Amazon CloudHSM
AWS CloudHSM is a cloud-based hardware security module (HSM) that enables you to manage cryptographic keys on dedicated FIPS 140-2 Level 3 validated, single-tenant HSM instances running within your own VPC for regulatory compliance and data security.
Amazon CloudHSM publishes 1 API on the APIs.io network. Tagged areas include CloudHSM, Security, Cryptography, HSM, and Compliance.
The Amazon CloudHSM catalog on APIs.io includes 1 Spectral governance ruleset.
Amazon CloudHSM’s developer surface includes developer portal, documentation, support, engineering blog, developer console, signup flow, YouTube channel, and 21 more developer resources.
Kin Score
APIs 1
Individual APIs this provider publishes, each with its own machine-readable definition.
Amazon CloudHSM API
API for creating and managing CloudHSM clusters and HSM instances for dedicated hardware-based cryptographic key management.
MCP Servers 1
Model Context Protocol servers that expose these APIs to AI agents.
amazon-cloudhsm-mcp.yml
MCP SERVERFeatures 5
Notable capabilities this provider offers.
FIPS 140-2 Level 3 Validated
Dedicated single-tenant HSM instances meeting the highest FIPS validation levels.
Full Key Control
Complete control over cryptographic keys with no AWS access to key material.
Elastic Capacity
Add or remove HSMs from clusters as needed, paying only for active resources hourly.
High Availability
Multi-AZ HSM clusters provide redundancy and automatic failover.
Industry-Standard APIs
Supports PKCS#11, Java JCE, and Microsoft CNG APIs for application integration.
Spectral Rules 1
Spectral governance rulesets for linting and validating these APIs.
Amazon CloudHSM API Rules
SPECTRALSecurity Posture 3
Authentication, domain security, vulnerability disclosure, and trust-center signals.
Use Cases 5
What developers build with this provider.
Data Encryption
Protect sensitive data with hardware-backed encryption keys.
SSL/TLS Offloading
Manage SSL/TLS certificates and private keys in dedicated HSMs.
Certificate Authority
Secure private CA keys for organizations issuing their own certificates.
Database Encryption
Support transparent data encryption (TDE) for Oracle and SQL Server databases.
Regulatory Compliance
Meet PCI DSS, HIPAA, and other regulatory requirements for key management.
Integrations 5
Pre-built integrations with other platforms and tools.
Amazon RDS
Use CloudHSM keys for Oracle TDE and SQL Server TDE in RDS.
AWS KMS
Use CloudHSM as a custom key store for AWS KMS operations.
Amazon VPC
HSM instances run inside your VPC for network isolation.
AWS IAM
Control access to HSM cluster management operations.
AWS CloudTrail
Audit HSM management API calls via CloudTrail.
Resources
Get Started 3
Portal, sign-up, and the first successful call
Documentation 1
Reference material describing how the API behaves
Agent Surfaces 3
MCP servers, agent skills, and machine-readable catalogs
Design & Contract 5
Pagination, idempotency, versioning, errors, and events
Build 2
SDKs, sample code, and the tooling you integrate with
Access & Security 5
Authentication, authorization, and security posture
Learn 1
Tutorials, courses, talks, and written guidance
Operate 4
Status, limits, changes, and where to get help
Commercial 2
Pricing, plans, and the legal terms of use
Company 2
The organization behind the API