Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Cryptographic Module Validation Program CMVP

Certificate #5310

Details

Module Name
AWS Nitro Card Security Engine SSMAE
Standard
FIPS 140-3
Status
Active
Sunset Date
6/3/2031
Overall Level
1
Caveat
When operated in approved mode. No assurance of minimum security of SSPs (e.g., keys, bit strings) that are externally loaded, or of SSPs established with externally loaded SSPs.
Security Level Exceptions
  • Non-invasive security: N/A
  • Mitigation of other attacks: N/A
Module Type
Firmware-hybrid
Embodiment
SingleChip
Description
The Cryptographic Module (CM) is a single-chip firmware-hybrid module. The cryptographic services provided by the module are: Data encryption / decryption utilizing symmetric ciphers, i.e. AES algorithms and computation of hash values, i.e., SHA2 and SHA3.
Approved Algorithms
AES-CBC
AES-CTR
AES-ECB
AES-XTS Testing Revision 2.0
SHA2-256
SHA2-384
SHA2-512
SHA3-224
SHA3-256
SHA3-384
SHA3-512

Vendor

Amazon Web Services
1918 8th Ave.
Seattle, WA 98101
USA

Alicia Squires
[email protected]
Phone: 000-000-0000

Validation History

Date Type Lab
6/4/2026 Initial Acumen Security
6/29/2026 Update Acumen Security