Knowledge Centre
Home / News / Cyber Insurance News / Microsoft Fortifies Identity Security with Azure Confidential VMs and HSMs

Microsoft Fortifies Identity Security with Azure Confidential VMs and HSMs

Published on April 25, 2025. EST READ TIME: 2 minutes

Microsoft Fortifies Identity Security with Azure Confidential VMs and HSMs 

In response to the 2023 Storm-0558 breach, where attackers exploited token signing vulnerabilities, Microsoft has taken significant steps to bolster its identity security infrastructure. The company has migrated its Microsoft Account (MSA) signing service to Azure Confidential Virtual Machines (VMs), providing enhanced hardware-based isolation for token signing processes. Additionally, Microsoft is transitioning its Entra ID signing services to the same secure environment.

These measures are part of Microsoft’s broader Secure Future Initiative, which includes storing access token signing keys in hardware security modules (HSMs) with automatic rotation. The initiative also reports that 90% of identity tokens for Microsoft apps are now validated using a hardened identity SDK, and 92% of employee productivity accounts employ phishing-resistant multifactor authentication. These enhancements aim to mitigate attack vectors similar to those used in the Storm-0558 incident, reinforcing Microsoft’s commitment to securing its digital ecosystem.

Awards & Recognition
Image

BFSI Leadership Awards 2022 - Product Innovator of the Year (Optima Secure)

ETBFSI Excellence Awards 2021

FICCI Insurance Industry
Awards September 2021

ICAI Awards 2015-16

SKOCH Order-of-Merit

Best Customer Experience
Award of the Year

ICAI Awards 2014-15

Image

CMS Outstanding Affiliate World-Class Service Award 2015

Image

iAAA rating

Image

ISO Certification

Image

Best Insurance Company in Private Sector - General 2014

View all awards