Cryptography is only as strong as the protection of its keys. If a private key sits in a plain file on disk, malware or a thief can copy it and every protection built on it collapses. Hardware-based key protection solves this by generating, storing and using keys inside tamper-resistant hardware, so the key material never appears in normal memory where software could steal it. SY0-701 names four related technologies: the Trusted Platform Module (TPM), the hardware security module (HSM), the secure enclave, and the key management system (KMS). Knowing which one fits which scenario is the main exam skill.
Keep reading for free
Create a free StudyToCert account to read the rest of this lesson: 7 more sections, 7 key terms, a real-world example, an exam tip and self-check questions. Every lesson, lab and practice test is free with an account.