ANSI Approves UL Security Standard

Monday, August 21, 2017 @ 03:08 PM gHale


The first edition of the UL Standard for Software Cybersecurity for Network-Connectable Products, Part 1: General Requirements, UL 2900-1 ended up published as an ANSI (American National Standards Institute) standard last month.

ANSI’s mission is to enhance the global competitiveness of U.S. business and the U.S. quality of life by promoting and facilitating voluntary consensus standards and conformity assessment systems, and safeguarding their integrity.

RELATED STORIES
Warding of 3D Printer Cyberattacks
Security for First Responder Sensor System
Tiny Laser Used for Chemical Detection
Precise Beam Could Boost Nuclear Security

This standard applies to network-connectable products that shall be evaluated and tested for vulnerabilities, software weaknesses and malware and describes:
• Requirements regarding the software developer (vendor or other supply chain member) risk management process for their product
• Methods by which a product shall be evaluated and tested for the presence of vulnerabilities, software weaknesses and malware
• Requirements regarding the presence of security risk controls in the architecture and design of a product.

The document will soon also be published as approved by the Standard Council of Canada (SCC), for implementation in Canada.

FDA Recognition is also anticipated to be formally announced in the upcoming Federal Register notice list #47.

Click here to go back to the overview cybersecurity page.



Leave a Reply

You must be logged in to post a comment.