Cookie Consent by Free Privacy Policy Generator
IoT Cyber Scheme

Validate Device Security. Build Consumer Trust. 

What is IoT Cyber Scheme?

The IASME IoT Cyber Scheme is a recognised certification framework designed to help manufacturers validate the security of their connected products. It provides assurance that internet-connected devices meet key cybersecurity standards and comply with emerging UK and international legislation.

The scheme is fully aligned with all 13 provisions of the global ETSI EN 303 645 standard and supports UK government guidance on the security of smart devices. It is also mapped to the IoT Security Foundation Compliance Framework, ensuring global best practices are embedded throughout the certification process.

There are two certification levels available. Level 1 focuses on self-assessment and external review, while Level 2 includes a more rigorous hands-on audit for products that require stronger assurance. Secarma is an accredited certification body for both levels and provides expert-led support throughout the process.

Over 60%
of UK consumers reported concerns about the security of smart home devices.
DCMS Consumer IoT Survey (2023)
Only 20%
% of IoT manufacturers currently meet all basic security requirements set out by ETSI EN 303 645.
IoT Security Foundation
30 billion
The number of global IoT connected devices by 2030, intensifying pressure on manufacturers to meet security expectations.
Statista Research Department
Why is IoT Cyber Scheme Important?

Connected devices have become part of daily life, but historically, many were released with weak or missing cybersecurity controls. With the rise of high-profile vulnerabilities and increased government oversight, IoT security has become both a regulatory requirement and a competitive necessity.

Security Assurance

Certification confirms that your product meets essential security requirements, giving consumers and retailers confidence in its resilience.

Compliance with UK Law

The UK’s Product Security and Telecommunications Infrastructure (PSTI) Act mandates baseline security features for all IoT products sold in the UK. Certification helps manufacturers demonstrate alignment and avoid penalties.

Reputation and Market Advantage

Showing your commitment to secure development strengthens your brand and can influence procurement decisions in security-conscious markets.

How Secarma Delivers Value
A Security Partner, Not Just a Certifier
You will work with a dedicated consultant who understands your product, guides you through each control area and helps you prepare for submission or audit with confidence.
Support for Complex Requirements
If your team is struggling with a control or needs additional security input, Secarma can deliver additional services. These include risk assessments, policy development and penetration testing for connected devices.
Strong Relationship with IASME
We maintain a close working relationship with IASME, and are proud to be the top certification body for the IoT Cyber Scheme. This gives us up-to-date insight into evolving requirements and certification pathways.
Flexible Service Delivery
Whether you are certifying a single product or an entire product line, we scale our support to match your technical scope and delivery timelines.
Streamlined Assessment Process
We provide detailed guidance, help you gather evidence and review your submission to increase your chances of first-time certification.
Ongoing Advisory and Aftercare
Ongoing Advisory and Aftercare Our engagement doesn’t stop at the certificate. We continue to support you as legislation evolves and offer options for re-certification and security roadmap development.
Resources
Stay up to date with expert-written blogs, security labs, downloadable guides and more, all designed to support your journey.
Cyber Essentials & Cyber Essentials Plus
Cyber Essentials & Cyber Essentials Plus
Get in touch
See how we’ve helped hundreds of businesses to improve their cyber security and regain their calm.
Your query
Select one or more options to direct your query to our experts:
Advice
Certification
Testing
General info
Jobs @ Secarma
News and blog posts
We explore common weaknesses in web and mobile apps, from API flaws to logic...
Our penetration testers share how human-led testing uncovers risks that tools...
We dive into the threats hidden in everyday smart devices – from insecure...
We explore why human error remains a top cause of breaches, how phishing and...