cd /news/artificial-intelligence/vast-dataenclave-runs-ai-models-on-r… · home topics artificial-intelligence article
[ARTICLE · art-138259] src=storagereview.com ↗ pub= topic=artificial-intelligence verified=true sentiment=↑ positive

VAST DataEnclave Runs AI Models on Regulated Data Inside NVIDIA Confidential Computing, Ships Q1 2027

VAST Data previewed VAST DataEnclave, a confidential AI capability of its DataEngine built on NVIDIA Confidential Computing that runs proprietary and open AI models against regulated enterprise data inside customer-controlled environments, with general availability scheduled for Q1 2027 through VAST Data and OEM partners Cisco and Supermicro. The runtime integrates with third-generation NVIDIA Confidential Computing across Hopper, Blackwell, and Rubin architectures, encrypting guest system memory, GPU memory, and inter-GPU NVLink traffic, and uses a verify-before-decrypt attestation workflow with Bring Your Own Key Management System integrations. VAST announced the preview with model builders Cohere, CrowdStrike, Deepgram, Factory, Fundamental, and TwelveLabs, AI cloud providers BUZZ HPC, Nscale, and Sharon AI, and hardware partners Cisco, Supermicro, Fortanix, and NVIDIA.

by read2 min views3 publishedSep 23, 2026
VAST DataEnclave Runs AI Models on Regulated Data Inside NVIDIA Confidential Computing, Ships Q1 2027
Image: Storagereview (auto-discovered)

VAST Data has previewed VAST DataEnclave, a confidential AI capability of the VAST DataEngine built on NVIDIA Confidential Computing, which lets proprietary and open AI models run against enterprise data inside customer-controlled environments: on-premises data centers, sovereign clouds, and fully air-gapped sites. The runtime pairs hardware-isolated execution with cryptographic attestation so model weights and regulated datasets are processed while each party’s keys stay inside its own trust domain, and infrastructure operators and administrators can access neither.

Cryptographic Attestation and In-Memory Protection #

VAST DataEnclave integrates with third-generation NVIDIA Confidential Computing across Hopper, Blackwell, and Rubin architectures. The system establishes hardware-isolated environments across confidential virtual machines and containers, encrypting guest system memory, GPU memory, and inter-GPU NVLink traffic. Active data pipelines and models remain isolated from host platform administrators, infrastructure operators, and adjacent multi-tenant workloads that share the same silicon.

The runtime uses a verify-before-decrypt attestation workflow that cryptographically validates the trusted execution environment and NVIDIA GPU hardware before exposing decryption keys. This prevents plain-text exposure of weights or source records until the enclave verifies system integrity and policy enforcement. Key management operates through Bring Your Own Key Management System (KMS) integrations, keeping customer data keys and vendor model weights inside separate, independent trust domains.

Sovereign Deployments, Audit Trails, and Agent Isolation #

DataEnclave supports both network-connected environments and fully air-gapped data centers. Deployments use attestation services built on the open CNCF Trustee stack, or Fortanix’s Confidential AI infrastructure through a partnership for fully sovereign AI. Attestation events, cryptographic key releases, and enclave lifecycle actions are logged to a tamper-proof, queryable audit trail in the VAST DataBase.

The same DataEngine secure runtime provides isolated execution environments for AI agents through VAST AgentEngine, enforcing policy over the data, systems, and tools agents can access and the actions they can take.

VAST announced the preview with model builders Cohere, CrowdStrike, Deepgram, Factory, Fundamental, and TwelveLabs, AI cloud providers BUZZ HPC, Nscale, and Sharon AI, and hardware partners Cisco and Supermicro, alongside Fortanix and NVIDIA. It lands three weeks after VAST’s CrowdStrike integration went live, with CrowdStrike now on the DataEnclave partner list as a model builder. DataEnclave is scheduled to ship in Q1 2027 through VAST Data and participating OEM partners, including Cisco and Supermicro.

── more in #artificial-intelligence 4 stories · sorted by recency
── more on @vast data 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/vast-dataenclave-run…] indexed:0 read:2min 2026-09-23 ·