214:
certification scheme, as outlined in the agreement, advocates a security-by-design approach applicable to a broad spectrum of IoT products. This process begins with a thorough security assessment of the chip, specifically its Root of Trust (RoT), and progressively extends to system software and device application code. Notably, the PSA-certified specifications are designed to be neutral regarding implementation and architecture, making them applicable across various chips, software, and devices.
29:
217:
The PSA Certified program seeks to address and reduce fragmentation in the IoT product manufacturing and development sectors. It supports the creation of system-on-chips (SoCs) that incorporate a PSA Root of Trust (PSA-RoT), a security component accessible to software platforms and original equipment
174:
In 2017, Arm
Holdings introduced the Platform Security Architecture (PSA), a framework designed to enhance the security of Internet of Things (IoT) devices and services. PSA emerged as a comprehensive standard, incorporating various elements such as threat models, security analyses, and architectural
260:
This mid-level certification focuses on software attacks and includes a month-long review of the PSA-RoT source code by a security lab. It emphasizes specific attack methods and evaluation methodologies, with a requirement for hardware support of PSA-RoT functions, primarily aimed at chip vendors.
178:
Over time, PSA evolved into PSA Certified, a more structured, four-stage framework. This development aimed to provide IoT designers with a systematic approach to ensuring security. The framework categorized security into different levels, each offering varying degrees of assessment and assurance.
226:
PSA-RoT offers a set of high-level APIs, facilitating the abstraction of trusted hardware and firmware across different chip vendors. These APIs include the PSA Cryptography API, the PSA Attestation API, the PSA Storage API, and the PSA Firmware Update API. Compliance with these APIs is verified
189:
PSA Certified was further strengthened by the collaboration of seven founding stakeholders, including Arm
Holdings, Brightsight, CAICT, Prove & Run, Riscure, UL, and TrustCB. TrustCB joined as an independent certification body for the scheme, while the other stakeholders, four of which are
213:
The PSA Joint
Stakeholders Agreement is an initiative focused on establishing a global standard for Internet of Things (IoT) security. This agreement aims to simplify the security protocols within the electronics industry by providing a coherent and comprehensive security scheme. The security
240:
Level 1 targets chip vendors, software platforms, and device manufacturers. It involves a questionnaire, document review, and an interview conducted by a certification lab. The process ensures alignment with key IoT standards and laws, like NISTIR 8259, ETSI 303 645, and SB-327.
282:
This structured approach under the PSA Joint
Stakeholders Agreement and the subsequent certification levels play a critical role in unifying and strengthening IoT security standards, catering to the diverse needs of the industry, and promoting a safer IoT environment.
175:
specifications for hardware and firmware. It also included an open-source firmware reference implementation. The primary objective of PSA was to establish a baseline for security in the IoT sector, catering to the needs of both software and device manufacturers.
200:
In
November 2022, PSA Certified introduced Level 2 + Secure Element. This new category allows for the integration of a secure element to enhance the physical protection at Level 2, bridging the gap before advancing to the more robust Level 3 protection.
185:
The formal certification process for PSA Certified was launched at
Embedded World in 2019. This event saw the introduction of Level 1 certification, primarily targeting chip vendors. Concurrently, a draft outlining Level 2 protection was also presented.
204:
The evolution of PSA and the introduction of PSA Certified represent significant strides in standardizing and enhancing IoT security, reflecting the industry's ongoing commitment to safeguarding interconnected devices in an increasingly digital world.
278:
The highest level, Level 3, expands upon Level 2 to include safeguards against various physical and side-channel attacks. This level encompasses physical protection for all security functions, differentiating it from Level 2 + Secure
Element.
269:
This level enhances Level 2 by adding physical protection for certain security functions. It typically involves a Level 2 Certified SoC combined with a secure element, focusing on secure cryptographic operations and key storage.
196:
Noteworthy milestones in the journey of PSA Certification include the issuance of the first Level 2 certificates to chip vendors in
February 2020 and the awarding of the first Level 3 certificate in March 2021.
1212:
998:
166:
first brought forward the PSA specifications in 2017 to outline common standards for IoT security, with the PSA Certified
Assurance Scheme launching two years later in 2019.
934:
771:
1081:"Renesas Electronics Unveils RA Family of 32-Bit Arm Cortex-M Microcontrollers with Superior Performance and Advanced Security for Intelligent IoT Applications"
966:
856:
746:
1182:
227:
through open source API test suites, and an open-source implementation of the PSA Root of Trust APIs is available through the
TrustedFirmware.org project.
842:
1113:
828:
980:
1278:
39:
1017:"Nuvoton Debuts PSA Certified Level 1 and PSA Functional API Certified Arm Cortex-M23 Based MCU for Global Market Targeting IoT Security"
190:
security test laboratories, contributed to the creation of the PSA Certified specifications under the PSA Joint Stakeholders Agreement.
1164:
1128:
1034:
899:
58:
1245:
76:
99:
182:
The initial PSA documents and IoT threat models were released in 2018, marking a significant step in standardizing IoT security.
1259:
1099:
810:
1226:
291:
Since the launch of the standard, it has been adopted by a number of chip manufacturers and system software providers.
193:
The PSA Certified ecosystem expanded in 2021 with the addition of Applus+ and ECSEC, two notable security test labs.
54:
999:"Nordic Semiconductor nRF9160 SiP and nRF5340 SoC achieve PSA Certified Level 2 for enhanced IoT security assurance"
1283:
728:
1190:
698:
1080:
157:
1016:
857:"ESP32-S3 Series (ESP32-S3, ESP32-S3FN8, ESP32-S3R2, ESP32-S3R8, ESP32-S3R8V, ESP32-S3FH4R2) | PSA Certified"
747:"ESP32-S3 Series (ESP32-S3, ESP32-S3FN8, ESP32-S3R2, ESP32-S3R8, ESP32-S3R8V, ESP32-S3FH4R2) | PSA Certified"
1049:"The LPC553x/S3x MCU family further expands the world's first general purpose Cortex-M33-based MCU series"
352:
881:
1002:
984:
498:
483:
17:
569:
829:"Cypress Processing Solution with Built-in System Layer Security Fortifies IoT Application Design"
1168:
885:
640:
395:
149:
843:"Arrow Electronics Accelerates Development of IoT Devices on PSA Certified Trusted Methodology"
541:
380:
50:
938:
814:
772:"aitos.io launches the world's first PSA Certified BoAT blockchain application framework"
1035:"NXM Achieves PSA Level One Certification from UL for its Autonomous Security Software"
1213:"Veridify Security's DOME Client Library Achieves PSA Certified Level 1 Accreditation"
1272:
145:
785:
1146:
612:
163:
153:
1048:
913:
952:
1052:
1066:
1129:"Silicon Labs First to Achieve PSA Certified Level 3 Status for Wireless SoC"
584:
98:
1150:
1132:
1114:"Sequitur Labs' EmSPARK 2.0 Security Suite achieves PSA Certified status"
732:
468:
440:
425:
1230:
1084:
1020:
935:"PSoC 64 Standard Secure MCU family achieves PSA Level 2 certification"
683:
513:
410:
324:
1186:
967:"Macronix ArmorFlash NOR Flash achieves PSA Certified Level 1 status"
655:
1227:"Winbond TrustME Secure Flash Memory achieves PSA Certified Level 2"
1260:"Linaro contributes to the Zephyr Project becoming PSA certified"
1246:"Winbond TrustME secure flash gets PSA Certified Level 2 Ready"
900:"Express Logic's X-Ware IoT Platform is now Arm PSA Certified"
22:
1165:"Dev kits and software for STM32U5 – and chips now available"
156:, Brightsight, CAICT, Prove & Run, Riscure, TrustCB, and
133:
729:"Google and others back Internet of Things security push"
152:(IoT) hardware, software, and devices. It was created by
46:
1100:"RT-Thread IoT OS Achieves PSA Security Certification"
57:, and by adding encyclopedic content written from a
129:
121:
113:
105:
91:
882:"Eurotech achieves IoT security certification"
142:Platform Security Architecture (PSA) Certified
1183:"Unisoc Launches All-New AIOT Solution V5663"
8:
981:"SAM L10 and SAM L11 Microcontroller Family"
293:
77:Learn how and when to remove this message
719:
88:
38:contains content that is written like
953:"InGeek Embedded World PSA Certified"
7:
1147:"Goodix receives PSA Certification"
969:. New Electronics. August 31, 2021.
831:(Press release). 26 February 2019.
14:
1069:. PSA Certified. 3 February 2021.
160:as part of a global partnership.
1215:. Embedded Computing (magazine).
727:Dent, Steve (October 23, 2017).
97:
27:
1189:. March 2, 2020. Archived from
1127:Dahad, Nitin (March 17, 2021).
1244:Winning, Ally (3 March 2020).
1:
125:Security certification scheme
1279:Internet of things companies
1102:. Embedded Computing Design.
811:"Securing the IoT ecosystem"
786:"Azure RTOS | PSA Certified"
222:Functional API Certification
1300:
914:"FreeRTOS | PSA Certified"
15:
96:
265:Level 2 + Secure Element
1037:. UL. October 8, 2019.
774:. Medium. 12 May 2021.
218:manufacturers (OEMs).
1067:"OneOS certification"
941:. September 21, 2021.
902:. Embedded Computing.
817:. September 30, 2021.
353:Cypress Semiconductor
274:Level 3 Certification
245:Level 2 Certification
236:Level 1 Certification
59:neutral point of view
1233:. February 26, 2020.
1003:Nordic Semiconductor
985:Microchip Technology
861:www.psacertified.org
790:www.psacertified.org
751:www.psacertified.org
499:Nordic Semiconductor
484:Microchip Technology
300:Certification Level
231:Certification Levels
16:For other uses, see
570:Renesas Electronics
51:promotional content
1171:. October 1, 2021.
1169:Electronics Weekly
1116:. New Electronics.
706:Software platform
691:Chip manufacturer
676:Software platform
663:Chip manufacturer
648:Chip manufacturer
641:STMicroelectronics
633:Chip manufacturer
620:Chip manufacturer
605:Software platform
592:Software platform
577:Chip manufacturer
562:Software platform
549:Chip manufacturer
534:Software platform
521:Chip manufacturer
506:Chip manufacturer
491:Chip manufacturer
448:Chip manufacturer
433:Software platform
418:Software platform
388:Chip manufacturer
360:Chip manufacturer
332:Software platform
150:Internet of Things
53:and inappropriate
1284:Internet security
712:
711:
542:NXP Semiconductor
381:Espressif Systems
339:Crypto Quantique
287:Industry adoption
139:
138:
87:
86:
79:
1291:
1264:
1263:
1256:
1250:
1249:
1241:
1235:
1234:
1223:
1217:
1216:
1209:
1203:
1202:
1200:
1198:
1193:on June 16, 2020
1179:
1173:
1172:
1161:
1155:
1154:
1143:
1137:
1136:
1124:
1118:
1117:
1110:
1104:
1103:
1095:
1089:
1088:
1077:
1071:
1070:
1063:
1057:
1056:
1045:
1039:
1038:
1031:
1025:
1024:
1013:
1007:
1006:
995:
989:
988:
977:
971:
970:
963:
957:
956:
949:
943:
942:
931:
925:
924:
922:
921:
910:
904:
903:
896:
890:
889:
878:
872:
871:
869:
868:
853:
847:
846:
839:
833:
832:
825:
819:
818:
807:
801:
800:
798:
797:
782:
776:
775:
768:
762:
761:
759:
758:
743:
737:
736:
724:
627:Shenzhen Goodix
367:Embedded Planet
294:
257:
256:
252:
134:psacertified.org
122:Type of standard
106:Effective region
101:
89:
82:
75:
71:
68:
62:
40:an advertisement
31:
30:
23:
1299:
1298:
1294:
1293:
1292:
1290:
1289:
1288:
1269:
1268:
1267:
1258:
1257:
1253:
1243:
1242:
1238:
1225:
1224:
1220:
1211:
1210:
1206:
1196:
1194:
1181:
1180:
1176:
1163:
1162:
1158:
1145:
1144:
1140:
1126:
1125:
1121:
1112:
1111:
1107:
1097:
1096:
1092:
1079:
1078:
1074:
1065:
1064:
1060:
1047:
1046:
1042:
1033:
1032:
1028:
1015:
1014:
1010:
997:
996:
992:
979:
978:
974:
965:
964:
960:
951:
950:
946:
939:New Electronics
933:
932:
928:
919:
917:
912:
911:
907:
898:
897:
893:
888:. July 7, 2021.
880:
879:
875:
866:
864:
855:
854:
850:
841:
840:
836:
827:
826:
822:
815:New Electronics
809:
808:
804:
795:
793:
784:
783:
779:
770:
769:
765:
756:
754:
745:
744:
740:
726:
725:
721:
717:
289:
276:
267:
258:
254:
250:
248:
247:
238:
233:
224:
211:
172:
114:Effective since
83:
72:
66:
63:
44:
32:
28:
21:
12:
11:
5:
1297:
1295:
1287:
1286:
1281:
1271:
1270:
1266:
1265:
1251:
1236:
1218:
1204:
1174:
1156:
1151:EE Times China
1149:(in Chinese).
1138:
1119:
1105:
1098:Cohen, Perry.
1090:
1072:
1058:
1040:
1026:
1008:
990:
972:
958:
944:
926:
905:
891:
873:
848:
834:
820:
802:
777:
763:
738:
718:
716:
713:
710:
709:
707:
704:
701:
695:
694:
692:
689:
686:
680:
679:
677:
674:
671:
667:
666:
664:
661:
658:
652:
651:
649:
646:
643:
637:
636:
634:
631:
628:
624:
623:
621:
618:
615:
609:
608:
606:
603:
600:
599:Sequitur Labs
596:
595:
593:
590:
587:
581:
580:
578:
575:
572:
566:
565:
563:
560:
557:
553:
552:
550:
547:
544:
538:
537:
535:
532:
529:
525:
524:
522:
519:
516:
510:
509:
507:
504:
501:
495:
494:
492:
489:
486:
480:
479:
477:
474:
471:
465:
464:
462:
459:
456:
452:
451:
449:
446:
443:
437:
436:
434:
431:
428:
422:
421:
419:
416:
413:
407:
406:
404:
401:
398:
392:
391:
389:
386:
383:
377:
376:
374:
371:
368:
364:
363:
361:
358:
355:
349:
348:
346:
343:
340:
336:
335:
333:
330:
327:
321:
320:
318:
315:
312:
308:
307:
304:
301:
298:
288:
285:
275:
272:
266:
263:
246:
243:
237:
234:
232:
229:
223:
220:
210:
207:
171:
168:
144:is a security
137:
136:
131:
127:
126:
123:
119:
118:
115:
111:
110:
107:
103:
102:
94:
93:
85:
84:
55:external links
35:
33:
26:
13:
10:
9:
6:
4:
3:
2:
1296:
1285:
1282:
1280:
1277:
1276:
1274:
1261:
1255:
1252:
1247:
1240:
1237:
1232:
1228:
1222:
1219:
1214:
1208:
1205:
1192:
1188:
1184:
1178:
1175:
1170:
1166:
1160:
1157:
1152:
1148:
1142:
1139:
1134:
1130:
1123:
1120:
1115:
1109:
1106:
1101:
1094:
1091:
1086:
1082:
1076:
1073:
1068:
1062:
1059:
1054:
1050:
1044:
1041:
1036:
1030:
1027:
1022:
1018:
1012:
1009:
1004:
1000:
994:
991:
986:
982:
976:
973:
968:
962:
959:
954:
948:
945:
940:
936:
930:
927:
915:
909:
906:
901:
895:
892:
887:
883:
877:
874:
862:
858:
852:
849:
844:
838:
835:
830:
824:
821:
816:
812:
806:
803:
791:
787:
781:
778:
773:
767:
764:
752:
748:
742:
739:
734:
730:
723:
720:
714:
708:
705:
702:
700:
697:
696:
693:
690:
687:
685:
682:
681:
678:
675:
672:
669:
668:
665:
662:
659:
657:
654:
653:
650:
647:
644:
642:
639:
638:
635:
632:
629:
626:
625:
622:
619:
616:
614:
611:
610:
607:
604:
601:
598:
597:
594:
591:
588:
586:
583:
582:
579:
576:
573:
571:
568:
567:
564:
561:
558:
555:
554:
551:
548:
545:
543:
540:
539:
536:
533:
530:
527:
526:
523:
520:
517:
515:
512:
511:
508:
505:
502:
500:
497:
496:
493:
490:
487:
485:
482:
481:
478:
475:
472:
470:
467:
466:
463:
460:
457:
454:
453:
450:
447:
444:
442:
439:
438:
435:
432:
429:
427:
424:
423:
420:
417:
414:
412:
411:Express Logic
409:
408:
405:
402:
399:
397:
394:
393:
390:
387:
384:
382:
379:
378:
375:
372:
369:
366:
365:
362:
359:
356:
354:
351:
350:
347:
344:
341:
338:
337:
334:
331:
328:
326:
323:
322:
319:
316:
313:
310:
309:
305:
302:
299:
296:
295:
292:
286:
284:
280:
273:
271:
264:
262:
253:
244:
242:
235:
230:
228:
221:
219:
215:
209:Certification
208:
206:
202:
198:
194:
191:
187:
183:
180:
176:
169:
167:
165:
161:
159:
155:
151:
147:
146:certification
143:
135:
132:
128:
124:
120:
116:
112:
108:
104:
100:
95:
92:PSA Certified
90:
81:
78:
70:
60:
56:
52:
48:
42:
41:
36:This article
34:
25:
24:
19:
1254:
1239:
1221:
1207:
1195:. Retrieved
1191:the original
1177:
1159:
1141:
1122:
1108:
1093:
1075:
1061:
1043:
1029:
1011:
993:
975:
961:
947:
929:
918:. Retrieved
916:. 2020-03-16
908:
894:
876:
865:. Retrieved
863:. 2022-07-06
860:
851:
837:
823:
805:
794:. Retrieved
792:. 2021-10-27
789:
780:
766:
755:. Retrieved
753:. 2022-07-06
750:
741:
722:
613:Silicon Labs
290:
281:
277:
268:
259:
239:
225:
216:
212:
203:
199:
195:
192:
188:
184:
181:
177:
173:
164:Arm Holdings
162:
154:Arm Holdings
141:
140:
73:
64:
49:by removing
45:Please help
37:
1053:Arm Limited
845:. EE Times.
317:Blockchain
306:References
148:scheme for
1273:Categories
1248:. EE News.
920:2021-04-09
867:2023-12-12
796:2022-12-15
757:2023-12-12
715:References
325:Azure RTOS
67:March 2022
47:improve it
1262:. Linaro.
1197:August 4,
955:. InGeek.
699:Zephyr OS
670:Veridify
585:RT-Thread
528:NXM Labs
311:Aitos.io
109:Worldwide
1133:EE Times
886:Eurotech
733:Engadget
703:Level 1
688:Level 2
673:Level 1
660:Level 1
645:Level 3
630:Level 1
617:Level 3
602:Level 1
589:Level 1
574:Level 2
559:Level 1
546:Level 3
531:Level 1
518:Level 1
503:Level 2
488:Level 1
473:Level 1
469:Macronix
458:Level 1
445:Level 2
441:Infineon
430:Level 1
426:FreeRTOS
415:Level 1
400:Level 1
396:Eurotech
385:Level 1
370:Level 2
357:Level 2
342:Level 2
329:Level 1
314:Level 1
297:Company
1231:Winbond
1085:Renesas
1021:Nuvoton
684:Winbond
514:Nuvoton
455:InGeek
303:Sector
170:History
130:Website
1187:Unisoc
656:Unisoc
556:OneOS
249:": -->
1199:2020
476:OEM
461:OEM
403:OEM
373:OEM
345:OEM
251:edit
117:2017
18:PSA
1275::
1229:.
1185:.
1167:.
1131:.
1083:.
1051:.
1019:.
1001:.
983:.
937:.
884:.
859:.
813:.
788:.
749:.
731:.
158:UL
1201:.
1153:.
1135:.
1087:.
1055:.
1023:.
1005:.
987:.
923:.
870:.
799:.
760:.
735:.
255:]
80:)
74:(
69:)
65:(
61:.
43:.
20:.
Text is available under the Creative Commons Attribution-ShareAlike License. Additional terms may apply.