IBM Launches their Digital Asset Platform Powered by DfnsRead the News

Deploy and Secure Keys Across Any Environment

The Key Orchestration Service (KOS) delivers full flexibility offering composable deployments that let you move and govern keys anywhere.

THE FIRST ONCHAIN KEY ORCHESTRATOR

Future-Proof Your Architecture with Flexible Key Management

Security

Leverage Dfns’ MPC cryptography to remove single points of failure with periodically refreshed key shares distributed across data centers. Or bring your own HSM.

Governance

Deploy Dfns at any layer of your stack (cloud, hybrid, or on-prem) to retain autonomy and full control over your infrastructure with minimal third-party dependency.

Compliance

Adapt to any regulation. Deploy the right KMS for every requirement or rule, and switch anytime from one environment or provider to another using a unified platform.

Programmable ownership

Our sophisticated KMS lets you define who controls a wallet: devs, admins, or users.

Customizable wallets

Segregated, per-user, or omnibus wallet: pick the setup that fits your costs and workflows.

Modular deployment

Run wallets as SaaS, hybrid, or on-prem. Self-host keys, policies, and services with no lock-in.

Dynamic signers

Our MPC protocols scale from 2 to hundreds of signers, co-signing securely with partial keys.

Threshold signing

Our TSS protocol offers flexible signer quorums to align workflows with arbitrary logics.

Recovery

Configure disaster parameters and leverage our recovery layer or any external DRP tool.

MFA

Secure wallet authentication with multiple factors: passkey, PIN, U2F device, password.

Versatile cryptography

Support for algorithms, curves, and derivations: ECDSA, EdDSA, STARK, Schnorr, BIP, SLIP, etc.

Key import and export

Securely import or export keys using “break-the-glass” feature from any environment.

Orchestrate Deployments to Manage Risk Dynamically

Automate, secure, and customize key deployments with powerful APIs for a seamless setup across any environment and geography.

Managed (SaaS)

Run keys and services entirely within Dfns’ cloud infrastructure while benefiting from full segregation, geo-redundancy, and continuous monitoring.

Hybrid (Cloud)

Split control between your infrastructure and Dfns’. Part of the keys and services stay within your own environment, while the rest runs in Dfns’ managed cloud.

On-Premises

Deploy Dfns services and MPC key material fully within your own environment, from private cloud to HSMs and enclaves like AWS Nitro, IBM OSO, or Thales CC.

month 1
month 2
month 3

Advanced integrations

Simple integrations

Turn ON BLOCKCHAINS TODAY

Your IT and Banking Systems Already Support
Blockchains

Client-hosted deployments give enterprises the flexibility to build digital asset services that align with their existing IT, compliance, and security frameworks. With Dfns, you retain full control over all Multi-Party Computation (MPC) key shares while hosting them entirely within your own infrastructure. Dfns also supports deep integration with enterprise hardware and secure environments, including IBM OSO, HPVS, HSMs, LinuxONE, IBM Z, and other on-premises or private cloud configurations, ensuring cryptographic operations comply with your internal governance and regulatory requirements.

Thales
IBM
Microsoft Azure
Temenos
Securosys
AWS
Yubico
Oracle
MODULAR SYSTEMS FOR NEXT GENERATION WALLETS

Wallet Infrastructure
Engineered for Market Shifts

Orchestrate, switch, and scale across services to stay compliant with resilience standards like DORA. Deploy keys anywhere and connect to compliance and core financial systems.

Manage Geopolitical Risk

Regulatory requirements differ: some combine storage and custody, others demand national key storage, and some accept CLOUD Act–compliant environments. Dfns lets you deploy keys securely wherever compliance requires.

Integrate Your Existing Stack

Dfns APIs integrate with core banking platforms (Temenos, Fiserv, FIS, Sopra Steria), leading KYT/AML solutions (Elliptic, Chainalysis, Scorechain), and other essential services to enable compliant financial operations on blockchains.

Dfns stands for Defense

A Secure Gateway for Blockchains
Trusted by Banks and Fintechs

HSM Connectors

Our PKCS#11-compatible HSM connector integrates with all FIPS devices. It links your HSMs to our coordinator and extends blockchain access to your existing KMS flows.

Multi-Party Computation

Built for distributed control and continuous availability, Dfns’ MPC is powered by state-of-the-art, independently audited protocols trusted by leading security firms.

Observability

Our SIEM monitors code, and events across services. Device fleets are secured via MDM. Backend integrity is ensured via attestations from enclaves.

Access Controls

Enforce root-level access control using enclaves and public key authentication, allowing granular resource management across trusted developers and employees.

Disaster Recovery

Our four-layer DRP customizes key recovery workflows by criticality level and trigger type, and can integrate with backup providers like Station70, Circuit, and Coincover.

Enterprise-grade wallets inside your infrastructure