Solution brief

Using Fortanix Data Security Manager with Hashicorp Vault

Download Solution Brief

Request a Demo

hero section

Market Need

Digital business transformation is built on a foundation of digital trust. Best practices for digital trust rely on cryptography to protect sensitive data.

Today, data goes unprotected because cryptography is often under-utilized, misconfigured, and siloed between different environments and groups within an organization. 
To build digital trust, accelerate digital transformation, and minimize the risk of data breaches, it is critical that businesses use a pervasive encryption approach that standardizes and centralizes cryptographic operations so that encryption becomes universal across all applications, infrastructure, and digital information.

Fortanix DSM provides virtually impenetrable security to your data, keys and secrets. Secured with Intel® SGX and built using Fortanix’s patented Runtime Encryption® Technology, Fortanix DSM runs every operation in HSM, ensuring complete control over your keys, data and secrets.

Comprehensive audit logs provide insight into how secrets are being used, helping you meet compliance.

Solution Overview

HashiCorp Vault centrally secures, stores, and tightly controls access to tokens, passwords, certificates, and encryption keys for protecting secrets and other sensitive data using a UI, CLI, or HTTP API. Organizations use HashiCorp Vault to solve security challenges as they adopt cloud and DevOps.

Fortanix DSM delivers unified HSM and Key Management capabilities to securely generate, store, and use cryptographic keys and certificates.

The combined solution of Fortanix DSM and Hashicorp Vault Enterprise, delivers enhanced security and availability for encryption keys used to access secrets to ensure confidentiality, integrity, and availability of critical enterprise data.

DSM leverages Runtime EncryptionTM and Intel® SGX in a FIPS 140-2 Level 3 HSM to deliver deterministic security for encryption keys. The joint solution maximizes the security of encryption keys used to protect enterprise credentials and passwords to help guard against threats exploiting insider privileges.

Vault Enterprise communicates with Fortanix DSM using PKCS #11 interface. Fortanix’s integration with enterprise vault provides the following functionalities:

  • Master Key Wrapping: Vault protects its master key by transiting it through the Fortanix HSM powered by Intel® SGX to provide maximum security and comply with regulatory requirements.
  • Automatic Unsealing: Vault stores its HSM-wrapped master key in storage, allowing for automatic unsealing.

diagram

See how Fortanix strengthens and accelerates your enterprise compliance workflows in a personalized demo.
Fortanix-logo

4.6

star-ratingsgartner-logo

As of August 2025

SOC-2 Type-2ISO 27001FIPSGartner LogoPCI DSS Compliant

US

Europe

India

Singapore

3910 Freedom Circle, Suite 104,
Santa Clara CA 95054

+1 408-214 - 4760|info@fortanix.com

High Tech Campus 5,
5656 AE Eindhoven, The Netherlands

+31850608282

UrbanVault 460,First Floor,C S TOWERS,17th Cross Rd, 4th Sector,HSR Layout, Bengaluru,Karnataka 560102

+91 080-41749241

T30 Cecil St. #19-08 Prudential Tower,Singapore 049712