Skip to main content

What is CloudHSM?

Securosys CloudHSM is a managed Hardware Security Module (HSM) service. It provides secure, cloud-based HSMs for generating and managing encryption and signing keys used by your applications. Built upon certified Securosys Primus HSM hardware, CloudHSM offers secure, tamper-protected, high performance HSM functionality in a convenient pay-as-you-go model.

Cryptographic Features

Securosys CloudHSM offers a range of cryptographic features:

  • Key management (generation, storage, import, export, destruction)
  • Basic cryptography: encryption/decryption, signing/verification, hashing, MACs
  • Post-Quantum Cryptography
  • Secure random number generation
  • HSM-backed certificate generation
  • Key Attestation
  • Smart Key Attributes for fine-grained authorization
  • Crypto currencies for wallet key derivation and address generation

See the Features & Options page for a full list.

Use Cases

Securosys CloudHSM works with a wide range of applications to support the following use cases (and more):

  • Document and code signing
  • Public Key Infrastructures (PKI) and Certificate Authorities (CAs)
  • Access management (IAM and PAM)
  • Blockchain and crypto currencies
  • TLS handshake offloading
  • Database encryption
  • Bring Your Own Key (BYOK)
  • Achieve regulatory compliance

Browse all integrations

Benefits

  • Pay as you go. Pay monthly for exactly the type of HSM functionality you need. Easily scale up when you need higher performance or more storage.
  • No hardware. No maintenance. Securosys takes care of deploying the HSMs to data centers, managing networking, applying firmware updates, and everything else that comes with operating physical hardware.
  • Global availability. CloudHSM is available in many regions. Choose between global or local HSM clusters (Switzerland, Europe, North America, Asia-Pacific).
  • High Availability. Clusters automatically synchronize their key stores for redundancy and low latency.
  • Broad API support. CloudHSM supports REST, JCE, PKCS#11, and MSCNG.

Service Packages

Securosys CloudHSM can be tailored to your needs. Explore our Service Packages and Features & Options to find the perfect fit.

Getting Started

To create a CloudHSM instance, use the Cloud Console self-service portal, or contact sales for a quote and custom advice. For more details, see the Getting Started guide.

Get started withCloudHSM for free.
Other questions?Ask Sales.
Feedback
Need help?