Brightsight, an SGS company, has announced that it has been accredited by the Spanish national certification body (ENAC, ISO 17065 (nº: 220/C-PR490)) and is now recognized by GlobalPlatform as a Security Evaluation Standard for IoT Platforms (SESIP) certification body (CB).
For IoT platforms and components, SESIP is an optimized security evaluation approach. As the cornerstone of EU cybersecurity legislation, EN 17927:2023 was recently adopted by CEN and CENELEC.
Reusability, composition, and mapping with IoT vertical standards are some of its primary benefits. It is specifically designed for the IoT sector and is based on the Common Criteria standard (ISO 15408).
Being able to offer this certification service, which offers a thorough one-stop shop for assessments and certification, further solidifies Brightsight’s standing as the premier cybersecurity laboratory in the world.
Brightsight is now prepared to offer SESIP certification for IoT platforms and components at Levels 1 through 3 globally. Among the services are:
- New certificate issuance – valid for up to two years, or until the product undergoes security-related changes
- Certificate renewal – ensures continued certification validity
Key Comments
Sergio Casanova, CTO, Brightsight, said: “This achievement strengthens our value proposition, positioning us as a comprehensive, one-stop solution for cybersecurity evaluations and certifications. While our cybersecurity evaluation services (ITSEF) and certification body functions remain strictly independent, this focused approach enables us to streamline the evaluation and certification process, while maintaining the highest standards of integrity, impartiality and independence. This allows us to effectively address the full spectrum of our clients’ security needs.”
Gil Bernabeu, Chief Technology Officer at GlobalPlatform, said: “The addition of Brightsight as a GlobalPlatform SESIP certification body further validates SESIP as a globally recognized security evaluation framework. This milestone accelerates our mission to enhance the certification of software and hardware components in secure IoT devices, enabling manufacturers to demonstrate compliance with international cybersecurity regulations. Achieving ISO/IEC 17065 accreditation from a national accreditation body for SESIP (EN 17927) is a critical element of SESIP governance and paves the way for mutual recognition of SESIP certificates across all GlobalPlatform Certification Bodies. This development strengthens the SESIP ecosystem and underscores GlobalPlatform’s commitment to advancing and governing robust IoT security standards worldwide.”