AWS

Fortanix for AWS

Secure, manage, and automate AWS KMS Keys with full key lifecycle management across on-premises and multicloud environments. 

Fortanix AWS Hero

Overview

Organizations are increasing their data encryption initiatives, with security and privacy regulations such as the GDPR and Schrems II acting as a catalyst. Managing keys across on-premises and multicloud infrastructures at scale introduces significant operational complexity and potential compliance gaps.

Fortanix gives AWS users a centralized solution to create, back up, and manage their encryption keys, no matter if data is used on AWS, on-premises, or on another cloud platform.

With Fortanix, AWS users get full custody of their root keys and hyper-secure storage on FIPS-140-2 Level 3 certified HSMs.

fortanix aws overview

Fortanix Solution

Fortanix DSM serves as an AWS external key store, allowing organizations to migrate data to the cloud while maintaining full control and ownership of their encryption keys. Backed by FIPS 140-2 Level 3 certified HSMs, keys are stored securely and separately from cloud data.

With centralized key lifecycle management across on-premises and cloud environments, Fortanix DSM ensures sole key custody remains with the customer—meaning neither Fortanix nor AWS can access the protected data, even under government subpoenas such as those issued via the CLOUD Act.

aws diagram

Elevate your cloud data security with Fortanix

Now available on AWS Marketplace! Customers can now make use of their AWS commitments and use their registered partners/resellers for the purchase.

data
Fortanix DSM SaaS

Fortanix DSM SaaS offers Key Management, Encryption, HSM, Secrets Management & Tokenization. The solution supports all use cases and professional services.

Digital
Fortanix DSM Virtual Appliance

Consumed as a Private (custom) offer OR public consumption (Hourly billing), the solution supports software specific requirement. 

secure
Fortanix Confidential Computing for AWS Nitro

Fortanix Confidential Computing Nitro Enclaves Compute Node Agent is deployed on AWS Nitro EC2 Instance to manage the compute node and applications running in nitro enclaves.

Benefits

key
Get full key control

Fortanix DSM users can bring their own keys (BYOK) into AWS, or fully control key lifecycle by using DSM as an external key store, while decreasing the complexity of compliance and operations across hybrid multicloud infrastructures.

Simple
Simplify AWS key management

Fortanix helps customers easily manage the lifecycle of all AWS keys. Unique enhancements include the ability to automatically rotate keys in AWS KMS that are copies of the keys on the DSM platform, reducing risk and streamlining operations.

encrypt
Immediate Access Blocking

Fortanix DSM provides a kill-switch functionality so in the event of a detected compromise, administrators can immediately block access to data-at-rest on the AWS platform with just a couple of clicks to change permissions for any, or specific, instances and locations.

Cloud
Manage multicloud keys from a single pane

Fortanix Data Security Manager (DSM) allows you to manage and control multi-cloud keys in a completely cloud-agnostic way. Organizations can keep full custody of their keys in a FIPS 140-2 level 3 certified HSM.

logs
Get centralized control and audit of keys

Fortanix DSM enables organizations to apply uniform enforcement of granular access control policies, including quorum approvals to minimize the risk of high-impacting administrative actions. Centralized control also enables a vantage point for audit logs to track key provenance.

Resources

Prev Image
resource image

EBook

Data Security and Sovereignty in AWS Cloud with Fortanix DSM
resource image 2

Solution Brief

AWS External Key Store (XKS) with Fortanix DSM
resource image 1

On-Demand Webinar

AWS + Fortanix: Secure Cloud Data with External Keys
Next Image
See how Fortanix strengthens and accelerates your enterprise compliance workflows in a personalized demo.
Fortanix-logo

4.6

star-ratingsgartner-logo

As of August 2025

SOC-2 Type-2ISO 27001FIPSGartner LogoPCI DSS Compliant

US

Europe

India

Singapore

3910 Freedom Circle, Suite 104,
Santa Clara CA 95054

+1 408-214 - 4760|info@fortanix.com

High Tech Campus 5,
5656 AE Eindhoven, The Netherlands

+31850608282

UrbanVault 460,First Floor,C S TOWERS,17th Cross Rd, 4th Sector,HSR Layout, Bengaluru,Karnataka 560102

+91 080-41749241

T30 Cecil St. #19-08 Prudential Tower,Singapore 049712