Custom Security Solutions

Purpose-built security silicon and subsystems designed for AI and cloud data centers

Custom Security Solutions

AI and cloud infrastructure are broadening the security boundary. CPUs, XPUs, NICs, storage, memory, and management devices increasingly handle sensitive data, run privileged firmware, and participate in critical system operations. Trust, key protection, and cryptographic processing therefore need to be designed into the infrastructure from the start.

Standard security products provide a proven path when established capabilities meet the requirements. Custom security provides greater flexibility when security functions, performance, software, or system integration need to be aligned to a specific architecture.

Marvell combines custom silicon expertise with proven security technology. LiquidSecurity brings HSM and key-management capabilities. Additional capabilities include Root of Trust, secure boot, and firmware protection. Customization can extend from configuration and tailored firmware to integrated security functions and purpose-built silicon.

Customizing System Architectures

Security priorities for AI and cloud infrastructure


AI infrastructure expands the number of devices, workloads, and software layers that need protection, raising the demands on security across the system.

Protect a broader trust boundary

Keep security from limiting performance

Meet compliance across global deployments

Keep pace with changing security requirements

CPUs, accelerators, controllers, adapters, and firmware create more components that must establish identity, integrity, and trust.

Encryption, authentication, signing, and other cryptographic operations must scale without consuming valuable host compute or constraining workload performance.

FIPS, PCI, and regional standards must be met consistently across millions of devices and across multiple jurisdictions.

New cryptographic algorithms, post-quantum migration, certification requirements, and regional standards must be addressed across the entire infrastructure lifecycle




Marvell custom security solutions




Resources

Marvell Extends Collaboration with Microsoft, Expanding Azure Global Cloud Security Services in Europe

Marvell Extends Collaboration with Microsoft, Expanding Azure Global Cloud Security Services in Europe

Learn More

Microsoft Integrates Marvell NIST FIPS 140-3 Level-3 Compliant LiquidSecurity HSMs into Azure Key Vault and Managed HSM Services

Microsoft Integrates Marvell NIST FIPS 140-3 Level-3 Compliant LiquidSecurity HSMs into Azure Key Vault and Managed HSM Services

Learn More

Marvell Extends Collaboration with Microsoft, Expanding Azure Global Cloud Security Services in Europe

Microsoft Azure Cloud Opens Services with FIPS-certified Marvell LiquidSecurity HSMs for Public Preview

Learn More

Custom security solutions FAQs

How are custom security solutions different from the Marvell off-the-shelf security products? Arrow

Off-the-shelf products such as LiquidSecurity provide predefined, production-ready HSM capabilities for key management, encryption, multi-tenancy, remote administration, and compliance. Custom security is appropriate when the infrastructure requires different resource scaling, functionality, firmware, integration, performance, or system placement. Proven technology from standard products can also provide building blocks for custom designs.

When does a custom security solution make sense? Arrow

Customization becomes valuable when a standard device cannot efficiently meet the required trust model, workload, tenancy model, performance target, software environment, integration approach, or infrastructure roadmap. The level of customization can range from firmware and configuration changes to purpose-built silicon.

What can be customized? Arrow

Depending on the program, customization can include cryptographic algorithms, key capacity, queues, resource partitioning, virtual machines or tenants, QoS, performance, firmware, software, interfaces, customer IP, and the functions incorporated into the device.

Does customization always require new silicon? Arrow

No. Some requirements can be addressed through firmware, software, resource configuration, or integration changes. New hardware becomes relevant when the underlying security architecture, functionality, performance, interfaces, or system integration needs to change materially.

Can security be integrated into another custom device? Arrow

Yes. Root of Trust, key protection, cryptographic acceleration, secure boot, and other security functions can be incorporated into larger custom infrastructure devices. The Marvell custom ASIC platform already spans security alongside compute, networking, memory, and storage IP.

How are evolving cryptographic requirements addressed? Arrow

Crypto agility, updateable firmware and software, and appropriate hardware acceleration can provide flexibility as cryptographic algorithms and standards evolve. The architecture can also be planned around post-quantum migration and long infrastructure lifecycles.

How are certification and compliance considered? Arrow

Certification requirements should be established early because they can influence hardware, firmware, key handling, operational controls, and validation. The Marvell security portfolio includes experience with standards such as FIPS 140-3, Common Criteria, eIDAS, and PCI PTS HSM. 




Contact Us

We believe better partnerships help to build better technologies. Let’s connect and see what we can design together!

Thank You for Your Interest

We will be in touch with you soon!