Express Logic Initiates EAL4+ Security Certification Effort for X-Ware IoT Platform® Secure Cloud (SC)
Nuremberg, Germany, February 23, 2018
Express Logic, provider of the comprehensive X-Ware IoT Platform® Secure Cloud (SC) powered by the industry-leading ThreadX® RTOS with more than 6.2 billion deployments, announced today that it has partnered with Brightsight, the world’s leading security lab, to perform the deeply embedded industry’s first EAL4+ security certification for cloud connectivity. The Norwegian National Security Authority (SERTIT) is the certification authority for this effort.
IoT security is the primary concern of the embedded industry — and for good reason. In 2017, the technology research firm Gartner predicted that more than 20 billion IoT devices will be deployed by 2020. Furthermore, Gartner predicts that by 2020, 95 percent of new product designs will contain IoT connectivity. Most striking, perhaps, is that through the year 2022, Gartner predicts that half of all security budgets for IoT will go to fault remediation, recalls, and safety failures rather than protection. These numbers are staggering and, even if they come only partially to fruition, represent a massive challenge to embedded IoT developers. To help meet this challenge, Express Logic has established itself as the safety leader in the embedded IoT space with its industrial-grade approach, including precertification to SIL 4 and ASIL D safety standards. Express Logic’s new EAL4+ security certification effort represents another significant step forward by focusing squarely on IoT security needs of the embedded industry, making what is already the most safe IoT platform also the most secure.
X-Ware IoT Platform Secure Cloud (SC)
X-Ware IoT Platform SC is the subset of X-Ware IoT Platform that pertains to cloud connectivity. It includes the popular ThreadX® RTOS, NetX Duo™ embedded IPv4 & IPv6 TCP/IP stack, NetX™ Secure TLS, and NetX MQTT. These are the necessary components for connectivity with most of the world’s most popular cloud providers and they are also the subject of this EAL4+ security certification effort. Furthermore, this EAL4+ certification effort is designed to be generic — not based on any particular microprocessor or cloud provider and therefore portable to virtually any device based on X-Ware IoT Platform SC.
Industrial-Grade Performance, Connectivity, and More
Like all Express Logic products, the X-Ware IoT Platform SC is 100 percent created in-house, meaning that it includes no open-source code and is professionally supported. X-Ware IoT Platform provides high performance while maintaining a very small footprint, making it ideal for even the smallest of IoT devices. For example, X-Ware IoT Platform SC support for an embedded sensor typically requires less than 32KB of flash memory. Using X-Ware IoT Platform, embedded developers have plenty of room for their own application code, even on the smallest of devices.
In addition to the performance and size advantages of the X-Ware IoT Platform, ThreadX and NetX Duo have attained the highest level of safety certifications, including IEC 61508 SIL 4 (the highest, most dependable level as determined by IEC), IEC 62304 Class C, ISO 26262 ASIL D, EN 50128 SW-SIL 4, UL 60730-1 Annex H, CSA E60730-1 Annex H, IEC 60730-1 Annex H, IEC 60335-1 Annex R, and IEC 60335-1 Annex R, 1998.
X-Ware IoT Platform SC is more than just an RTOS with connectivity capabilities. In addition to the ThreadX RTOS and NetX Duo included in X-Ware IoT Platform SC, the safety-certified FileX® embedded FAT-32/exFAT file system, GUIX™ GUI development and embedded runtime framework, and USBX™ embedded host/device USB stack are also available for use. Hence, embedded developers can leverage the entire X-Ware IoT Platform solution to create real IoT applications — ones that must do more than just communicate with the cloud.
“We are excited to work with Express Logic on this certification project,” said Dirk-Jan Out, CEO, Brightsight. “There is an eminent need for practical and meaningful security accreditation, a vision shared by Express Logic and Norwegian National Security Authority SERTIT. The innovative approach for this security evaluation for the X-Ware IoT Platform Secure Cloud shows that we leading the way for the entire embedded IoT world.”
“Embedded developers are facing growing IoT security demands, and next-generation embedded development solutions must step up to address these concerns,” said Stefan Skarin, CEO and President, IAR Systems. “IAR Systems and Express Logic have been partners for a long time, sharing success, and we are excited to see the extended security possibilities in X-Ware IoT Platform.”
“The Synergy Platform is already committed to serving developers of IoT devices with greater security, simple to integrate RF modules, and an ever-expanding full service software/hardware platform that accelerates time to market like never before,” said Peter Carbone, Vice President of Synergy Platform Business Division, Renesas Electronics Corporation. “We are excited about the direction that Express Logic is taking with its EAL4+ certification, their commitment to secure connectivity, and the ultimate benefits our customers will enjoy.”
“Security is a major priority to ensure the success of the IoT. Winning the confidence of end users — from individual consumers to businesses and government agencies – is critical to adoption,” said Laurent Desseignes, Microcontroller Ecosystem Marketing Manager, STMicroelectronics. “The X-Ware IoT Platform SC combined with the existing security features of STM32 microcontrollers will enable embedded developers to meet the rising demands to provide secure device-to-cloud connectivity.”
“Security is the major topic in the embedded IoT community today because without it, sensitive data may be compromised, which can lead to device manufacturer liability as well as loss of market share,” said William E. Lamie, President, Express Logic. “What’s worse is that securing the IoT is technically very challenging. Our X-Ware IoT Platform SC EAL4+ certification effort is designed to remove the hassle from securing embedded IoT devices, making development of secure devices easier, improving time-to-market, and greatly reducing the risk for device manufacturers.”
Brightsight is the number one security lab in the world and employs more than 170 people. From its headquarters in Delft (The Netherlands) and its local offices in Barcelona and Beijing, Brightsight serves global customers by performing security evaluations for their products. Brightsight is a fully licensed EMVCo and Common Criteria lab for software and hardware and is uniquely positioned with its accreditation by multiple Common Criteria schemes. For more information, please visit www.brightsight.com.
About Express Logic and ThreadX
Headquartered in San Diego, CA, Express Logic, Inc., offers the industry’s most advanced runtime solutions for deeply embedded applications, including the popular ThreadX® RTOS, the high-performance NetX™ and NetX Duo™ embedded TCP/IP stacks, the FileX® embedded FAT-compatible file system, the USBX™ Host/Device embedded USB protocol stack, and the GUIX™ embedded graphical user interface development toolkit. Express Logic products include full source code and are available free of run-time royalties.