Etsi 303645

You might also like

Download as pdf or txt
Download as pdf or txt
You are on page 1of 5

IoT standards

ETSI 303 645 Consumer IoT


IoT Product Security/Privacy Protection ETSI EN 303 645
European Telecommunications Standards Institute

After nearly 10 years of development, the implementation of the Internet of Things in various industries has begun to
accelerate. While bringing convenience to connected consumers, IoT cybersecurity issues have gradually emerged. The
IoT devices are frequently attacked by hackers since the products' security is insufficient. To prevent large scale attacks,
ETSI (European Telecommunications Standards Institute) released the consumer IoT devices security and privacy
protection standard ETSI EN 303 645 in June 2020, covering IoT products including wearable health tracking
devices, smart voice assistants, smart home assistants, door locks, video surveillance cameras, smart
refrigerators, washing machines, etc.; compliant with the requirements of ETSI EN 303 645 cybersecurity standard to
ensure consumer IoT security and protect consumers' privacy and personal data.

https://www.etsi.org/deliver/etsi_en/303600_303699/303645/02.01.01_60/en_303
645v020101p.pdf
ETSI 303 645
ETSI EN 303 645 Security Standard for Consumer IoT Covering 13 Categories

There are 13 categories from different areas are covered by ETSI regulations and
requirements for IoT product security and privacy:

1. No universal default passwords.


2. Implement a means to manage reports of vulnerabilities.
3. Keep software updated.
4. Securely store sensitive security parameters.
5. Communicate securely.
6. Minimize exposed attack surfaces.
7. Ensure software integrity.
8. Ensure that personal data is secure.
9. Make systems resilient to outages.
10. Examine system telemetry data.
11. Make it easy for users to delete personal data.
12. Make installation and maintenance of smart devices easy.
13. Validate input data.

https://www.onwardsecurity.com/en/lab_security-detail/ETSIEN303645/
Thank You

You might also like