Hardware security module (HSM)
A Hardware Security Module (HSM) is certified, tamper-resistant hardware that protects cryptographic keys for eIDAS-qualified signing, seals and PKI.
A Hardware Security Module is dedicated, tamper-resistant hardware for generating, storing and using cryptographic keys. Keys never leave the module unprotected; all signing and decryption happens inside. Unlike a smart card, secure element or TPM - which protect keys for a single device or user - an HSM is built to serve many keys and users at server scale, with independent certification. For high-assurance uses, HSMs are typically certified against standards such as Common Criteria (EN 419 221-5 for trust services) or FIPS 140.
For a QTSP the HSM is the heart of the service: CA keys, remote signing keys and seal keys all live in certified HSMs. A certified HSM combined with the right sole control setup - certified against EN 419 241-2 - forms a remote QSCD.