The first edition of the UL Standard for Software Cybersecurity for Network-Connectable Products, Part 1: General Requirements, UL 2900-1 ended up published as an ANSI (American National Standards Institute) standard last month.
ANSI’s mission is to enhance the global competitiveness of U.S. business and the U.S. quality of life by promoting and facilitating voluntary consensus standards and conformity assessment systems, and safeguarding their integrity.
This standard applies to network-connectable products that shall be evaluated and tested for vulnerabilities, software weaknesses and malware and describes:
• Requirements regarding the software developer (vendor or other supply chain member) risk management process for their product
• Methods by which a product shall be evaluated and tested for the presence of vulnerabilities, software weaknesses and malware
• Requirements regarding the presence of security risk controls in the architecture and design of a product.
The document will soon also be published as approved by the Standard Council of Canada (SCC), for implementation in Canada.
FDA Recognition is also anticipated to be formally announced in the upcoming Federal Register notice list #47.
Click here to go back to the overview cybersecurity page.