I was reminded of this story hitting the news a few weeks back when Rory came home from school the other day asking if we could get an aquarium installed at home which when I enquired further would set us back to the tune of £1000 plus. 🐠

Back in 2017, hackers stole data from a casino in North America via an internet connected fish tank that allowed the tank to be remotely monitored, as well as automatically adjusted temperature wise along with automated feedings. 🍞

Now whilst I could use this all as an excuse to deny my son his dream aquarium my argument wouldn’t stack up so well due to the number of connected products, we have around the house right now which include a smart washing machine as well as a doorbell cam. 🔔

With the Product Security and Telecommunications Infrastructure (Security Requirements for Relevant Connectable Products Regulations coming into force at the end of April, the clock is ticking for businesses (including manufacturers, importers and distributors) involved in the supply chains of connected products to get their game face on if they haven’t done so already as this has been on the radar now for a few years.

So, what will this mean in practice?

Well, there are 3 distinct security requirements to be mindful of with no room for a poker face… 😑 ♠️

♦️The banning of universal default and easily guessable passwords
♥️Publishing information on how to report security issues
♣️Publishing information on minimum security update periods

Loads to think about here with the clock now ticking…⏲️

It’s time to place your chips on the table and be compliant ready….🎰

More thoughts on this to come, but do reach out in the meantime for a further discussion…