
A global leader in applied safety science, UL Solutions transforms safety, security and sustainability challenges into opportunities for customers in more than 110 countries. We deliver testing, inspection and certification services, plus software and advisory offerings that support our customers’ product innovation and business growth. We help our customers innovate, launch new products and services, navigate global markets and complex supply chains, and grow sustainably and responsibly. From the adoption of electrification to the enablement of 5G and new mobility, we look toward new frontiers. Our science is your advantage.

Applus+ Laboratories is a division of the Applus+ Group that provides testing and certification from a network of multidisciplinary laboratories in Europe, Asia, and North America. Our Cybersecurity laboratories support developers of ICT products, components, and systems to demonstrate the compliance with applicable requirements and standards. In 2022, the cybersecurity labs jtsec and Lightship Security became part of Applus+. We provide Common Criteria evaluations worldwide, EAL based and PP-based for various schemes, including NIAP-listing and SOG-IS Technical Domains. We are also active contributors for EUCC scheme definition. Our labs are accredited for FIPS 140-3, the Spanish LINCE, and other schemes.

Intertek Acumen Security is a full service security certification firm offering end to end solutions from initial gap analysis and design consulting to documentation, accredited lab evaluations (FIPS 140 2, 140-3 & Common Criteria), and post certification support. With more than 20 years of experience, they guide ICT product teams through global certification standards (FIPS, CC, CSfC, Secure Supply Chain, UC APL) to streamline time to market and ensure compliance. Accredited as both consulting and testing lab, they maintain a 100% evaluation success rate and assist clients even after certification, helping with go to market strategies and continuous compliance.

Securus Consulting Group is an agile group established in 2020, 100% Australian owned and operated, and focused on being a capability enabler for other organisations. Our expertise is based on our staff having spent their entire careers working in fives-eyes agencies and industries on developing new techniques and capabilities that test, assess, evaluate cyber and deploy security systems, devices, and products to a high level of assurance to protect information at all levels of classification and sensitivities. Our team offers expertise in ICT security and architecture, including systems design, audit, cryptography, hardware, software, cross-domain solutions, and security policy, at all levels of assurance.

Brightsight is a leading global IT security evaluation laboratory, providing comprehensive testing and evaluation services for a wide range of IT products. With decades of experience and a team of expert evaluators, Brightsight is committed to helping customers build digital trust in their products through rigorous and independent security assessments.

TÜV Informationstechnik (TÜVIT), based in Essen, Germany, is one of the world’s leading service providers for Common Criteria (CC) evaluations of hardware and software and is authorized to perform evaluations according to a total of five different country schemes. In addition to the CC certification in Germany, TÜVIT also offers the possibility of completing certification in Japan (JISEC), Singapore (SCCS), Qatar (QCCS) or the Netherlands (NSCIB). With more than 60 licensed evaluators, we have successfully completed over 700 evaluation projects according to CC (from EAL1 to EAL7).

atsec information security is an independent, international, standards-based IT security consulting, evaluation, and testing company. With offices in Europe, the U.S., and Asia, we support commercial and government clients worldwide by combining a business-oriented approach with deep technical expertise. Our accredited laboratories test and evaluate products against internationally recognized standards, including Common Criteria, EUCC, FIPS 140-3, O-TTPS, PCI, ISO/IEC 27001, NESAS, MDCert, SESIP, IEEE 2621 Medical Device Certification, and FIDO. We have performed many vulnerability assessments, cryptographic tests, security audits, and independent evaluations. Our team brings extensive experience across operating systems, databases, network devices, embedded systems, and other technologies, helping assure customers of the security and trustworthiness of the products they use. atsec serves clients of all sizes across industries such as telecommunications, finance, energy, and defense.

CCLab combines deep expertise in Common Criteria (ISO 15408) and cybersecurity compliance with an agile, client-focused approach — reducing certification timelines and costs without compromising quality. Our EUCC-accredited lab is licensed under Italy and the Netherlands providing your certificates recognition across Europe and worldwide. As a member of the global QIMA Group, we deliver reliable, end-to-end support throughout your certification journey. Our experienced team guides you through every step, from consulting to full evaluation and specialized training. With global presence, efficiency, and flexibility, CCLab is your trusted partner for fast and predictable cybersecurity evaluation and certification.

As a leader in testing, certification and inspection industry, we ensure safety, security and sustainability in the three areas of life on the road, at work and at home.

High-quality IT-security certifications challenge the budget and schedule of developers and vendors of IT products. We support our customers while facing these challenges and supply them with a competitive advantage.

Qualcomm is enabling a world where everyone and everything can be intelligently connected. Our one technology roadmap allows us to efficiently scale the technologies that launched the mobile revolution – including advanced connectivity, high-performance, low-power compute, on-device intelligence and more – to the next generation of connected smart devices across industries. Innovations from Qualcomm and our family of Snapdragon platforms will help enable cloud-edge convergence, transform industries, accelerate the digital economy, and revolutionize how we experience the world, for the greater good. Qualcomm Incorporated includes our licensing business, QTL, and the vast majority of our patent portfolio. Qualcomm Technologies, Inc., a subsidiary of Qualcomm Incorporated, operates, along with its subsidiaries, substantially all of our engineering, research and development functions, and substantially all of our products and services businesses, including our QCT semiconductor business. Snapdragon and Qualcomm branded products are products of Qualcomm Technologies, Inc. and/or its subsidiaries. Qualcomm patented technologies are licensed by Qualcomm Incorporated.

With presence and customers across 5 continents, Secure-IC is the rising leader and the only global provider of end-to-end cybersecurity solutions for embedded systems and connected objects. Driven by a unique approach called PESC (Protect, Evaluate, Service & Certify), Secure-IC positions itself as a partner to support its clients throughout and beyond the IC design process. Relying on innovation and research activities, Secure-IC provides silicon-proven and cutting-edge protection technologies, integrated Secure Elements and security evaluation platforms to reach compliance with the highest level of certification for different markets (such as automotive & smart mobility, defense & space, semiconductors, critical infrastructures, server & cloud, healthcare, consumer electronics). Secure-IC has an extensive expertise and a unique perspective on the challenges and opportunities presented by the transition to Post-Quantum Cryptography (PQC). This vision is grounded in many years of dedicated research, the creation of innovative PQC algorithms, the development of advanced PQC-based products, and extensive collaboration with customers to seamlessly integrate PQC solutions into their systems. Secure-IC’s insights are drawn from a rich history of pioneering work in the PQC field, ensuring a comprehensive and informed analysis of this critical evolution in cybersecurity. For more information, please visit https://www.secure-ic.com or follow Secure-IC on LinkedIn, X (Twitter), Wechat.

Badge/Lanyard Sponsor Teron Labs is a FIPS 140 laboratory based in Australia and a Common Criteria (CC) laboratory under the Australian Information Security Evaluation Program (AISEP). Our evaluations are regularly cross-posted on the NIAP PCL. We aim to help organizations globally achieve certifications in a timely and predictable manner. Understanding the impact of delays on sales, we work closely with clients throughout the product development and evaluation process to ensure certifications are obtained without roadblocks. Unlike larger, multinational cybersecurity firms, Teron Labs specializes in security testing for ICT products, particularly in FIPS 140 and Common Criteria. Our focused expertise, simpler business structure, and low overheads give us a competitive edge in delivering personalized consulting and testing solutions.

eShard is a cybersecurity specialist that develops and markets advanced testing solutions. eShard’s solutions allow industries to qualify their cyber protections in the face of the complexity of attacks. To date, eShard has 3 product offerings to increase confidence thanks to extensive and intensive testing: 1/ Laboratory equipment and data science platform (esDynamic) to test the resilience and protection of embedded systems: Evaluation of the resistance of chips and firmware (Military, Payment, IoT, Automotive, Healthcare) to physical and logical attacks (Side Channel, Fault Injection, Photoemission, Fuzzing) in the most critical layers of the systems (cryptographic algorithms, bootloader…). 2/ Cyber testing solution for mobile applications (esChecker): Dynamic SaaS tool for analyzing the binary code of mobile applications both for Android and iOS. 3/ Cyber testing solution for Windows, Linux systems or mobile platforms (esReven): Timeless dynamic analysis for Vulnerability and Malware Analysis.

Keysight Device Security (KDS), part of Keysight Technologies, has over two decades of experience in device security research and testing. Specializing in side channel analysis and fault injection, Riscure’s tools and expert services help developers safeguard products against both physical and logical threats. Through proven methodologies and cutting-edge solutions, Keysight enhances security implementations across industries, ensuring robust defenses for next-generation semiconductors, embedded systems, and devices.

Red Alert Labs is an international cybersecurity lab specializing in IoT security. They offer innovative consulting, evaluation, and certification services for IoT products, processes, and services, covering the entire spectrum from chip to cloud. Their AI-driven innovation, CyberPass, is a SaaS platform that equips enterprises with a cost-effective and scalable solution to assess and manage the cybersecurity compliance of connected products.

BiometricUpdate.com is the leading source for breaking news, analysis, and research on the global biometrics market. We deliver exclusive daily coverage via our website and newsletter, providing insights into fingerprint, voice, iris, and facial recognition, as well as emerging technologies like DNA analysis and gait recognition.Our reporting spans biometric and non-biometric identification methods, including behavioral biometrics, identity document verification, and telephone forensics. We cover key applications in national security, mobile identity, and border control, with a strong focus on UN Sustainable Development Goal 16.9 for universal digital identification and the ID4Africa movement. With a global audience of 3 million readers annually, our content serves governments, law enforcement agencies, financial institutions, OEMs, service providers, system integrators, and industry professionals. BiometricUpdate.com remains the go-to resource for staying informed on the latest developments in biometric technology and digital identity solutions.

The Common Criteria Users Forum (CCUF) was founded in 2012 and is a community based around those using the Common Criteria and ISO/IEC 15408 standards. The CCUF is an evolution of the CC Vendors’ forum (founded in 2004) and the CC Forum (founded in 2010). The Common Criteria Users’ Forum mission is to provide a voice and communications channel between the CC community and the CC organizational committees, CC evaluation schemes, and policy makers.

The EU Common Criteria Information Sharing and Analysis Centre (EUCC ISAC) is an international non-profit association committed to fostering collaboration and harmonization in cybersecurity certification across Europe and beyond. By gathering public and private stakeholders, its mission is to build trust and interoperability within the EUCC scheme ecosystem, fostering a robust market for certified ICT products that address evolving technological challenges and threat landscapes. The ISAC provides the European Commission, EU Member States, and ENISA with key interpretation and methodologies update to ensure consistent and effective implementation of the EUCC scheme. The EUCC ISAC contributes to maintaining the state of the art through the provision of attack quotations and the development of an up-to-date attack catalogue.

With over 25 years of experience, Eurosmart gathers technological experts in the field of Digital Security. This Brussels-based association advocates for a high security level in digital interactions.
Members of Eurosmart are designers or manufacturers of secure elements, semiconductors, smart cards, systems on chip, High Security Hardware and terminals; biometric technology providers; system integrators; secure software and application developers and issuers. Members are also involved in security evaluation as laboratories, consulting companies, research organisations and associations.

GlobalPlatform is a technical standards organization that enables the efficient launch and management of innovative, secure-by-design digital services and devices, which deliver end-to-end security, privacy, simplicity and convenience to users. It achieves this by providing standardized technologies and certifications that empower technology and service providers to develop, certify, deploy and manage digital services and devices in line with their business, security, regulatory and data protection needs.

OASIS is a nonprofit consortium advancing open standards and open source development on a global scale. We’re the home of KMIP, STIX, TAXII, OpenC2, PKCS#11, SAML and CACAO course-of-action playbooks. One of our largest open source projects is the Open Cybersecurity Alliance (OCA). OCA is building an open ecosystem where cybersecurity products interoperate without the need for customized integrations. OCA open project operates independently under industry-approved process and IPR policies. All are welcome to participate.

OpenSSL is an open-source software library used for secure communication over computer networks. It provides robust cryptographic functions, including encryption, decryption, and certificate handling, essential for implementing secure internet protocols like TLS (Transport Layer Security) and SSL (Secure Sockets Layer). OpenSSL supports various cryptographic algorithms, such as AES, RSA, and SHA, ensuring data confidentiality, integrity, and authentication. Additionally, OpenSSL includes a FIPS 140 (Federal Information Processing Standard) mode, which ensures compliance with stringent security standards required for government and regulated industries. This makes OpenSSL a critical tool in cybersecurity, protecting sensitive information across diverse applications and systems.

Trusted Connectivity Alliance (TCA) is a global, non-profit industry association working to enable trust in a connected future. The organisation’s vision is to drive the sustained growth of a connected society through trusted connectivity which protects assets, end user privacy and networks.
TCA members are leaders within the global Tamper Resistant Element (TRE) ecosystem, and work collectively to define requirements and provide deliverables of a strategic, technical and marketing nature. This enables all stakeholders in our connected society to benefit from the most stringent secure connectivity solutions that leverage TCA members’ expertise in tamper proof end-to-end-security.