Provide protected storage for cryptographic keys [Selection: [Assignment: organization-defined safeguards]; hardware-protected key store].
A Trusted Platform Module (TPM) is an example of a hardware-protected data store that can be used to protect cryptographic keys.