Azure Key Vault
AzureSecurityCentralised vault for cryptographic keys, secrets, and certificates with HSM-backed keys, managed certificate renewal, and RBAC or access-policy enforcement
Attributes
- SLA Uptime
- 99.99%
- Hsm Backed
- Yes
- Fips Compliant
- Yes
Sub-services (4)
Secrets
Securely store and manage application secrets
Keys
Create and control encryption keys
Certificates
Manage SSL/TLS certificates lifecycle
Managed HSM
FIPS 140-2 Level 3 validated hardware security
Compliance & Certifications
This service is attested for the following frameworks. Always verify with the provider before relying on a specific compliance posture.
Where this runs
Sovereign regions (13)
- Australia Central · CanberraAzure Australia Government
- Australia Central 2 · CanberraAzure Australia Government
- US Gov Virginia · VirginiaAzure Government
- US Gov Arizona · ArizonaAzure Government
- US Gov Texas · TexasAzure Government
- US DoD East · VirginiaAzure Government Secret
- US DoD Central · IowaAzure Government Secret
- China North (Beijing) · BeijingMicrosoft Azure China (21Vianet)
- China East (Shanghai) · ShanghaiMicrosoft Azure China (21Vianet)
- China North 2 · BeijingMicrosoft Azure China (21Vianet)
- China East 2 · ShanghaiMicrosoft Azure China (21Vianet)
- China North 3 · HebeiMicrosoft Azure China (21Vianet)
- China East 3 · ShanghaiMicrosoft Azure China (21Vianet)
Commercial regions (60)
Europe (21)
- Austria East
- Belgium Central
- Denmark East
- Finland Central
- France South
- France Central
- Germany North
- Germany West Central
- Greece Central
- North Europe
- Italy North
- West Europe
- Norway East
- Norway West
- Poland Central
- Spain Central
- Sweden Central
- Switzerland West
- Switzerland North
- UK West
- UK South
North America (13)
- Canada East
- Canada Central
- Mexico Central
- West US
- East US 3
- North Central US
- Central US
- West US 3
- South Central US
- East US
- East US 2
- West US 2
- West Central US
South America (3)
- Brazil Southeast
- Brazil South
- Chile Central
Asia (13)
- East Asia
- South India
- Jio India West
- West India
- Jio India Central
- Central India
- Indonesia Central
- Japan West
- Japan East
- Malaysia West
- Southeast Asia
- Korea South
- Korea Central
Oceania (3)
- Australia East
- Australia Southeast
- New Zealand North
Middle East (5)
- Israel Central
- Qatar Central
- Saudi Arabia Central
- UAE Central
- UAE North
Africa (2)
- South Africa West
- South Africa North
Tags
Equivalent services on other platforms
Fully managed service to store, rotate, and audit secrets such as database credentials, API keys, and OAuth tokens with native rotation Lambda integrations for RDS, Redshift, and DocumentDB
Fully managed secret storage with automatic replication across regions, VPC Service Controls integration, CMEK encryption, version history, per-secret IAM, and rotation via Cloud Scheduler plus Cloud Run hooks — used by GKE, Cloud Run, and Compute Engine workloads
Unified cryptographic services including Key Management Service for envelope encryption, Cloud Secret Management Service for secret storage and rotation, Key Pair Service for SSH key management, and Dedicated HSM for FIPS 140-2 Level 3 workloads
Centralised key and secret management service with HSM-backed symmetric and asymmetric keys, automatic rotation, and envelope encryption for OCI resources
Managed cryptographic key service with customer master keys (CMKs), envelope encryption for Tencent services, automatic and manual rotation, imported key material (BYOK), Managed HSM for single-tenant FIPS 140-2 Level 3 compliance, and audit logging via CloudAudit