UL Launches Cyber-Security Assurance Program

UL

 

Underwriters Laboratories’ new Cybersecurity Assurance Program (UL CAP) uses the new UL 2900 series of standards to offer testable cybersecurity criteria for network-connectable products and systems to assess software vulnerabilities and weaknesses, minimize exploitation, address known malware, review security controls and increase security awareness.

UL CAP is for vendors looking for trusted support in assessing security risks while they continue to focus on product innovation to help build safer, more secure products, as well as for product purchasers who want to mitigate risks by sourcing products validated by a trusted third party.

As cyber attacks become more sophisticated, harder to protect against, and more costly than ever, security precautions are critical. There will be 21-50 billion connected devices by 2020, according to Gartner and other industry reports. By 2018, it is predicted that 66% of networks will have an IoT security breach. The security and financial risks impacting products and services globally for public and private sectors and consumers alike are the key drivers to develop new safeguards in an ever-changing security threat landscape faced with growing risks.

“We’re aiming to support and underpin the innovative, rapidly iterating technologies that make up the Internet of Things (IoT) with a security program,” says Rachna Stegall, Director of Connected Technologies at UL. “The more devices become interconnected, the greater the potential security risks to products and services across all sectors. The Cybersecurity Assurance Program’s purpose is to help manufacturers, purchasers and end-users, both public and private, mitigate those risks via methodical risk assessments and evaluations.”

The new UL CAP was developed with input from major stakeholders representing the U.S. Federal government, academia and industry to elevate the security measures deployed in the critical infrastructure supply chain. The White House recently released the Cybersecurity National Action Plan (CNAP), designed to enhance cybersecurity capabilities within the US government and across the country. UL’s CAP services and software security efforts were recognized within the CNAP as a way to test and certify network-connectable devices within the Internet of Things supply chain and ecosystems especially relevant in critical infrastructures, such as energy, utilities and healthcare.

Asset owners from critical infrastructure can see the benefits of UL CAP as a means for evaluating the security posture of their supply chain. “The availability and integrity of critical infrastructure is crucial to the safety and well-being of society. A comprehensive program that measures critical systems against a common set of reliable security criteria is helpful,” states Terrell Garren, CSO, Duke Energy.

UL’s evaluation of security products and systems uses the UL 2900 series of standards, which outline technical criteria for testing and evaluating the security of products and systems that are network-connectable. These standards form a baseline set of technical requirements to measure, and then elevate, the security posture of products and systems. UL 2900 is designed to evolve and incorporate additional technical criteria as the security needs in the marketplace mature.

Building on the successful framework of the UL CAP pilot where initial vendors benefited from this innovative program, UL CAP can help vendors identify security risks in their products and systems and suggests methods for mitigating those risks in a wide range of industry functions, including: industrial control systems, medical devices, automotive, HVAC, lighting, smart home, appliances, alarm systems, fire systems, building automation, smart meters, network equipment, and consumer electronics. For increased flexibility for specific market requirements, vendors can select the UL CAP services best suited for their current needs.

Meeting the requirements outlined in the UL 2900 series of standards allows a product or system to be certified by UL as “UL 2900 compliant”. Additionally, since security is dynamic, UL 2900 can support the evaluation of a vendor’s processes for design, development and maintenance of secure products and systems.

For more information on UL CAP, register to attend the FREE ULwebinar: UL CAP-Evaluating Network-Connectable Products & Systems per Common Security Requirements on April 26 at 11:00 am CST: http://bit.ly/CAPWeb1 or visit http://www.ul.com/cybersecurity.

 

Related Articles


Changing Scene

  • Introducing Next Sales and Marketing Inc.

    Introducing Next Sales and Marketing Inc.

    Apr 25, 2024 Dear Valued Business Partners, In an ongoing effort to provide our Partners with the best quality product, service & support, we are excited to announce the appointment of Next Sales and Marketing, as our agent representing Liteline in Atlantic Canada, beginning April 27th, 2024. Next Sales and Marketing caters to a wide… Read More…

  • CMP Products Limited Joins ETIM North America

    CMP Products Limited Joins ETIM North America

    ETIM North America has recently announced that CMP Products Limited, global specialists in the manufacture of cable glands and cable cleats, joined the North American chapter of the global product classification standards organization. With office and distribution networks spread across 6 continents including Europe, the Americas, Australia, Asia, and Africa, in more than 8 industries,… Read More…


Peers & Profiles

  • Taken from Graybar Canada Linkedin Post Enjoy a glimpse of the wonderful moments from Graybar Canada’s recent customer appreciation BBQs! The company was grateful for the smiles and connections made with our amazing customers and vendors. They are looking forward to the next gathering! Source Read More…

  • Article taken from Linkedin Post Electrozad is thrilled to spotlight their Chatham Branch and recognize their exceptional efforts in cleaning up their community. The team took time to coordinate a community clean-up around their branch. This is a commendable initiative that not only helps maintain the cleanliness and hygiene around the branch but also contributes… Read More…