Download Factsheet

HSM AS A SERVICE -
Your Online Key Vault

CloudsHSM is a hardware security module (HSM) cloud service. It allows users to generate encryption keys, use them and store them securely without having to worry about time-consuming things like evaluation, setup, maintenance and updating their own HSM. Instead experienced experts take care of it. CloudsHSM uses HSM from the manufacturer, who also supplied the devices for the Swiss Interbank Clearing.

Ready to use



Always up-to-date and latest feature level

Managed and operated by experts

An easy integration


Excellent price/performance ratio

The highest data protection


HSM Cluster

Running a HSM cluster professionally requires a wide range of know-how and resources. Policies and processes need to be defined, whilst the lacked know-how rarely belongs to the core competences of IT officers. But there is a solution for the organizations that neither have the skills nor the possibility to acquire them: They can outsource the task to the experts of Securosys CloudsHSM.

Read more
Operated in Switzerland

The HSM as a service consists of a partition on a Primus HSM cluster we design and manufacture ourselves in Switzerland. We even operate these highly secure and highperformance devices in Switzerland, thus meaning the data are subject to Swiss data protection law being one of the strictest in the world. The partitions are securely separated and can be discretely controlled, configurated and complemented with various applications.

CloudsHSM Factsheet

What makes Cloud HSM unique

Hardware Security Module as a Service. Made in Switzerland. Without backdoors. In an ultrasecure datacenter in the Swiss alps. Operated by the experts who have designed and manufactured the HSM for the Swiss payment clearing and settlement system.

Expert-Know-how
Built and hosted by experts who developed and produced HSM for Swiss payment transactions.
Up to date
Services and security measures always up to date. Experts operate the devices and update the firmware.
For Generalists

No in-depth knowledge of HSM required. The HSM are managed by Securosys experts.

Ready to use

The system is pre-configured and ready for 24/7 operation within minutes.

No Effort
No evaluation and setup project necessary. Clouds HSM is a turnkey service and can be activated immediately. Our experts operate the devices and keep them always up to date with the latest security standards.
Excellent Price-Performance Ratio
Low investment costs, low total cost of ownership. The service eliminates initial costs and does not tie up capital. In case of higher demand, more power can be obtained.
Highest Security

The data is located in Switzerland, ergo strong data protection, the highest political stability. The HSMs are located in ISO 27001-compliant data centers and are certified according FIPS-140-2 Level 3.

Easy to Integrate
The service fits seamlessly into existing systems. The connection is made via PKCS#11, openSSL, JCE/JCA or Windows CNG interfaces.

The Advantages of Cloud HSM at a Glance

Features

Ready to use

No setup or hardware evaluation. You don't lose any time for system configuration. The system is preconfigured for 24/7 service and operationable within hours.

No time and effort

Our experts run the devices and keep the system and security up to date. Your own resources don't need any complementary formation and don't do any installations or maintenance. Thus you have more time for your core business.

Secure legal system

The data are subject to the Swiss law that assures one of the highest levels of data protection worldwide.

Highest level of security hardening:

Your data is kept in a Primus Hardware Security Module. Access by our experts or other Clouds HSM users is impossible. Data protection is always guaranteed.

Highest availability

The HSMs are located in two datacentres. Every location features double internet access (multi-homed), thus guaranteeing no downtime.

Highest trustworthiness

We use our own ultrasafe Securosys Primus HSM that we have developed and manufactured in Switzerland. It is the very same platform the operators of the Swiss banking system (SIX/SIC) use and trust in.

Highest standards

Our devices are being certified for FIPS-140-2 Level 3 and are located in data centers complying to ISO 27001. Thus they comply to most of the applications.

Security policy à la carte

You don't have to hammer out a security policy from scratch, because the service is set up with a best practice policy. You can change the policy according to your needs.

Best price-performance ratio

With our service you have no initial costs, nor capital lockup. Operation is outsourced. Cost of ownership is reduced enormously.

Simple integration

The service fits seemlessly into existing systems.

Many options

Applications are manyfold. Connection is established by PKCS#11, open SSL, JCE/JCA, or CNG interface (for MS windows).

Easy migration from the cloud

In case you decide to leave our service to insource your HSM you may do so by activating simply your on-premise backup HSM.

Ultra-Secure Devices

Clouds HSM is a service backed by the high performance and high security Primus HSM from Securosys.

Certification

The devices are in the final stage of certification according to FIPS140-2 Level 3.

Complete Isolation

Access to the key storage by other Clouds HSM users or the Clouds HSM experts is impossible.

Strong Redundancy

The data remains accessible even in the event of an elementary damage. They are mirrored at geographically separate locations.

Failure-Free Operation

Storage in two data centers and backup location guarantees maximum availability. Each location has dual-homed connection to the internet.

LibC Swiss PKI

libC Technologies provides expert software development in IT security, authentication, encryption and digital signature. Their product SwissPKI is a feature rich, fully integrated Public Key Infrastructure service which helps expand your enterprise security: from large scale deployments to embedded or CloudsHSM solution, the service provides all necessary out-of-the box components to increase your digital security in a safe, simple and quick way.


SwissPKI-1_0


logo-libC-360x73-transparent_2

Keyon

Keyon is a leading provider of solutions and services in the area of IT-security and custom software development. The company has been operating since 1999 and has customers in the area of finance, insurance, trade, industry, telecommunication and federal government.


keyon_logo

CREALOGIX

CREALOGIX is a Swiss software house that operates globally. It belongs to the leading companies in the area of digital banking, digital payment and digital learning. CREALOGIX develops and implements innovative Fintech solutions.

crealogix_logo_schwarz

Packages

ES (Enterprise Standard)
ECO (Economy SMB/ SME)
SBX (Sandbox)
Platinum
Platform
2x2 partitions (synchronized) in 2 data centres
2x1 partition (synchronized) in 2 data centres
2x1 partitions (in debug mode) in 2 data centres
Dedicated HSMs hosted in data centres
Management
Platform administrated by Securosys experts
Platform administrated by Securosys experts
Platform administrated by Securosys experts
Platform administrated by Securosys experts
Performance and capacity
Up to 1'200 Sig./Min.   |   200 MB
Up to 600 Sig./Min.  |   100 MB 
No guarantee   |   200 MB

Up to 9'000 Sig./Min.  |   Partition of 200MB*    

Monthly Pricing
EUR 999 / Month
EUR 599 / Month
EUR 299 / Month
On Request
ES (Enterprise Standard)
ECO (Economy SMB/ SME)
SBX (Sandbox)
Platinum
Platform
2x2 partitions (synchronized) in 2 data centres
2x1 partition (synchronized) in 2 data centres
2x1 partitions (in debug mode) in 2 data centres
Dedicated HSMs hosted in data centres
Management
Platform administrated by Securosys experts
Platform administrated by Securosys experts
Platform administrated by Securosys experts
Platform administrated by Securosys experts
Performance and capacity
Up to 1'200 Sig./Min.   |   200 MB
Up to 600 Sig./Min.  |   100 MB 
No guarantee   |   200 MB

Up to 9'000 Sig./Min.  |   Partition of 200MB*    

Monthly Pricing
EUR 999 / Month
EUR 599 / Month
EUR 299 / Month
On Request
*Additional options available: extended support, additional partitions for Platinum
ES (Enterprise Standard)
ES is the package for companies who put the highest requirements on availability, redundancy of data storage, capacity and performance. It includes a user space (Partition) of 200MB, which is kept synchronously on 4 physical HSM in geographically separated data centers. ES users benefit from comprehensive support.
Contact us for ES
ECO (Economy SMB/SME)
ECO is the package for small and medium-sized enterprises (SMB/SME). It offers exactly the performance you need at an affordable price. A user space (Partition) includes 100MB in a cluster of 2 synchronous HSM. ECO is also suitable as a cost-effective backup for on-permise HSM.
Contact us for ECO
SBX (Sandbox)
The Sandbox system is designed as an integration and test environment. It offers the same user space (Partition) as ES, synchronous on 2 HSM, however without any performance guarantee. SBX Clouds HSM works in a debug mode and allows users and Securosys Support to access detailed device logs. The ideal setup to test and prepare any integration with Primus-HSM. In addition, any update to the HSM firmware in the Clouds HSM system will always be rolled out first to the SBX. This enables users of our ES and ECO packages to verify their applications before a general system update.
Contact us for SBX

Contact Us

Contact us if you want to know more about our products and offering.

Contact us if you want to know more about our products and offering.