Hardware Security Module Aws

With cloudhsm you can manage your own encryption keys using fips 140 2 level 3 validated hsms.
Hardware security module aws. Legacy hsm for on premises encryption key management. A hardware security module hsm is a physical device that provides extra security for sensitive data. This prevents keys from being exposed or duplicated in software. Aws iot greengrass supports the use of hardware security modules hsm through the pkcs 11 interface for secure storage and offloading of private keys.
The aws cloudhsm service helps you meet corporate contractual and regulatory compliance requirements for data security by using dedicated hardware security module hsm instances within the aws cloud. Aws cloudhsm is a cloud based hardware security module hsm that enables you to easily generate and use your own encryption keys on the aws cloud. For years hardware security modules have been used to securely manage encryption keys within an organization s own data centers these hardware appliances which are designed and certified to be tamper evident and intrusion resistant provide the highest level of physical security. This feature is available for aws iot greengrass core v1 7 and later.