Azure Key Vault
Safeguard cryptographic keys and other secrets used by cloud apps and services.
HSM Validation
FIPS 140-2 Level 2
HSM Validation
FIPS 140-2 Level 3
Parent Company
Microsoft
About Azure Key Vault
Azure Key Vault is a comprehensive secrets management solution offered by Microsoft Azure. It allows developers and security administrators to safeguard and manage cryptographic keys, certificates, and other secrets used by cloud applications and services. The service helps in centralizing the storage of application secrets, thereby improving security and control. Users can create and import encryption keys in minutes. Key Vault is designed to support multiple key types and algorithms, and it offers different tiers, including premium and managed HSM options for higher-level security and compliance requirements like FIPS 140-2. Integration with other Azure services is seamless, allowing for easy implementation of secure key and secret management in cloud-native applications.
Core Features
Secrets Management
Securely store and control access to tokens, passwords, certificates, API keys, and other secrets.
Key Management
Create and control the encryption keys used to encrypt your data.
Certificate Management
Easily provision, manage, and deploy public and private Transport Layer Security/Secure Sockets Layer (TLS/SSL) certificates.
Hardware Security Modules
Secrets and keys are safeguarded by FIPS-validated HSMs.
Integration
Azure Services
Natively integrates with a wide range of Azure services like Azure App Service, Azure Virtual Machines, and Azure Storage.
Access Control
Integrates with Microsoft Entra ID (formerly Azure Active Directory) for authentication and role-based access control (RBAC).
Monitoring
Integrates with Azure Monitor for logging and alerts on Key Vault activity.