Skip to main content
Offline·Progress is saved on this device and syncs the next time you open the app online.
Cryptography & PKI

HSM

Hardware Security Module

A tamper-resistant device that generates, stores, and manages cryptographic keys.

An HSM is a hardened, tamper resistant device that generates, stores, and uses cryptographic keys so private keys never leave the protected boundary in plaintext. It accelerates cryptographic operations and is central to PKI, certificate authorities, and high assurance signing. Tamper detection can zeroize keys if physical attack is attempted, supporting compliance requirements. Compared with a TPM, which is a per device chip for platform integrity, an HSM is a dedicated, often higher capacity appliance for enterprise key management.

Memory hook

Hardware Security Module: a separate, scalable box that generates and manages keys for many systems.

Related terms

Looking HSM up is step one. Getting tested on it is step two.

A free account opens all 4 Domain 1 objectives, 271 exam-style questions with a lesson and a lab on each, a placement check that skips what you already know, and a dated plan. No card.

Not affiliated with or endorsed by CompTIA.