ETSI TC Cyber
Cybersecurity
ETSI Technical Committee on Cyber Security:
The rapid evolution and growth in the complexity of new systems and networks, coupled with the sophistication of changing threats, present demanding challenges for maintaining the security of Information and Communications Technologies (ICT) systems and networks. Security solutions must include a reliable and secure network infrastructure, but they must also protect the privacy of individuals and organizations. Security standardization, sometimes in support of legislative actions, has a key role to play in protecting the Internet and the communications and business it carries. We offer market-driven cybersecurity standardization solutions, along with advice and guidance to users, manufacturers, network, infrastructure and service operators and regulators.​
Terms Of Reference:
The main responsibilities of ETSI TC CYBER are:
-
To act as the ETSI centre of expertise in the area of Cyber Security
-
Advise and assist all ETSI Groups with the development of Cyber Security requirements
-
To develop and maintain the Standards, Specifications and other deliverables to support the development and implementation of Cyber Security standardization within ETSI
-
To collect and specify Cyber Security requirements from relevant stakeholders
-
To identify gaps where existing standards do not fulfil the requirements and provide specifications and standards to fill these gaps, without duplication of work in other ETSI committees and partnership projects
-
To ensure that appropriate Standards are developed within ETSI in order to meet these requirements
-
To perform identified work as sub-contracted from ETSI Projects and ETSI Partnership Projects
-
To coordinate work in ETSI with external groups such as ENISA
-
To answer to policy requests related to Cyber Security, and security in broad sense in the ICT sector.​
Areas of Activity:
​The activities of TC CYBER are performed in close co-operation with relevant standards activities within and outside ETSI.
The activities of ETSI TC CYBER include the following broad areas:
-
Cyber Security
-
Security of infrastructures, devices, services and protocols
-
Security advice, guidance and operational security requirements to users, manufacturers and network and infrastructure operators
-
Security tools and techniques
-
Provision of security mechanisms to protect privacy
-
Creation of security specifications and alignment with work done in other TCs.​
TC CYBER has two Working Groups focusing on specific areas::
-
Quantum-Safe Cryptography
-
EU Standardisation Requests, including developing harmonised standards for vertical product categories in support of the Cyber Resilience Act.
Topic 17 - Browsers
Daniel Thompson
European standard(s) on essential cybersecurity requirements for standalone and embedded browsers
Topic 18 - Password Managers
Daniel Thompson
European standard(s) on essential cybersecurity requirements for password managers
Topic 19 - Antivirus
Pol Alemany
European standard(s) on essential cybersecurity requirements for software that searches for, removes, or quarantines malicious software (Antivirus)
Topic 20 - VPN
Aki Rose Braun
European standard(s) on essential cybersecurity requirements for products with digital elements with the function of virtual private network (VPN)
Topic 21 - Network Management System
Santeri Toikka
European standard(s) on essential cybersecurity requirements for network management systems (NMS)
Topic 22 - SIEM Systems
August Bournique
European standard(s) on essential cybersecurity requirements for Security information and event management (SIEM) systems
Topic 23 - Boot Managers
Christian Horchert
European standard(s) on essential cybersecurity requirements for boot managers
Topic 24 - PKI
Sammy Haddad
European standard(s) on essential cybersecurity requirements for public key infrastructure and digital certificate issuance software (PKI)
Topic 25 - Virtual Network Interfaces
Valerie Aurora
European standard(s) on essential cybersecurity requirements for physical and virtual network interfaces
Topic 26 - Operating Systems
Aeva Black
European standard(s) on essential cybersecurity requirements for operating systems
Topic 27 - Routers, modem and switches
Bruno Banelli
European standard(s) on essential cybersecurity requirements for routers, modems intended for the connection to the internet, and switches
Topic 36 - Firewalls
Luka Perkov
European standard(s) on essential cybersecurity requirements for firewalls, intrusion detection and/or prevention systems
Topic 35 - Hypervisors
Mohamad Hajj
European standard(s) on essential cybersecurity requirements for firewalls, intrusion detection and/or prevention systems