About This Architecture

Regulated-data architecture showing a web tier in a public subnet and an app tier plus database in private subnets, with a clearly drawn dashed trust boundary around the cardholder-data/PII zone; a firewall/WAF and TLS termination sit at the boundary crossing, the database is labeled encrypted at rest (AES-256), and explicit legends mark which components are in PCI DSS/HIPAA scope versus out of scope as regulated data enters and a tokenized payload exits to an external processor.

Compliance Trust Boundary Diagram

AutoCurated TemplateSecurity
4 views0 favoritesPublic

Created by

July 2, 2026

Updated

August 2, 2026 at 11:06 PM

Type

architecture

Need a custom architecture diagram?

Describe your architecture in plain English and get a production-ready Draw.io diagram in seconds. Works for AWS, Azure, GCP, Kubernetes, and more.

Generate with AI

AI-generated. Verify before production use. Learn more

Report this diagram