---
name: hs-crypto-manage-security-compliance
title: Managing security and compliance with Hyper Protect Crypto Services
description: compliance for your organization.
last-updated: 2026-07-01
---

> ## Documentation Index
> The table of contents for this documentation set is at https://cloud.ibm.com/docs/hs-crypto?format=markdown
> The index for all IBM Cloud docs is at: https://cloud.ibm.com/docs/llms.txt
> Use these files to discover more information as needed.

# Managing security and compliance with Hyper Protect Crypto Services
{: #manage-security-compliance}

IBM Cloud&reg; Hyper Protect Crypto Services is deprecated. As of 28 March 2026, you can't create new instances, and access to free instances will be removed. Existing premium plan instances are supported until 28 March 2027. Any instances that still exist on that date will be deleted.
{: deprecated}

IBM Cloud&reg; Hyper Protect Crypto Services is integrated with the
Compliance Manager to help you manage security and
compliance for your organization.
{: shortdesc}



With the Compliance Manager, you can:


* Define rules for Hyper Protect Crypto Services that can help to standardize resource configuration.




## Governing Hyper Protect Crypto Services resource configuration with config rules
{: #govern-crypto}

As a security or compliance focal, you can use the Compliance Manager to define configuration rules for the Hyper Protect Crypto Services instances that you create.



This service only supports the ability to view the results of your configuration scans in the Security and Compliance Center. It is not necessary to set up a collector to use configuration rules.
{: note}


[Config rules](#x3084914){: term} are used to monitor and optionally enforce the configuration standards that you want to implement across your accounts. To learn more about the available properties that you can use to create a rule for Hyper Protect Crypto Services, review the following table.

| Resource Kind | Property Name | Operator | Value | Description |
| ------------- | ------------- | -------- | ----- | ----------- |
| `instance` | `allowed_network`| `string_equals` | public-and-private<br>private-only | Specifies the type of endpoint the Hyper Protect Crypto Services instance can be accessed from. Refer to <br>[Managing network access policies](https://cloud.ibm.com/docs/hs-crypto?topic=hs-crypto-managing-network-access-policies&format=markdown) for more information. |
{: caption="Config rule properties and target attributes for Hyper Protect Crypto Services" caption-side="bottom"}