Kudelski IoT, STMicroelectronics deliver in-field device provisioning, security lifecycle management

Kudelski IoT, STMicroelectronics deliver in-field device provisioning, security lifecycle management

Source Node: 2028135

16 March 2023 – Kudelski IoT, a division of the Kudelski Group, a provider of digital security and IoT solutions, and STMicroelectronics (ST) Authorised Partner, have announced a joint solution that enables device manufacturers to efficiently create and deploy products with in-field credential provisioning and advanced security lifecycle management based on ST’s new STM32H5 microcontroller (MCU) and the Kudelski IoT keySTREAM Trust Agent. Together, this combination of technologies ensures secure and sustainable IoT products that protect new business models, safeguard corporate reputation, and enable regulatory compliance.

ST’s performance-oriented STM32H5 series pre-integrates the Kudelski IoT keySTREAM Trust Agent (KTA), enabling all the features required to comply with most common industry security standards, including NIST, FIPS, PSA and SESIP Level 3 or higher. These features include advanced, in-field personalisation of device credentials and zero-touch cloud onboarding to any cloud, credential renewal and revocation, and attestation. This is done by enabling the remote provisioning of device credentials instead of requiring them to be provisioned in the factory and keys passed through the value chain. By simplifying these steps, the joint solution streamlines operational processes and reduces human error.

The keySTREAM Trust Agent leverages the functions of the Secure Manager on the STM32H5 to create new credentials and manage them throughout their entire lifecycle. Developers can utilise these functions via simple APIs after downloading and implementing an SDK available from ST. keySTREAM then creates new credentials for on-demand provisioning and onboarding of the device to any cloud or cloud service, including services like Matter, MQTT, DLMS, FOTA servers, and many others. Having the ability to do this provides more flexibility to device manufacturers, because they can flexibly modify and expand the capabilities of a given device over time. 

“The growing emphasis on security and customers’ need to deliver certified secure, high-performance applications quickly, encouraged us to work closely with Kudelski IoT on this joint solution,” says Ricardo De Sa Earp, executive vice president general-purpose Microcontroller Sub-Group, Microcontrollers and Digital ICs Group at STMicroelectronics. “Our Secure Manager in combination with the keySTREAM system keeps users, assets, and data secure by enhancing and simplifying the addition of valuable security services to customer developments while easing their certifications.”

“As the volumes of IoT device deployments continue to increase and security regulations and standards become more demanding, companies need more flexible and effective ways to establish and maintain security,” says Frederic Thomas, CTO of Kudelski IoT. “Our solution with ST makes the current device provisioning model obsolete and gives our customers what they need to launch and maintain secure devices while actually increasing their agility and decreasing time to market.”

Comment on this article below or via Twitter: @IoTNow_OR @jcIoTnow

Time Stamp:

More from IoT Now