WG 01 - CLC/TC 47X/WG 01
The group's activities will focus on defining harmonized standards enabling self-assessment of Cyber Resilience Act (CRA) compliance for MCUs and MPUs that provide security functions without tamper-resistance claims, in building on existing standards such as SESIP (Security Evaluation Standard for IoT Products). As a first step, this group will identify all relevant protection profiles for MCUs and MPUs without tamper-resistance claims in the context of the CRA. A critical part of the work will be to identify and address gaps in the CRA Cybersecurity Essential Requirements (CRA, Annex I of the Draft CRAoposal Text). Manufacturers' reporting obligations in the event of security incidents (CRA, Article 11 of the draft CRA proposal) should also be covered as part of the work.
CLC/TC 47X/WG 01
The group's activities will focus on defining harmonized standards enabling self-assessment of Cyber Resilience Act (CRA) compliance for MCUs and MPUs that provide security functions without tamper-resistance claims, in building on existing standards such as SESIP (Security Evaluation Standard for IoT Products). As a first step, this group will identify all relevant protection profiles for MCUs and MPUs without tamper-resistance claims in the context of the CRA. A critical part of the work will be to identify and address gaps in the CRA Cybersecurity Essential Requirements (CRA, Annex I of the Draft CRAoposal Text). Manufacturers' reporting obligations in the event of security incidents (CRA, Article 11 of the draft CRA proposal) should also be covered as part of the work.
General Information
Frequently Asked Questions
WG 01 is a Technical Committee within CLC. It is named "CLC/TC 47X/WG 01" and is responsible for: The group's activities will focus on defining harmonized standards enabling self-assessment of Cyber Resilience Act (CRA) compliance for MCUs and MPUs that provide security functions without tamper-resistance claims, in building on existing standards such as SESIP (Security Evaluation Standard for IoT Products). As a first step, this group will identify all relevant protection profiles for MCUs and MPUs without tamper-resistance claims in the context of the CRA. A critical part of the work will be to identify and address gaps in the CRA Cybersecurity Essential Requirements (CRA, Annex I of the Draft CRAoposal Text). Manufacturers' reporting obligations in the event of security incidents (CRA, Article 11 of the draft CRA proposal) should also be covered as part of the work. This committee has published 1 standards.
WG 01 develops CLC standards in the area of Information technology. The scope of work includes: The group's activities will focus on defining harmonized standards enabling self-assessment of Cyber Resilience Act (CRA) compliance for MCUs and MPUs that provide security functions without tamper-resistance claims, in building on existing standards such as SESIP (Security Evaluation Standard for IoT Products). As a first step, this group will identify all relevant protection profiles for MCUs and MPUs without tamper-resistance claims in the context of the CRA. A critical part of the work will be to identify and address gaps in the CRA Cybersecurity Essential Requirements (CRA, Annex I of the Draft CRAoposal Text). Manufacturers' reporting obligations in the event of security incidents (CRA, Article 11 of the draft CRA proposal) should also be covered as part of the work. Currently, there are 1 published standards from this technical committee.
CLC is a standardization organization that develops and publishes standards to support industry, commerce, and regulatory requirements.
A Technical Committee (TC) in CLC is a group of experts responsible for developing international standards in a specific technical area. TCs are composed of national member body delegates and work through consensus to create standards that meet global industry needs. Each TC may have subcommittees (SCs) and working groups (WGs) for specialized topics.
This document specifies the security assessment requirements for platforms that include microprocessors and microcontrollers with security-related functionalities. These platforms aim to secure other products/networks/services beyond the microprocessors and microcontrollers themselves and are intended to provide assurance at a level AVA_VAN.1 as defined in [2], or without AVA_VAN claim.
- Draft95 pagesEnglish languagee-Library read for1 day