IoT

Winbond TrustME W77Q Secure Flash Obtains SESIP Level 2

8th June 2022
Tom Anstee
0

With SESIP level 2 certification, W77Q Secure Flash will provide connected devices with higher assurance by simultaneously requiring a vulnerability analysis and actual penetration testing on IoT platform design systems using Secure Flash to comply with security and functional safety standards.

Winbond Electronics Corporation, a leading global supplier of semiconductor memory solutions, today announced that the Company's TrustME® W77Q Secure Flash had obtained Security Evaluation Scheme for IoT Platforms (SESIP) Level 2 with Physical Attacker Resistance Certification. This is the first certification using GlobalPlatform® SESIP Profile for Secure External Memories and NIST 8259A (IoT device cybersecurity capability core baseline). The certification also claims compliance with IEC 62443 (security for industrial automation and control systems). With this prestigious industry-recognized security certification, TrustME W77Q Secure Flash can simultaneously satisfy emerging cybersecurity demands in IoTapplications.

The W77Q family has also been certified with the Common Criteria EAL2+, Functional safety ISO26262 ASIL-C level and FIPS 140-3 CAVP.

W77Q Secure Flash comes in densities of 16Mb, 32Mb, 64Mb and 128Mb; it operates at a frequency of 66MHz in Double Transfer Rate mode and 133MHz in Single Transfer Rate mode. It features a standard single/dual/quad/QPI serial peripheral interface (SPI) and industry-standard packages and pin-outs to facilitate their uses as a drop-in replacement for non-secure SPI NOR Flash devices. W77Q Secure Flash can retain data for over 20 years and perform 100,000 Program/Erase cycles with a wide operating temperature range of -40°C to 105°C.

Security Features

Complementary to the host chip, W77Q Secure Flash provides the security features of secure boot code storage and authentication, secure firmware update, remote attestation for building platform Root of Trust and firmware resiliency. The below functions enable security features such as protection, detection, and recovery:

  • Data confidentiality
  • Data and command authentication
  • Code integrity protection
  • Replay protection
  • Cryptographically secured write protection
  • Secure code update with rollback protection
  • DICE-like attestation mechanism
  • Authenticated Watchdog Timer with an optional hardware reset output
  • Secure firmware over-the-air update via an end-to-end secure channel between an update authority (a.k.a. OTA server) and the W77Q even when the host processor or SoC has been compromised.

"We would like to congratulate GlobalPlatform Full Member Winbond for achieving SESIP Level 2 certification," adds Ana Tavares Lattibeaudiere, Executive Director of GlobalPlatform. "SESIP is helping IoT product manufacturers, like Winbond, comply with specific security requirements and regulations. Because the methodology is mappable to other evaluation methodologies and compliant with many standards and regulations, it reduces the complexity, cost and time-to-market for IoT stakeholders as we all work to bring greater trust to the IoT ecosystem."

"In the world of connected devices, security is becoming strategic for risk management, market differentiator and compliance. Many standards and regulations are emerging across regions and verticals. Standards like IEC 62443, NIST 8259A and others are looking to address core security functionality. SESIP has rapidly grown internationally as the recognized certification going beyond the security fragmentation. As an optimized version of CC applied to the IoT market, SESIP provides evidence of secure products by design. The proper protection of stored data is a key element of devices' overall security, " says Carlos Serratos, Director of Strategy at SGS Brightsight. Carlos says, "SGS Brightsight congratulates Winbond with the successful certification of their W77Q16/32 Secure Flash Memory under SESIP and CC, an achievement on itself that gets enhanced for proving its readiness for applications in the scope of IEC 62443 and NIST 8259A. Glad to be the Winbond partner in its security journey!"

Featured products

Product Spotlight

Upcoming Events

View all events
Newsletter
Latest global electronics news
© Copyright 2024 Electronic Specifier