TryTRY
BuyBUY
  • newsletter
  • contact
  • corporate
  • careers
Utimaco
de
TRYour free HSM simulator
BUYget a quote
  • home
  • solutions
  • products
  • services
  • blog
  • downloads
  • partners
  • company

Utimaco Portal

Here you will find everything you need as a partner and customerLogin required

  • home
  • solutions
    • industries
      • banking and financial services
        • acquirer
        • card scheme
        • issuer
      • government
        • federal government
      • cloud
        • cloud-based innovation
        • multi-cloud agility
      • connected car (V2V)
      • automotive solutions
      • road infrastructure (V2I), toll collection & ITS
      • industrial IoT & manufacturing
      • energy & utilities
      • lottery & gaming
      • media & entertainment
      • telecommunications
    • applications
      • authentication
      • blockchain
      • code signing
      • database encryption
      • document signing
      • key injection
      • post-quantum crypto agility
      • public key infrastructure (PKI)
        • EJBCA
      • random number generator (RNG)
    • compliance
      • certifications & approvals
        • Common Criteria (CC)
        • FIPS 140-2
      • compliance & standardization
        • FISMA, FedRAMP, and FICAM
        • Certificate Policy of the Smart Metering PKI
        • eIDAS
        • GDPR
        • PCI DSS
        • Privacy Shield
  • products
    • general purpose HSM
      • SecurityServer Se Gen2
      • SecurityServer CSe
      • Block-safe
      • CryptoServer CP5 (eIDAS & CC)
      • CryptoServer Cloud
      • TimestampServer
      • Q-safe
    • payment HSM
      • Atalla AT1000
      • PaymentServer Se Gen2
      • PaymentServer CSe
      • Secure Configuration Assistance (SCA)
      • QuickStart Services
      • u.cloud – Atalla PaymentHSMaaS
      • u.trust 360
    • Software Development Kit (SDK)
      • CryptoServer SDK
      • CryptoScript SDK
    • key management
      • Enterprise Key Management
    • HSM simulators
      • Block-safe HSM simulator
      • CryptoServer CP5 simulator (eIDAS & CC)
      • SecurityServer simulator
      • Q-safe HSM simulator
    • form factor
      • LAN appliance
      • PCIe card
      • cloud, “HSM as a Service”
    • KeyBRIDGE
      • KeyBRIDGE POI
      • KeyBRIDGE RKD
      • KeyBRIDGE eKMS
      • TokenBRIDGE™
  • services
    • consultancy
      • PQC consultancy
    • support
    • managed services
      • Key Exchange & Escrow Service (KEES™)
    • professional services
    • Utimaco Academy
  • blog
  • downloads
    • brochures
    • data sheets
    • case studies
    • white papers
    • webinars
    • e-books
      • PQC for Dummies e-book
      • HSM for Dummies e-book
    • Utimaco Portal
      • integration guides
      • knowledge base
  • partners
    • Partner Program
      • technology partner
    • Partner Locator
  • company
    • about Utimaco
      • legal
      • terms & conditions
      • privacy
        • cookie-policy
    • locations
    • news
      • newsletter
    • events
    • contact
    • careers
    • investors
    • utimaco management
    • business ethics
    • memberships and certifications
    • engagement in research
  • home
  • solutions
    • industries
      • banking and financial services
        • acquirer
        • card scheme
        • issuer
      • government
        • federal government
      • cloud
        • cloud-based innovation
        • multi-cloud agility
      • connected car (V2V)
      • automotive solutions
      • road infrastructure (V2I), toll collection & ITS
      • industrial IoT & manufacturing
      • energy & utilities
      • lottery & gaming
      • media & entertainment
      • telecommunications
    • applications
      • authentication
      • blockchain
      • code signing
      • database encryption
      • document signing
      • key injection
      • post-quantum crypto agility
      • public key infrastructure (PKI)
        • EJBCA
      • random number generator (RNG)
    • compliance
      • certifications & approvals
        • Common Criteria (CC)
        • FIPS 140-2
      • compliance & standardization
        • FISMA, FedRAMP, and FICAM
        • Certificate Policy of the Smart Metering PKI
        • eIDAS
        • GDPR
        • PCI DSS
        • Privacy Shield
  • products
    • general purpose HSM
      • SecurityServer Se Gen2
      • SecurityServer CSe
      • Block-safe
      • CryptoServer CP5 (eIDAS & CC)
      • CryptoServer Cloud
      • TimestampServer
      • Q-safe
    • payment HSM
      • Atalla AT1000
      • PaymentServer Se Gen2
      • PaymentServer CSe
      • Secure Configuration Assistance (SCA)
      • QuickStart Services
      • u.cloud – Atalla PaymentHSMaaS
      • u.trust 360
    • Software Development Kit (SDK)
      • CryptoServer SDK
      • CryptoScript SDK
    • key management
      • Enterprise Key Management
    • HSM simulators
      • Block-safe HSM simulator
      • CryptoServer CP5 simulator (eIDAS & CC)
      • SecurityServer simulator
      • Q-safe HSM simulator
    • form factor
      • LAN appliance
      • PCIe card
      • cloud, “HSM as a Service”
    • KeyBRIDGE
      • KeyBRIDGE POI
      • KeyBRIDGE RKD
      • KeyBRIDGE eKMS
      • TokenBRIDGE™
  • services
    • consultancy
      • PQC consultancy
    • support
    • managed services
      • Key Exchange & Escrow Service (KEES™)
    • professional services
    • Utimaco Academy
  • blog
  • downloads
    • brochures
    • data sheets
    • case studies
    • white papers
    • webinars
    • e-books
      • PQC for Dummies e-book
      • HSM for Dummies e-book
    • Utimaco Portal
      • integration guides
      • knowledge base
  • partners
    • Partner Program
      • technology partner
    • Partner Locator
  • company
    • about Utimaco
      • legal
      • terms & conditions
      • privacy
        • cookie-policy
    • locations
    • news
      • newsletter
    • events
    • contact
    • careers
    • investors
    • utimaco management
    • business ethics
    • memberships and certifications
    • engagement in research

Home / solutions / compliance

compliance

HSMs help address compliance and certification requirements.

To implement these requirements, regulators either recommend or demand the use of HSMs with different certifications. As a rule, HSMs provide the highest level of security to generate, store, manage and decommission cryptographic keys securely. The successful evaluation of Utimaco HSMs by independent certification bodies builds and strengthens trust in our products.

Utimaco HSM are compliant with:

  • FIPS 140-2 level 3 and physical level 4
  • Common Criteria
  • NATO- and EU-restriction classifications
  • VS-NfD restriction classification (also valid for Utimaco DiskEncrypt)

Utimaco Hardware Security Modules (HSMs) help address compliance and certification requirements

Complexity of security requirements calls for independent evaluations to prove compliance

Cyber security is an extremely complex domain, with demanding requirements from many different fields of application. Sophisticated products and services fulfill these requirements. Obviously, small companies and individual users of such solutions are often not able to verify their quality and level of security, and thus their compliance. Therefore, companies need independent third parties such as regulators and certification bodies to play a role. They work on technical, organizational and process requirements. In addition, they look at secure identification of users or devices, and the aspects of authenticity, integrity and data protection.

First, they analyze what is needed for specific applications. Second, laws, regulations and standards – whether national, international or industry-specific – set out very precise requirements businesses must comply with. Independent, third-party evaluation bodies subsequently evaluate products and services against these pre-defined requirements. Finally, evaluations and certifications ensure the products and services are of the highest quality and have the highest possible level of security.

HSMs help address compliance and certification requirements

Requirements often include mechanisms such as authentication, encryption, digital signing, or public key infrastructures. Together with these requirements, regulators either recommend or demand the use of HSMs. As a rule, HSMs provide the highest level of security to generate, store, manage and decommission cryptographic keys securely. And as such, in a majority of cases, HSMs can help achieve compliance with regulations and standards.

Utimaco HSMs excell during FIPS 140-2 and Common Criteria (CC) evaluations, proving they have the very highest security standards. The successful evaluation of Utimaco HSMs by independent certification bodies builds and strengthens trust in our products. Partners and customers can be certain that they are relying on the most secure HSM solutions of the highest quality.

We have been awarded various national and international certifications for all of our models:

CSe-Series:

  • FIPS 140-2 Level 3, Physical Security Level 4
  • PCI HSM
  • DK, Zulassung Deutsche Kreditwirtschaft (certification by the German banking industry committee)
  • German Technical Guideline BSI TR-03109, Certificate Policy of the Smart Metering PKI

Se-Series Gen2

  • FIPS 140-2 Level 3
  • Common Criteria acc. Protection Profile EN 419221-5, eIDAS security targets (evaluation in progress)

In addition, Utimaco HSMs are the most suited to meet numerous regulatory requirements across different industries and different countries.

Together with our partners, we address the compliance and certification areas below, among others.

 

Are your compliance or certification requirements not included in this selection?

Get in touch with us at hsm@utimaco.com or via the below contact form to discuss your requirements. We will jointly find a solution and partner(s) that can cater to your needs.

Utimaco compliance, certifications & standardization

certifications & approvals

Utimaco certification

Common Criteria (CC)

The Common Criteria (CC) certification standard reduce the need for multiple evaluations in international markets. As such, it limits...

Read more
Utimaco certification

FIPS 140-2

If you need to secure the confidentiality and integrity of information, you will want the encryption keys to protected by a...

Read more

compliance & standardization

Utimaco compliance

Certificate Policy of the Smart Metering PKI

This German Certificate Policy and Technical Guideline BSI TR-03109 define specifications related to the “Smart Metering PKI”. A PKI...

Read more
Utimaco compliance

eIDAS

On July 1st 2016, the electronic identification and trust services regulation, more commonly known as eIDAS, replaced the 17-year...

Read more

FISMA, FedRAMP, and FICAM

To combat outsider attacks and insider threats and ensure all sensitive information is secure, there are a number of...

Read more
Utimaco compliance

GDPR

Is encryption the best way to implement GDPR? The new EU data protection framework, also referred to as the...

Read more
Utimaco compliance

PCI DSS

The Payment Card Industry Data Security Standard (PCI DSS) defines a set of security standards to ensure companies that...

Read more
Utimaco compliance

Privacy Shield

The EU-U.S. Privacy Shield replaces the old Safe Harbor agreement since mid-2016. But the transatlantic data transfer is not...

Read more

Stay on top of our news
Don’t miss out on any Utimaco updates

Subscribe to Utimaco Newsletter

We will keep you posted with news from Utimaco and the industries we protect, as well as information on upcoming events and webinars.

Subscribe now

Partners

Telegrupp AS AKEA S.A. - Utimaco Hardware Security Modules Partner Secure Source Distribution (M) Sdn Bhd - Utimaco Hardware Security Modules Partner Rohde & Schwarz Cybersecurity GmbH MIcrosec Clearkey Consulting - Utimaco Hardware Security Modules Partner Softline Solutions GmbH ESYSCO Sp. z o.o. Utimaco HSM - QuintessenceLabs Synergy Computers (Pvt.) Ltd. - Utimaco Hardware Security Modules Partner Throughwave (Thailand) Co.,Ltd - Utimaco Hardware Security Modules Partner Abrantix AG Microexpert Limited Nexus - Utimaco Hardware Security Modules Partner PrimeKey Labs GmbH MALKOM D.Malińska i Wspólnicy s.j. Cryptomathic A/S SecureMetric Technology Sdn. Bhd. Encryption Consulting LLC Cryptomathic Inc. CertiSur S.A. Compumatica secure networks GmbH Compumatica secure networks B.V. Safesoft Kft. EUROPEAN DYNAMICS SA. Perceptus-sp.-z-o.-o. Baas Control s.r.o. CREAplus Italia S.r.l CewTec S.A. Ascertia - Utimaco Hardware Security Modules Partner intarsys AG cv cryptovision GmbH Versasec Skytech Computing Solutions Limited. - Utimaco Hardware Security Modules Partner Cryptomathic GmbH Thomas-Krenn.AG Real security d.o.o. JJNet International Co., Limited - Utimaco Hardware Security Modules Partner Utimaco HSM - InfoGuard Swiss Cyber Security VAR Group SpA - Utimaco Hardware Security Modules Partner PETA (Thailand) Co., Ltd. Altacom UAB PKI Solutions Inc. Astel (UK) Ltd. - Utimaco Hardware Security Modules Partner Cyber Armor Pte Ltd Macroseguridad IQuantics Corp CREA plus d.o.o. CEGA Security Fornetix - Utimaco Hardware Security Modules Partner Komar Consulting Inc. - Utimaco Hardware Security Modules Partner Fortiedge Pte Ltd. Envoy Data Corporation - Utimaco Hardware Security Modules Partner Nexus - Utimaco Hardware Security Modules Partner Primekey Solutions AB Cogito Group Pty Ltd Utimaco HSM - PTESA_profesionales en transacciones electronicas E-Sign S.A. MTG - Utimaco Hardware Security Modules Partner Nexus Technology GmbH
Find a partner

Share this page

EMEA

Utimaco IS GmbH
Germanusstraße 4
52080 Aachen
Germany
Phone: + 49 241 1696 200

Americas

Utimaco Inc.
900 E Hamilton Ave., Suite 400
Campbell, CA 95008
USA
Phone: +1 844 UTIMACO

APAC

Utimaco IS Pte Limited
80 Raffles Place,
#32-01, UOB Plaza
Singapore 048624
Phone: +65 6622 5347

Utimaco

  • support
  • corporate
  • careers
  • legal
  • terms & conditions
  • privacy
  • cookie-policy
© 2021
to top
  • home
  • solutions
    • industries
      • banking and financial services
        • acquirer
        • card scheme
        • issuer
      • government
        • federal government
      • cloud
        • cloud-based innovation
        • multi-cloud agility
      • connected car (V2V)
      • automotive solutions
      • road infrastructure (V2I), toll collection & ITS
      • industrial IoT & manufacturing
      • energy & utilities
      • lottery & gaming
      • media & entertainment
      • telecommunications
    • applications
      • authentication
      • blockchain
      • code signing
      • database encryption
      • document signing
      • key injection
      • post-quantum crypto agility
      • public key infrastructure (PKI)
        • EJBCA
      • random number generator (RNG)
    • compliance
      • certifications & approvals
        • Common Criteria (CC)
        • FIPS 140-2
      • compliance & standardization
        • FISMA, FedRAMP, and FICAM
        • Certificate Policy of the Smart Metering PKI
        • eIDAS
        • GDPR
        • PCI DSS
        • Privacy Shield
  • products
    • general purpose HSM
      • SecurityServer Se Gen2
      • SecurityServer CSe
      • Block-safe
      • CryptoServer CP5 (eIDAS & CC)
      • CryptoServer Cloud
      • TimestampServer
      • Q-safe
    • payment HSM
      • Atalla AT1000
      • PaymentServer Se Gen2
      • PaymentServer CSe
      • Secure Configuration Assistance (SCA)
      • QuickStart Services
      • u.cloud – Atalla PaymentHSMaaS
      • u.trust 360
    • Software Development Kit (SDK)
      • CryptoServer SDK
      • CryptoScript SDK
    • key management
      • Enterprise Key Management
    • HSM simulators
      • Block-safe HSM simulator
      • CryptoServer CP5 simulator (eIDAS & CC)
      • SecurityServer simulator
      • Q-safe HSM simulator
    • form factor
      • LAN appliance
      • PCIe card
      • cloud, “HSM as a Service”
    • KeyBRIDGE
      • KeyBRIDGE POI
      • KeyBRIDGE RKD
      • KeyBRIDGE eKMS
      • TokenBRIDGE™
  • services
    • consultancy
      • PQC consultancy
    • support
    • managed services
      • Key Exchange & Escrow Service (KEES™)
    • professional services
    • Utimaco Academy
  • blog
  • downloads
    • brochures
    • data sheets
    • case studies
    • white papers
    • webinars
    • e-books
      • PQC for Dummies e-book
      • HSM for Dummies e-book
    • Utimaco Portal
      • integration guides
      • knowledge base
  • partners
    • Partner Program
      • technology partner
    • Partner Locator
  • company
    • about Utimaco
      • legal
      • terms & conditions
      • privacy
        • cookie-policy
    • locations
    • news
      • newsletter
    • events
    • contact
    • careers
    • investors
    • utimaco management
    • business ethics
    • memberships and certifications
    • engagement in research