C h a p t e r 2 | O w n e r s h i p o f S e c u r i t y
introduce and how to prevent or mitigate those
risks. Employees at all levels should be aware of best
practices in secure coding, data protection, and
compliance with regulatory standards.
NXP helps companies take ownership of security
by providing
• State-of-the-art security technology with solutions
addressing various applications and use cases.
• Security protections validated by external third
parties using the most relevant security standards,
including Common Criteria (ISO 15408), SESIP (EN
17927), PSA Certified, and FIPS, among others.
• Tools, SDKs, and services for easily installing
and activating security on devices. NXP
engages with and contributes to international
standardization organizations, like NIST, ETSI,
GSMA, CENELEC, CSA (Connectivity Standards
Alliance), GlobalPlatform, and more, to facilitate
the deployment of security in the field. This know-
how is reflected in NXP's security solutions and
the support for organizations navigating
those requirements.
Security cannot be an afterthought.
Just like with safety, you have to
start from day one with the intent
that you're going to make a safe
device. Unfortunately, security
falls into that same category.
You now have to start with the
process in mind that, yes, I'm
going to make a secure device, and
it starts really at the inception."
Asim Zaidi
Technical Director, Secure Connected Edge,
NXP Semiconductors
14
7 Experts Discuss Managing Security Risk and Regulatory Compliance at the Edge