Products

QxEDGE

Vendor:
Crypto4A
Category:
Hardware Security Platform (HSM as a Platform)
Deployment:
On-premises (edge or data centre)

Overview

QxEDGE is a hyper-converged Hardware Security Platform that combines Crypto4A’s quantum-safe HSM with multiple general-purpose and confidential compute processing engines in a single appliance. Described as "HSM as a Platform," QxEDGE enables organisations to host security applications — including PKI, code signing, key management, and secrets management — alongside the HSM rather than as separate infrastructure components.

Unsung implements QxEDGE for UK customers requiring integrated, quantum-safe cryptographic and compute capabilities at the edge or within data centre environments, particularly in critical infrastructure and defence contexts.

The Challenge

Traditional HSM deployments require separate infrastructure for the HSM itself and the security applications that depend on it. PKI software, signing services, key management platforms, and secrets vaults each run on their own servers, connecting to the HSM over the network. This separation creates integration complexity, increases the attack surface, and makes it difficult to deploy cryptographic services at the edge where latency and connectivity constraints demand self-contained solutions.

For organisations operating in distributed environments — transport networks, defence installations, or edge computing locations — maintaining separate HSM and application infrastructure at each site is often impractical. A converged platform that provides both cryptographic hardware and compute capabilities in a single deployable unit addresses this challenge.

What It Does

QxEDGE converges HSM and compute into a single platform using Crypto4A’s patented Trusted Communication Matrix (TCMx) to provide software-defined, hardware-enforced confidential compute environments. Security applications run directly on the platform’s compute boards with secure, low-latency access to the integrated HSM, eliminating the need for network-attached HSM connectivity.

The platform is fully programmable, supporting virtual machines, containers, and applications without modification. It comes with a development environment, partner integrations with platforms including DigiCert and Keyfactor EJBCA, and tools for building custom security solutions. Use cases include edge PKI, device identity provisioning, firmware signing, data-at-rest encryption, secrets management, and DNSSEC — all with quantum-safe cryptographic foundations and FIPS 140-2 Level 3 validated key protection.

How Unsung Helps

Unsung assists clients in evaluating whether a converged HSM-and-compute approach suits their deployment requirements, and helps design and implement QxEDGE solutions integrated with their existing PKI and security tooling. For organisations with distributed infrastructure needs, our PKI Design & Build service covers the architecture and deployment of edge PKI and cryptographic services built on the QxEDGE platform.

Related Unsung Services

Hardware Security Modules — HSM platform selection, deployment, and integration services.

PKI Design & Build — Design and implementation of distributed and edge PKI architectures.

PKI Consultancy — Advisory on quantum-safe infrastructure and converged security platforms.