A computing entity comprises a trusted monitoring component having a first
processing means and a first memory means, the trusted monitoring component being a self-contained autonomous
data processing unit, and a
computer platform having a main
processing means and a main memory area, along with a plurality of associated physical and logical resources such as
peripheral devices including printers, modems, application programs, operating systems and the like. The
computer platform is capable of entering a plurality of different states of operation, each state of operation having a different level of security and
trustworthiness. Selected ones of the states comprise trusted states in which a user can enter sensitive confidential information with a high
degree of certainty that the
computer platform has not been compromised by external influences such as viruses, hackers or hostile attacks. To enter a trusted state, references made automatically to the trusted component, and to exit a trusted state reference must be made to the trusted component. On exiting the trusted state, all references to the trusted state are deleted from the computer platform. On entering the trusted state, the state is entered in a reproducible and known manner, having a reproducible and known configuration which is confirmed by the trusted component.