{"id":649002,"date":"2013-03-27T00:15:05","date_gmt":"2013-03-27T04:15:05","guid":{"rendered":"http:\/\/gigaom.com\/?p=624688"},"modified":"2013-03-27T00:15:05","modified_gmt":"2013-03-27T04:15:05","slug":"new-amazon-cloudhsm-service-vows-enterprise-grade-security","status":"publish","type":"post","link":"https:\/\/mereja.media\/index\/649002","title":{"rendered":"New Amazon CloudHSM service vows enterprise-grade security"},"content":{"rendered":"<p>Amazon Web Services runs on tons and tons of shared hardware. That&#8217;s a huge benefit in terms of cost but also spooks customers with strict regulatory requirements that prevent them from running their applications on shared infrastructure.<\/p>\n<p>But now, as Amazon tries to woo these picky customers, it&#8217;s trying to replicate some of the perks that come with dedicated, on-premises hardware. That&#8217;s what the\u00a0new<a href=\"http:\/\/aws.amazon.com\/about-aws\/whats-new\/2013\/03\/26\/announcing-aws-cloudhsm\/\">\u00a0CloudHSM<\/a>\u00a0service is about. Traditionally, a Hardware Security Module is a dedicated, hardened box for storing keys and running\u00a0cryptography. Amazon says it can bring that dedicated security to its customers within its infrastructure.<\/p>\n<p>.<\/p>\n<p><a href=\"http:\/\/gigaom.com\/2013\/03\/26\/new-amazon-cloudhsm-service-vows-enterprise-grade-security\/cloudhsm\/\" rel=\"attachment wp-att-624691\"><img decoding=\"async\" alt=\"cloudhsm\" src=\"http:\/\/gigaom2.files.wordpress.com\/2013\/03\/cloudhsm.jpg?w=708\" class=\"aligncenter size-full wp-image-624691\" \/><\/a><\/p>\n<p>In a Tuesday night <a href=\"http:\/\/aws.typepad.com\/aws\/2013\/03\/aws-cloud-hsm-secure-key-storage-and-cryptographic-operations.html\">blog post<\/a>, Amazon said CloudHSM:<\/p>\n<blockquote id=\"quote-brings-the-benefits-3\">\n<p>&#8220;brings the benefits of HSMs to the cloud. You retain full control of the keys and the cryptographic operations performed by the HSM(s) you create, including exclusive, single-tenant access to each one. Your cryptographic keys are protected by a tamper-resistant HSM that is designed to meet a number of international and US Government standards including\u00a0<a href=\"http:\/\/csrc.nist.gov\/publications\/fips\/fips140-2\/fips1402.pdf\" >NIST FIPS 140-2<\/a>\u00a0and\u00a0<a href=\"http:\/\/www.commoncriteriaportal.org\/\" >Common Criteria<\/a>\u00a0EAL4+.&#8221;<\/p>\n<\/blockquote>\n<p>Each CloudHSM provisioned for the customer incurs an upfront, one-time $5,000 fee and then an hourly rate of $1.88 per hour or $1,373 per month. Pricing is <a href=\"http:\/\/aws.amazon.com\/cloudhsm\/pricing\/\">\u00a0here.<\/a><\/p>\n<h2 id=\"bringing-on-prem-perks-to-publ\">Bringing on-prem perks to public infrastructure<\/h2>\n<p>Amazon has made progress in offering more enterprise-grade cloud capabilities with its <a href=\"http:\/\/aws.amazon.com\/govcloud-us\/\">GovCloud <\/a>services and <a href=\"http:\/\/aws.amazon.com\/vpc\/\">Virtual Private Cloud <\/a>capabilities. But still, even some of the biggest AWS customers will only put parts of their workloads on the Amazon cloud. The mission-critical goodies stay on premises or on private clouds.<\/p>\n<p>That&#8217;s why Amazon has to get more acclimated with private cloud capabilities &#8212; observers say one reason that AWS might be <a href=\"http:\/\/gigaom.com\/2013\/03\/19\/report-the-cia-and-amazon-are-in-cahoots-over-secret-cloud\/\">building a private cloud for the CIA<\/a>, as has been reported, is to prove its credibility there. \u00a0And that&#8217;s why we&#8217;ll be seeing more services like this CloudHSM service.<\/p>\n<p> <img loading=\"lazy\" decoding=\"async\" alt=\"\" border=\"0\" src=\"http:\/\/stats.wordpress.com\/b.gif?host=gigaom.com&#038;blog=14960843&#038;%23038;post=624688&#038;%23038;subd=gigaom2&#038;%23038;ref=&#038;%23038;feed=1\" width=\"1\" height=\"1\" \/><\/p>\n<p><a href=\"http:\/\/pubads.g.doubleclick.net\/gampad\/jump?iu=\/1008864\/GigaOM_RSS_300x250&#038;sz=300x250&#038;%23038;c=942352\"><img decoding=\"async\" src=\"http:\/\/pubads.g.doubleclick.net\/gampad\/ad?iu=\/1008864\/GigaOM_RSS_300x250&#038;sz=300x250&#038;%23038;c=942352\" \/><\/a><\/p>\n<p><strong>Related research and analysis from GigaOM Pro:<\/strong><br \/>Subscriber content. <a href=\"http:\/\/pro.gigaom.com\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=624688+new-amazon-cloudhsm-service-vows-enterprise-grade-security&#038;utm_content=gigabarb\">Sign up for a free trial<\/a>.<\/p>\n<ul>\n<li><a href=\"http:\/\/pro.gigaom.com\/2011\/09\/what-amazons-new-kindle-line-means-for-apple-netflix-and-online-media\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=624688+new-amazon-cloudhsm-service-vows-enterprise-grade-security&#038;utm_content=gigabarb\">What Amazon&#8217;s new Kindle line means for Apple, Netflix and online media<\/a><\/li>\n<li><a href=\"http:\/\/pro.gigaom.com\/2010\/02\/a-closer-look-at-microsoft-azure\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=624688+new-amazon-cloudhsm-service-vows-enterprise-grade-security&#038;utm_content=gigabarb\">Microsoft Azure: What It Is, What It Costs and Who Should Care<\/a><\/li>\n<li><a href=\"http:\/\/pro.gigaom.com\/2012\/12\/how-the-mobile-first-world-will-transform-the-data-center\/?utm_source=cloud&#038;utm_medium=editorial&#038;utm_campaign=auto3&#038;utm_term=624688+new-amazon-cloudhsm-service-vows-enterprise-grade-security&#038;utm_content=gigabarb\">How tomorrow&#8217;s mobile-centric data centers will look<\/a><\/li>\n<\/ul>\n<p><img width='1' height='1' src='http:\/\/gigaom.feedsportal.com\/c\/34996\/f\/646446\/s\/2a07d0aa\/mf.gif' border='0'\/><\/p>\n<div class='mf-viral'>\n<table border='0'>\n<tr>\n<td valign='middle'><a href=\"http:\/\/share.feedsportal.com\/viral\/sendEmail.cfm?lang=en&#038;title=New+Amazon+CloudHSM+service+vows+enterprise-grade+security&#038;link=http%3A%2F%2Fgigaom.com%2F2013%2F03%2F26%2Fnew-amazon-cloudhsm-service-vows-enterprise-grade-security%2F\" ><img decoding=\"async\" src=\"http:\/\/res3.feedsportal.com\/images\/emailthis2.gif\" border=\"0\" \/><\/a><\/td>\n<td valign='middle'><a href=\"http:\/\/res.feedsportal.com\/viral\/bookmark.cfm?title=New+Amazon+CloudHSM+service+vows+enterprise-grade+security&#038;link=http%3A%2F%2Fgigaom.com%2F2013%2F03%2F26%2Fnew-amazon-cloudhsm-service-vows-enterprise-grade-security%2F\" ><img decoding=\"async\" src=\"http:\/\/res3.feedsportal.com\/images\/bookmark.gif\" border=\"0\" \/><\/a><\/td>\n<\/tr>\n<\/table>\n<\/div>\n<p><a href=\"http:\/\/da.feedsportal.com\/r\/161770448848\/u\/49\/f\/646446\/c\/34996\/s\/2a07d0aa\/a2.htm\"><img decoding=\"async\" src=\"http:\/\/da.feedsportal.com\/r\/161770448848\/u\/49\/f\/646446\/c\/34996\/s\/2a07d0aa\/a2.img\" border=\"0\"\/><\/a><img loading=\"lazy\" decoding=\"async\" width=\"1\" height=\"1\" src=\"http:\/\/pi.feedsportal.com\/r\/161770448848\/u\/49\/f\/646446\/c\/34996\/s\/2a07d0aa\/a2t.img\" border=\"0\"\/><\/p>\n<div class=\"feedflare\">\n<a href=\"http:\/\/feeds.feedburner.com\/~ff\/OmMalik?a=C17ZxBRSYoM:wny1BfLaxLk:yIl2AUoC8zA\"><img decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~ff\/OmMalik?d=yIl2AUoC8zA\" border=\"0\"><\/img><\/a>\n<\/div>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/feeds.feedburner.com\/~r\/OmMalik\/~4\/C17ZxBRSYoM\" height=\"1\" width=\"1\"\/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Amazon Web Services runs on tons and tons of shared hardware. That&#8217;s a huge benefit in terms of cost but also spooks customers with strict regulatory requirements that prevent them from running their applications on shared infrastructure. But now, as Amazon tries to woo these picky customers, it&#8217;s trying to replicate some of the perks [&hellip;]<\/p>\n","protected":false},"author":7419,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[7],"tags":[],"class_list":["post-649002","post","type-post","status-publish","format-standard","hentry","category-news"],"_links":{"self":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/649002","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/users\/7419"}],"replies":[{"embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/comments?post=649002"}],"version-history":[{"count":0,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/posts\/649002\/revisions"}],"wp:attachment":[{"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/media?parent=649002"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/categories?post=649002"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mereja.media\/index\/wp-json\/wp\/v2\/tags?post=649002"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}