This non proprietary cryptographic module security policy for the aws key management service kms hardware security module hsm from amazon web services aws provides an overview of the hsm and a high level description of how it meets the security requirements of fips 140 2.
Hardware security module aws.
This feature is available for aws iot greengrass core v1 7 and later.
Aws iot greengrass supports the use of hardware security modules hsm through the pkcs 11 interface for secure storage and offloading of private keys.
Legacy hsm for on premises encryption key management.
A hardware security module hsm is a physical device that provides extra security for sensitive data.
The aws cloudhsm service helps you meet corporate contractual and regulatory compliance requirements for data security by using dedicated hardware security module hsm instances within the aws cloud.
With cloudhsm you can manage your own encryption keys using fips 140 2 level 3 validated hsms.
For years hardware security modules have been used to securely manage encryption keys within an organization s own data centers these hardware appliances which are designed and certified to be tamper evident and intrusion resistant provide the highest level of physical security.
For example businesses may use an hsm to secure trade secrets that have significant value by ensuring.