Rather than having your entire chip be in the same security domain, he says, the most critical things like the management of cryptographic keys or the management of network connections or DRM systems can be isolated in separate transistors on the same chip.
FORBES: Safeguarding Your Toaster Against Malware