Security Starts with Hardware
Broadcom, Friday, October 2nd, 2026
Broadcom's VCF team covers hardware and BIOS/UEFI choices, such as TPMs and M.2 boot devices, that underpin a secure hypervisor.
The second post in VMware's Cybersecurity Awareness Month series argues that workload security depends on a chain of dependencies starting in hardware.
It explains how TPMs prove server identity, measure firmware integrity and support features such as vSAN Data-at-Rest Encryption.
It also covers BIOS/UEFI settings, recommends M.2 SSDs as durable boot devices and notes that ESX boot configuration is encrypted by default and sealed with the TPM.