Build confidence in next-generation IoT security

PSA Certified is an independent, globally adopted security certification scheme for IoT hardware, software, and devices. It is maintained by GlobalPlatform and was originally developed by Arm and a consortium of security labs, including Riscure, now part of Keysight. The scheme provides a standardized framework and tiered assurance model that help designers demonstrate security best practices and protection against realistic software and hardware attacks.

As a fully accredited PSA Certified evaluation lab, Keysight evaluates your product against PSA Certified requirements and guides you from preparation through successful certification. We help you prepare your product for PSA Certified with pre-certification evaluations and readiness assessments, perform the formal security evaluation at our accredited lab, and deliver the Evaluation Technical Report (ETR) used by the PSA Certified program to issue the certificate.

Why get PSA Certified with Keysight?

Gain efficiencies

Leverage decades of embedded and chipset security experience, including side-channel analysis, fault injection, and device security, to streamline your PSA Certified journey and avoid costly rework.

Increase your chance of first-time success

Use our pre-certification assessments, training, and documentation support to ensure your product is ready before formal evaluation, reducing delays and unexpected findings.

Strengthen security beyond the certificate

Work with our engineering and security experts to improve your security architecture, testing practices, and product hardening to gain lasting security value — not just a one-time badge.

What is PSA Certified?

PSA Certified is a multi-level security framework created for the IoT sector. It standardizes how chips, software platforms, and devices demonstrate security, from threat analysis and architecture through to independent evaluation and certification.

Key characteristics:

  • Tiered security assurance: multiple levels of certification with increasing depth of testing and robustness requirements.
  • Focus on Root of Trust: starts from the chip’s Root of Trust (RoT) and extends to system software and device applications.
  • Broad applicability: applies to chips, software, and devices. Level 1 covers all three scopes, while higher levels focus primarily on silicon and RoT components.

For many semiconductor vendors, PSA Certified has become a default certification path to benchmark the security of silicon products and demonstrate comparable assurance across different chips. 

PSA Certified Logo

How we work with you on PSA Certified

Discovery & Scoping

We begin with a joint workshop to understand your architecture and markets, select the right PSA Certified level, and define the Target of Evaluation (ToE) and scope.

Training & Alignment (Optional)

SESIP/PSA training and workshops align your engineering and security teams on PSA concepts, requirements, and how PSA relates to other schemes.

Security Documentation & Evidence

We help you prepare threat models, architecture descriptions, questionnaires, and Security Target–style documentation so your ToE matches PSA Certified expectations.

Pre-Certification Assessment

Our experts perform pre-certification testing and vulnerability assessments, including software and (where applicable) physical attack evaluations, to identify gaps before formal evaluation.

Formal PSA Certified Evaluation

As an accredited lab and founding member of the program, we execute the independent evaluation at our lab, perform the required testing, and deliver the Evaluation Technical Report (ETR) to the PSA Certified scheme.

Post-Certification & Next Steps

We support you in communicating your certification and planning the roadmap for future products or higher PSA Certified levels as your threat model evolves.

Where PSA Certified applies

PSA Certified is used across a wide range of connected products, from silicon building blocks to end-user devices in critical industries. Designed for compositional use, it allows vendors to build on top of PSA Certified chips and platforms and then certify their final devices more efficiently.

Semiconductor & IP Vendors

General-purpose MCUs and MPUs, wireless SoCs (BLE, Wi-Fi, cellular, UWB), secure elements and Roots of Trust, connectivity and security companion chips.

IoT & Smart Home Devices

Smart lighting and thermostats, climate control systems, smart speakers and home hubs, security cameras, smart appliances, and consumer gateways.

Industrial IoT & Energy

Industrial controllers and gateways, smart meters, grid and substation equipment, EV charging stations, and related infrastructure components.

Automotive & Mobility

Automotive ECUs and domain controllers, telematics control units (TCUs), digital key systems, in-vehicle gateways, and charging infrastructure.

Payments, Identity & Access Control

Payment terminals and PoS devices, smart locks, secure access control systems, and other high-value connected devices handling identity or transactions.

PSA Certified levels and typical use cases

PSA Certified Level 1 provides entry-level, questionnaire-based certification that confirms security-by-design principles and baseline requirements are in place. Typical products include general-purpose MCUs and connectivity chips in low-risk environments, IoT software platforms and RTOSes used as a basis for secure devices, and consumer IoT products where physical attacks are unlikely but demonstrating good security hygiene remains important.

PSA Certified Level 2 builds on Level 1 with independent lab testing focused on resistance to scalable remote software attacks against the PSA Root of Trust. Typical products include wireless SoCs and secure microcontrollers for smart home and building automation, smart home hubs, routers and gateways, as well as connected appliances, lighting controllers, and HVAC equipment exposed to larger networks or the internet.

PSA Certified Level 3 extends Level 2 to cover robustness against physical attacks and more advanced logical attacks, including side-channel and fault injection techniques. Typical products include automotive ECUs, digital key systems and vehicle gateways, smart meters and grid devices deployed in the field, and smart locks, secure access control systems, and payment terminals used in high-value or regulated environments.

PSA Certified Level 4 delivers the highest level of assurance in the framework, targeting integrated secure enclaves or elements and Root of Trust components that must withstand sophisticated physical and software attacks while protecting high-value assets such as cryptographic keys. Typical products include advanced secure elements and secure enclaves in wireless SoCs, chips used in safety-critical industrial and automotive systems, and platforms that protect sensitive models, credentials, or data at the edge.

“This certification is a major milestone for Silicon Labs and a testament to the strength of our collaboration with Keysight. Achieving PSA Certified Level 4 required more than just technical readiness—it demanded a testing partner with deep expertise, flexible processes, and a shared commitment to security excellence. Keysight played a critical role not only in guiding us through the evaluation but in pushing the limits of what we could achieve. Their rigorous approach and hands-on support made it possible to reach this advanced level of assurance.”

Rohit Ravichandran
Product Manager for IoT Security
Silicon Labs

Read the Press Release

Interested in this service? Reach out to learn more.