CSA Cybersecurity Labelling Scheme (CLS)

Raise cybersecurity hygiene levels in consumer IOT devices

Raise cybersecurity hygiene levels in consumer IOT devices

As an effort to improve IoT cybersecurity, the Cyber Security Agency of Singapore (CSA) launched the Cybersecurity Labelling Scheme (CLS) for consumer smart devices. TÜV SÜD can facilitate and review your smart devices based on CSA's CLS Levels 1 to 4.

BENEFITS OF CSA cybersecurity labelling scheme

  • Gain competitive edge – by complying to the CSA requirements for smart devices and allow consumers to understand the cybersecurity of the your product
  • Minimise risks – by testing your smart devices according to an established cybersecurity guideline from the Singapore government
  • Proof of quality – by using the CLS mark to signal the cybersecurity of your smart devices to the consumers

WHAT IS THE CSA cybersecurity labelling scheme?

As an effort to improve the IoT cybersecurity, the Cyber Security Agency of Singapore (CSA) has launched the Cybersecurity Labelling Scheme (CLS) for consumer smart devices. This will help to raise the overall cybersecurity hygiene levels in smart devices and better secure the cyberspace of Singapore. As of Jan 2021, the CLS Security scheme covers all type of consumer IoT devices.

Under the CLS, there are 4 levels of cybersecurity provisions that the smart devices can be rated into. The CLS is represented by one, two, three, or four asterisks corresponding to level 1 through 4. Each additional asterisk represents an additional level of testing and assessment that the smart devices has comply with.

Below is a breakdown of the cybersecurity provisions for each level:

  • Level 1 - The product meets basic security requirements such as ensuring unique default passwords and providing software updates.
  • Level 2 - The product has been developed using the principles of Security-by-Design such as conducting threat risk assessment, critical design review and acceptance tests, and fulfilled Level 1 requirements.
  • Level 3 - The product has undergone assessment of software binaries by approved third-party test labs, and fulfilled Level 2 requirements.
  • Level 4 - The product has undergone structured penetration testing by approved third-party test labs and fulfilled Level 3 requirements.

Why is CYBERSECURITY LABELLING SCHEME important?

As most consumers do not understand the technicalities and the information on the amount of cybersecurity that is built into smart devices is not readily available, consumers are not able to make informed decisions when buying such smart devices. With the introduction of CLS, consumers are able to understand the level of cybersecurity measures that have been tested on the smart devices and assist in making their purchase decisions.

CONTACT TÜV SÜD IN SINGAPORE FOR MORE DETAILS

If you have any questions about the CSA Cybersecurity Labelling Scheme or would like to apply, you can contact TÜV SÜD by filling up the form on this page.

CSA Cybersecurity Labelling Scheme (CLS)

Fill up the form on this page and we will be in touch with more details!

Contact us