Upgrade & Secure Your Future with DevOps, SRE, DevSecOps, MLOps!

We spend hours on Instagram and YouTube and waste money on coffee and fast food, but won’t spend 30 minutes a day learning skills to boost our careers.
Master in DevOps, SRE, DevSecOps & MLOps!

Learn from Guru Rajesh Kumar and double your salary in just one year.

Get Started Now!

ETSI RELEASES WORLD-LEADING CONSUMER IOT SECURITY STANDARD

Source: etsi.org

The ETSI Technical Committee on Cybersecurity (TC CYBER) today unveils ETSI EN 303 645, a standard for cybersecurity in the Internet of Things that establishes a security baseline for internet-connected consumer products and provides a basis for future IoT certification schemes. Based on the ETSI specification TS 103 645, EN 303 645 went through National Standards Organization comments and voting, engaging even more stakeholders in its development and ultimately strengthening the resulting standard. The EN is a result of collaboration and expertise from industry, academics and government.

As more devices in the home connect to the internet, the cybersecurity of the Internet of Things (IoT) has become a growing concern. The EN is designed to prevent large-scale, prevalent attacks against smart devices that cybersecurity experts see every day. Compliance with the standard will restrict the ability of attackers to control devices across the globe – known as botnets – to launch DDoS attacks, mine cryptocurrency and spy on users in their own homes. By preventing these attacks, the EN represents a huge uplift in baseline security and privacy.

ETSI EN 303 645 specifies 13 provisions for the security of Internet-connected consumer devices and their associated services. IoT products in scope include connected children’s toys and baby monitors, connected safety-relevant products such as smoke detectors and door locks, smart cameras, TVs and speakers, wearable health trackers, connected home automation and alarm systems, connected appliances (e.g. washing machines, fridges) and smart home assistants. The EN also includes 5 specific data protection provisions for consumer IoT.

“We launched the Finnish IoT label in November 2019; it was a world first and it attracted a lot of global interest,” says Juhani Eronen from Traficom. “Our labels are awarded to networking smart devices that meet certification criteria based on EN 303 645; this help consumers identify IoT devices that are sufficiently secure. To date we have awarded the labels to several products including fitness watches, home automation devices and smart hubs. Being involved in the development of the ETSI standard from the start helped us a lot in building up our certification scheme. Feedback from companies and hackers has been very positive so far,” he adds.

“Legrand is pleased to have contributed to the ETSI EN 303 645 standard. It focuses on the product baseline controls addressing the most common security weaknesses in the IoT ecosystem. Ensuring a better level of security in the IoT Ecosystem can only be achieved if Governments, Industry and Consumers collaborate on a common and reachable goal, and standardization bodies like ETSI have provided the right platform to achieve it for this standard,” says Mahmoud Ghaddar, CISO Standardization.

ETSI EN 303 645 is a cohesive standard that presents an achievable, single target for manufacturers and IoT stakeholders to attain. Many organizations have already based their products and certification schemes around the EN and its predecessor TS. It demonstrates how one standard can underpin many assurance schemes and provide flexibility in certification – whilst maintaining world-leading security.

The ETSI Technical Committee CYBER (TC CYBER) continues its work on IoT security, with the development of a test specification and an implementation guide to complement EN 303 645.

Related Posts

Investing in the Human Element of IIoT

Source: mbtmag.com A recent report by Vodafone Business found that COVID-19 has ignited a surge in Internet of Things (IoT) adoption, with 79 percent of U.S. businesses saying they’ve Read More

Read More

When ‘code rot’ becomes a matter of life or death, especially in the Internet of Things

Source: zdnet.com The possibilities opened up to us by the rise of the Internet of Things (IoT) is a beautiful thing. However, not enough attention is being Read More

Read More

The Good and Not So Good of the IoT Cybersecurity Improvement Act of 2020

Source: securityboulevard.com In September, the House of Representatives passed a bill requiring that all internet of things (IoT) devices purchased by the government meet minimum security requirements. Read More

Read More

Delivering the Revolution: How the Trucking Industry Utilizes the IoT and AI

Source: iotbusinessnews.com The trucking industry, and the logistics that keep it running, have become fundamental to the success of supply chains, both nationally and internationally. Without those Read More

Read More

How the Internet of Robotic Things is helping supply chains to evolve in times of uncertainty

Source: In recent years, the Internet of Things has been hailed as a game changer for businesses. The Internet of Robotic Things (IoRT) is helping businesses to Read More

Read More

Internet of Things is transforming the mobility space

Source: talkiot.co.za South Africa’s economy is easing back towards levels of activity last seen before the Covid-19 lockdown. Logistics fleets are returning to full capacity, and private Read More

Read More
Subscribe
Notify of
guest
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments
0
Would love your thoughts, please comment.x
()
x