Cybersecurity of Connected Products (IoT)
Since the Internet of Things (IoT) was first introduced, it has continuously expanded, offering more and more connected products. This opens the door to vulnerabilities that can lead to serious consequences. Our services help manufacturers reduce the risks associated with connected devices and ensure compliance with new regulations. At the same time, we can help them design and effectively implement cybersecurity policies.
CONTEXT
Connectivity is now a mandatory feature of new products. And it's not just about smart devices. Connectivity is essential for any new product, including vehicles, medical devices, and industrial and telecommunications equipment. As a result, the cybersecurity of these products has become a critical issue that cannot be ignored. After all, any of these new connected products could eventually become a "doorway" for all kinds of vulnerabilities.
In the early years of IoT, there was a lack of a clear set of relevant standards and regulations to support manufacturers in developing an adequate level of security for their products. Today, however, there are numerous internationally recognised standards and certification programmes that can help them, including IEC 62443, ETSI EN 303 645, and ISO 21434.
From a regulatory standpoint, cybersecurity is also regarded as an important topic. The first examples of regulatory frameworks have already been implemented or are in the final stages of development:
- International UNECE regulations describe the processes and functions for ensuring cybersecurity and software updates for connected vehicles.
- Medical devices must comply with a broad range of requirements to be placed on various markets, including the United States (FDA regulations) and the EU (MDR regulations).
- The Radio Equipment Directive (RED) sets out regulatory requirements aimed at consumer goods.