Cases
SECOMEA DEMONSTRATES CYBERSECURITY & TRUSTWORTHINESS WITH IEC 62443
arrow_backTil oversigten13. september 2023 | TÜV SÜD Danmark ApS
Secomea is an industrial remote access management platform, transforming the way that companies connect, monitor, and optimize machines from anywhere in the world – instantly and securely. It offers solutions for both manufacturers and machine builders across a range of verticals, including food & beverage, pharma & medical, and building automation. The purpose-built, turnkey solution is built with IT, OT and C-level in mind, to ensure reduced downtime and protection from cyberthreats.
The international standard, IEC 62443, provides a structured approach to cybersecurity and is the leading industrial cybersecurity standard for all types of plants, facilities and systems across industries. The standard applies to component suppliers, system integrators and asset owners. When Secomea found their existing audit partner was not accredited to issue IEC 62443 certificates, their research for a suitable company led them to TÜV SÜD.
CHALLENGES
Secomea machine builder service diagram
Secomea recognises the importance of being able to document their adherence to security standards, not only for product security but also for operational security.
Anette Svendsen, Compliance Project Manager, explains:
“As such, we have pursued and conducted audits for compliance with the IEC 62443-3-3 standard and IEC 62443-4-2 standard for many years. However, we also recognise the importance of staying up-to-date with emerging standards and regulations, particularly in light of the upcoming NIS2 directive and EU Cyber Resilience Act. We understand that providing proof of certification as the result of a successful assessment is now business critical for our customers, and we are committed to maintaining the highest levels of security and trust in everything we do.”
As Secomea’s existing audit partner is not accredited to issue certificates, they needed to find a company with the necessary accreditations and expertise. After hearing positive feedback about TÜV SÜD from within their network, they decided to explore our services further. They also had the opportunity to speak to Frode Svensson, TÜV SÜD Business Development Director for the Nordics, at the Danish automation exhibition, Hi Tech and Industry.
Anette explains how they reached their decision:
“Based on these factors, we ultimately chose to partner with TÜV SÜD for their outstanding reputation and expertise in the field of certification services. We are confident that this decision will serve us well and further enhance the trust and security that our customers expect and deserve.”
TÜV SÜD SOLUTIONS
After exploring the various options, Secomea sent their documentation to the TÜV SÜD team and were pleased to discover that the assessment could be conducted remotely. This enabled them to proceed with the certification process in a more efficient and timely manner. Following a thorough internal quality check by TÜV SÜD, Secomea received the certification for their remote maintenance solution. The certificate and corresponding report provided valuable documentation of our compliance with industry standards.
BUSINESS BENEFITS
As a remote access management solution, Secomea is aware that it can be viewed as a potential threat vector for security-conscious organisations. Secomea prioritise the documentation of how their solution can be trusted, and believe that compliance with industry standards is the best way to achieve this goal. They can now proudly display the TÜV SÜD certification logo which states “Secure Product Development Lifecycle assessed & monitored according to IEC 62443-4-1”.
Anette explains further about the advantages for Secomea:
“In light of the upcoming NIS2 directive and EU Cyber Resilience Act, providing our customers with proof of certification as a result of a successful assessment is not only important for maintaining trust, but it has become a business-critical requirement. Our commitment to meeting these standards is unwavering, and we will continue to prioritize the security and trustworthiness of our solution for our customers' benefit.
Our experience working with TÜV SÜD has been extremely positive. Their professionalism and clear guidance on what was required for a successful certification process allowed us to achieve a smooth and efficient process.
We followed their instructions closely and were able to benefit from their expertise and support throughout the process. It is worth noting, however, that this successful outcome was the result of a considerable investment of time and effort from the Secomea team in order to arrive at this level of maturity. We are grateful for TÜV SÜD's support and are confident in recommending their services to others.
We’d absolutely work with TÜV SÜD again. They’re a valued and knowledgeable service partner that exceeded our expectations. We fully endorse TÜV SÜD and hope to work with them again in the future.”
TÜV SÜD’s Frode Svensson enjoyed working on the project:
“We are proud that Secomea chose to partner with us. Working with the Secomea team was a great experience because of their professional approach.”