Entrust

Entrust provides cryptographic security solutions that help organizations protect sensitive data, manage digital identities, secure cryptographic keys, and prepare their infrastructure for evolving security requirements.

nShield Hardware Security Modules

Entrust nShield hardware security modules provide a hardened, tamper-resistant environment for generating, protecting, and managing cryptographic keys used for encryption, digital signing, authentication, and other security-critical operations.

Move cryptographic keys out of software and protect them within secure hardware. nShield HSMs support key generation, encryption, digital signing, authentication, and protection of critical root and certificate authority keys.

Entrust offers network-attached, PCIe, portable, and cloud-delivered nShield HSM options to support on-premises, cloud, and hybrid deployment requirements.

The nShield Security World architecture provides a unified framework for managing cryptographic keys, policies, users, and groups of HSMs through a consistent administrative environment.

It supports scalable HSM operations, granular access controls, secure backup, and centralized policy administration.

nShield solutions support evolving cryptographic requirements, including preparation for post-quantum cryptography. Optional CodeSafe capabilities also enable sensitive application code to operate within the trusted HSM boundary.

Public Key Infrastructure (PKI)

Entrust PKI solutions help organizations secure data, identities, devices, applications, and digital transactions. They support encryption, authentication, digital signatures, and management of certificate-based identities across a wide range of enterprise environments.

Manage certificate-based identities throughout their lifecycle and enable trusted authentication, encryption, and digital signatures across users, devices, applications, and services.

Deploy and operate PKI through on-premises, managed, cloud-based, or as-a-service models according to organizational requirements for security, scalability, cost, and operational control.

PKI as a Service

Deploy a scalable, cloud-delivered PKI without managing the underlying infrastructure internally.

Cryptographic Security Platform PKI

Operate a software-based, containerized PKI platform that can be deployed across on-premises, cloud, and hybrid environments.

Managed PKI Services

Entrust specialists manage PKI operations according to established security practices, helping reduce internal complexity and operational burden.

Download Datasheet

Certificate Authority

Establish a scalable certificate authority for trusted digital signatures, encryption, authentication, and identity management.

Evaluate quantum-safe scenarios and plan migration strategies using classical, composite, hybrid, and post-quantum approaches according to organizational requirements and industry developments.

Key Management

Entrust Cryptographic Security Platform Key Manager provides centralized visibility and governance for cryptographic keys and secrets across distributed, cloud, and multi-cloud environments.

Automate essential lifecycle processes for encryption keys, including secure storage, backup, distribution, rotation, revocation, and recovery.

Apply consistent policies and monitor cryptographic assets through centralized governance while allowing keys and secrets to remain protected in distributed vaults.

Manage keys and secrets across geographically distributed, on-premises, hybrid, and multi-cloud environments while supporting organizational policies, regulatory requirements, and data-sovereignty controls.

Integrate centralized key management with databases, backup and recovery systems, virtualized infrastructure, and nShield HSMs to strengthen protection for critical workloads and data.