Skip to main content
Guidance

Device security principles for manufacturers

Principles to guide manufacturers in the design of secure, enterprise-connected devices.

Page 5 of 12

4. Maintain device integrity

All devices rely on core software and firmware that are essential to their operation, such as their operating systems and bootloaders. If an attacker compromises or modifies this code, the attacker could control or subvert the device functionality. Compromised or modified code is challenging to identify and remove from the device.

Demonstrating that these crucial components are correct and haven’t been modified each time the device starts helps prevent the device booting into a pre-compromised state. This can be achieved by cryptographic checks based on a hardware root of trust, which make it substantially more difficult for an attacker to interfere.







Published

Reviewed

Version

2.1