integration ⓘ tamper-resistant ⓘ |
| integratesWith |
cloud applications
ⓘ
containerized workloads ⓘ virtual machines ⓘ |
| mitigates | risk of key exposure in software-only key management ⓘ |
| provides |
cryptographic key operations
ⓘ
cryptographic key storage ⓘ hardware-backed key protection ⓘ |
| supports |
cryptographic hashing
ⓘ
decryption operations ⓘ digital signature generation ⓘ digital signature verification ⓘ encryption operations ⓘ key generation ⓘ key unwrapping ⓘ key wrapping ⓘ |
| supportsConcept |
hardware root of trust
ⓘ
least privilege access ⓘ separation of duties ⓘ |
| targetUser |
application developers
ⓘ
compliance officers ⓘ security administrators ⓘ |
| usedFor |
meeting compliance requirements
ⓘ
offloading cryptographic operations ⓘ protecting cryptographic keys ⓘ securing sensitive data ⓘ |
| usedIn |
enterprise applications
ⓘ
financial services ⓘ government workloads ⓘ healthcare ⓘ |
Referenced by (3)
Full triples — surface form annotated when it differs from this entity's canonical label.
this entity surface form:
AWS CloudHSM
this entity surface form:
Google Cloud HSM