industry news
Subscribe Now

GlobalPlatform Launches Comprehensive Approach to IoT Cybersecurity Implementation

IoTopia provides a blueprint for device makers to secure IoT devices and services across all markets and geographies

23 October 2019 – GlobalPlatform, the standard for secure digital services and devices, today announces the launch of IoTopia, a comprehensive framework for IoT security.

Building on GlobalPlatform’s previous work to secure the IoT, IoTopia proposes a common framework for standardizing the design, certification, deployment and management of IoT devices. IoTopia device security will be testable and meet vertical and geographical market requirements by building upon the following four foundational pillars:

  1. Security by Design: capabilities and features that go beyond best practice and define how secure components and APIs can be used with existing secure by design standards.
  2. Device Intent: IoTopia leverages IETF’s manufacturer usage descriptions (MUD) and uniform resource identifier (URI) to effectively manage device permissions and access on networks.
  3. Autonomous, Scalable, Secure Device Onboarding (SDO): IoTopia will offer an open, standards-based secure onboarding process to streamline network administration.
  4. Device Lifecycle Management: a range of features and capabilities to manage devices throughout their entire lifecycle, including updates and maintenance to services, in line with international regulations.

“The IoT ecosystem needs to get serious about antivirus software and about cybersecurity in general. Many of today’s connected objects do more than simply provide information at your fingertips – they make use of sensitive data, gather information and even impact the physical world, in many cases in critical ways,” comments Kevin Gillick, GlobalPlatform Executive Director. “In light of this, there is a need for ubiquitous and standardized end-point and network security to prevent devices from becoming an entry point into a network or a platform for attacks. These are serious security concerns that need to be addressed to realize the market potential of IoT – which is why we have launched IoTopia.”

The use of proven, internationally deployed GlobalPlatform technologies to bring trust to the IoT ecosystem will also ensure that compliance with the baseline requires low to no additional costs for device makers.

“IoTopia will provide a detailed but executable framework that is standards-based, industry-wide and able to evolve as security capabilities and requirements change,” adds Russ Gyurek, GlobalPlatform IoTopia Committee Chair. “Importantly, IoTopia is bringing together global and regional guidelines and requirements to help device manufacturers build products and services that satisfy regulatory mandates. This offers the flexible security blueprint that is needed for device makers to build secure devices without having to become cybersecurity companies or experts.”

Kevin adds: “GlobalPlatform has a long history of successful standardization and certification work, which is already adding value to the IoT ecosystem. Our membership stretches across the entire IoT value chain, perfectly placed to go beyond simply defining best practice and help the market to actually implement security for IoT devices and services.”

To witness the public launch of IoTopia and hear perspectives on IoT security challenges from GSMA, NIST and ENISA, join GlobalPlatform at IoT Solutions World Congress on Wednesday, October 30th from 12:05-12:50.

Interested in contributing to IoTopia? GlobalPlatform invites and welcomes contributions to the IoTopia Committee from chip vendors, device manufacturers, thing makers, IoT platform providers, system integrators, service providers, certification labs, network vendors, end users, government bodies and policy makers. Become a GlobalPlatform member now.

Keep up to date with the latest news from GlobalPlatform:

About GlobalPlatform:

GlobalPlatform is a non-profit industry association driven by approximately 90 member companies. Members share a common goal to develop GlobalPlatform’s specifications, which are today highly regarded as the international standard for enabling digital services and devices to be trusted and securely managed throughout their lifecycle.

GlobalPlatform protects digital services by standardizing and certifying a security hardware/firmware combination, known as a secure component, which acts as an on-device trust anchor. This facilitates collaboration between service providers and device manufacturers, empowering them to ensure adequate security within all devices to protect against threats.

GlobalPlatform specifications also standardize the secure management of digital services and devices once deployed in the field. Altogether, GlobalPlatform enables convenient and secure digital service delivery to end users, while supporting privacy, regardless of market sector or device type. Devices secured by GlobalPlatform include smartphones, tablets, set top boxes, wearables, connected cars, other internet of things (IoT) devices and smart cards.

The technology’s widespread global adoption delivers cost and time-to-market efficiencies to all. Market sectors adopting GlobalPlatform technology include payments, telecoms, transportation, automotive, smart cities, smart home, utilities, healthcare, premium content, government, industrial automation and enterprise ID.

GlobalPlatform’s legacy of successful technical specification development is thanks to two decades of energetic and effective industry collaboration. Members influence the organization’s output through participation in technical committees, working groups and strategic task forces. GlobalPlatform technology is developed in collaboration with numerous standards bodies and regional organizations across the world, to ensure continual relevance and timeliness. For more information visit www.globalplatform.org.

Leave a Reply

featured blogs
Apr 19, 2024
In today's rapidly evolving digital landscape, staying at the cutting edge is crucial to success. For MaxLinear, bridging the gap between firmware and hardware development has been pivotal. All of the company's products solve critical communication and high-frequency analysis...
Apr 18, 2024
Are you ready for a revolution in robotic technology (as opposed to a robotic revolution, of course)?...
Apr 18, 2024
See how Cisco accelerates library characterization and chip design with our cloud EDA tools, scaling access to SoC validation solutions and compute services.The post Cisco Accelerates Project Schedule by 66% Using Synopsys Cloud appeared first on Chip Design....

featured video

MaxLinear Integrates Analog & Digital Design in One Chip with Cadence 3D Solvers

Sponsored by Cadence Design Systems

MaxLinear has the unique capability of integrating analog and digital design on the same chip. Because of this, the team developed some interesting technology in the communication space. In the optical infrastructure domain, they created the first fully integrated 5nm CMOS PAM4 DSP. All their products solve critical communication and high-frequency analysis challenges.

Learn more about how MaxLinear is using Cadence’s Clarity 3D Solver and EMX Planar 3D Solver in their design process.

featured chalk talk

Introducing QSPICE™ Analog & Mixed-Signal Simulator
Sponsored by Mouser Electronics and Qorvo
In this episode of Chalk Talk, Amelia Dalton and Mike Engelhardt from Qorvo investigate the benefits of QSPICE™ - Qorvo’s Analog & Mixed-Signal Simulator. They also explore how you can get started using this simulator, the supporting assets available for QSPICE, and why this free analog and mixed-signal simulator is a transformational tool for power designers.
Mar 5, 2024
5,022 views