Data Security Manager iconData Security Manager

A unified platform to secure sensitive data leveraging hardware security modules and key management services.

Elastx Data Security Manager (DSM) is a unified platform designed to secure sensitive data across hybrid and multi-cloud environments. It centralizes cryptographic operations, key management, and data protection, leveraging FIPS 140-2 Level 3 certified hardware security modules (HSMs) as a service (HSMaaS) and key management service (KMS). With Elastx DSM you own and control your own keys used to encrypt your sensitive data.

Encryption is your last line of defense. From file system to database encryption to data masking and tokenization, Elastx DSM enables you to secure data at every layer across all your environments.

DSM offers a comprehensive set of functionality and integrations to help you secure sensitive data, protecting your organization from cyberthreats and to be compliant with regulations such as Cybersäkehetslagen (NIS2), GDPR, DORA, SOC 2 and PCI DSS.

  • Filesystem Encryption for Linux and Windows
  • Transparent Database Encryption for Oracle, SQL Server, MongoDB, PostGres, MySQL, Maria DB and IBM DB2
  • AWS KMS External Key Store
  • Google External Key Manager
  • Secrets Management for Kubernetes, Openshift, Terraform, Ansible, Github Actions and GitLab CI
  • Data Tokenization, replaces sensitive data sets with surrogate values called tokens
  • Code signing, with support for code signing tools like Microsoft SignTool, Java JarSigner, Docker Notary, and others
  • Google Workspace Client-Side Encryption, encrypt data at the client before you send it to Google
  • Double Key Encryption for Microsoft 365, encrypt data at the client before you send it to Microsoft
AI Forest

We'd love to tell you more in a digital meeting - book a time that suits you

Schedule a meeting
FunctionSecure sensitive data
Support24x7 support included
Interface

https://hsm.elastx.cloud Web UI Rest API Command Line Client KMIP JCE PKCS#11 CNG

Regionse-sto (Sweden Stockholm)
Availability Zones (AZ)

Clustered over three AZs sto1,** sto2**,** sto3** Each AZ is a separate data center 20km max distance between AZ

Power100% renewable energy
Hardware Security Module (HSM)FIPS 140-2 L3 certified
File System Encryption

Supported OS and filesystems RHEL 8, xfs RHEL 9, xfs SUSE 15, btrfs Ubuntu 20.04, btrfs Ubuntu 22.04, ext4, NFS Ubuntu 24.04, ext 4 Windows Server 2016, NTFS Windows Server 2019, NTFS Windows Server 2022, NTFS Windows Server 2025, NTFS

Transparent Database Encryption

Supported databases Microsoft SQL Server, 2008, 2012, 2014, 2016, 2017, 2019, 2022 Oracle Database, 11gR2, 12c, 18c, 19c, 21c MongoDB (Enterprise), 4.4.x, 5.x, 7.0.6, 8.0.4 PostgreSQL (EDB), 15.2 and higher MySQL (Enterprise), 8.x and higher Percona MySQL, 8.0.27-18 and higher MariaDB, Current versions supporting TDE IBM Db2, 11.5 and higher Cassandra, 4.4 and higher IBM Informix, Current versions supporting KMIP

AWSKMS External Key Store
GCPExternal Key Manager
Secrets Management

Supported software Kubernetes Openshift Terraform Ansible Github Actions GitLab CI

TokenizationFormat-Preserving Encryption (FPE)
Code signing

Supported software Docker Notary Android APK Signing Cosign Git/Gitlab Java JarSigner Keytool Linux Kernel Module Signing OpenSSL Microsoft SignTool Visual Studio and others

Google WorkspaceClient-Side Encryption
Microsoft 365Double Key Encryption
Documentation

The following services are included as standard in our prices: 24x7 support, Threat Intelligence, DDoS protection, encrypted traffic between our availability zones and encryption of storage.

All prices exclude VAT.

Download price list (Excel file)

ServiceUnits/Month
DSM credit8 252 SEK
Maximum transactions per credit4 Million
Enterprise Key Management1 credit per client connection
Plugin to run secure business logic2 credits per plugin
File System Encryption1 credit per server
Database Encryption1 credit per 4 databases
AWS External Key Store1 credit per instance
GCP External Key Manager1 credit per project
Secrets Management1 credit per connection
Tokenization1 credit per client connection
Google Workspace Client-side Encryption1 credit per 250 users
Office 365 Double Key Encryption1 credit per connection