Blog categorized as IoT

Brightsight achieves OCP Security Appraisal Framework and Enablement (S.A.F.E) Security Review Provider (SRP) approval
Brightsight is an approved Open Compute Project S.A.F.E SRP. Brightsight is a trusted third-party to conduct crucial security evaluations for hardware and software solutions within the rapidly explanding data center and AI infrastructure market.
Why the Cyber Resilience Act Matters

Because the EU Cyber Resilience Act (CRA) regulates the security of all connectable software and hardware products, it impacts a wide range of economic operators within the European market, including manufactu...

Digital technologies play a crucial role in the medical landscape, offering significant benefits for both healthcare providers and patients. However, they also introduce a growing risk: cyberattacks. With the rising frequency and sophistication of cyberattacks, regulations ...

The European Commission has harmonized three EN 18031 standards for the Radio Equipment Directive (RED), with restrictions.

We informed you in August 2024 that the EN 18031 series of RED standards had been finalized. On January 28, 2025, the European Commission published references to the three now h...

Brightsight Expands IoT Services with SESIP Certification Body 

We are proud to announce Brightsight is now accredited as a Certification Body (CB) for the issuing of Security Evaluation Standard for IoT Platforms (SESIP) certificates. 


Recently adopted by CEN and CENELEC as European standard EN 17927:2023, SESIP is the foundation on which EU cybersecurity l...

Yazara's Software Becomes First to Achieve PCI MPoC Isolated SDK Approval

Working in close partnership with Yazara, SGS performed a security evaluation for Yazara’s MPoC software implementation with one of the major components being the isolated SDK – the building block of payment apps. Work was undertaken at SGS Brightsight’s cybersecurity laboratory in the Netherlands, ...

Radio Equipment Directive (RED) Delegated Act for Cybersecurity Officially Postponed to 2025: What Does it Mean?
All wireless devices and products sold in the European market will be required to comply with the RED delegated act effective from August 1, 2025. Manufacturers can already start their compliance preparations with the support of SGS Brightsight and receive the SGS Cybersecurity Mark.
Acer partners with SGS Brightsight for EN 303 645 IoT security testing, advancing RED cybersecurity compliance
Acer has been working with SGS Brightsight Taiwan to conduct EN 303 645 IoT security testing on its Netcom products, which is expected to advance the application of Acer Wi-Fi 6E routers and ensure compliance with EU RED (Radio Equipment Directive) security regulations.
SGS Brightsight offers independent 3rd party security assessments for RED conformance, getting your products in compliance and ready for the EU market. Reach out to us to learn more about the RED Delegated Act requirements and how they affect your products!
PSA Certified is now available through SESIP Evaluation Methodology
The PSA Certified Level 3 SESIP profile allows developers to perform security evaluations for the PSA-RoT as defined by the JSA PSA, using SESIP evaluation methodology.