atsec information security is an international, independent IT security consulting, evaluation, and testing company. We combine a business-oriented approach with technical expertise, serving commercial and government sectors across Europe, the U.S., and Asia.
Our experts specialize in technologies such as operating systems, databases, network devices, and embedded systems. Our labs evaluate products against standards like Common Criteria, FIPS 140-3, PCI, ISO/IEC 27001, and IEEE 2621 Medical Device Certification to assure product security.
We conduct vulnerability assessments, cryptographic tests, security audits, and independent assessments for clients in telecommunications, finance, energy, and defense sectors. atsec is a key industry contributor, founding the International Cryptographic Module Conference (ICMC) and actively participating in Common Criteria working groups, ISO/IEC 19790, GSMA security groups, and European Cyber Security Act initiatives.
Amazon Web Services (AWS) is the world’s most comprehensive and broadly adopted cloud, offering over 200 fully featured services from data centers globally. Millions of customers—including the fastest-growing startups, largest enterprises, and leading government agencies—are using AWS to lower costs, become more agile, and innovate faster.
OpenSSL Corporation is a global leader in cryptographic solutions, specializing in developing and maintaining the OpenSSL Library – an essential tool for secure digital communications. The OpenSSL Corporation provides a range of services tailored to assist businesses of all sizes to ensure the secure and efficient implementation of OpenSSL solutions. OpenSSL Corporation also supports projects aligned with its Mission and Values by providing infrastructure, resources, expert advice, and engagement through advisory committees, particularly in the commercial sector. Collaboration among these projects fosters innovation, enhances security standards, and effectively addresses common challenges, benefiting all our communities. OpenSSL Library provides robust cryptographic capabilities, including support for TLS and SSL protocols, encryption, key management, certificate handling, and algorithms approved by the FIPS 140 standard. OpenSSL Library supports a comprehensive range of cryptographic algorithms, including symmetric and asymmetric ciphers, hashes, key management, and certificate handling. It also includes post-quantum algorithm standards (ML-KEM, ML-DSA, SLH-DSA, and ML-KEM hybrids). OpenSSL Library is a fundamental cybersecurity tool that protects sensitive information in various applications and industries. It powers QUIC server/client implementation, leading advancements in post-quantum cryptography and enhancing global security standards against emerging quantum threats.
PQShield is shaping the way the digital world is protected against tomorrow’s threats. Our expertise, clarity, and care have enabled us to deliver new global standards alongside real-world, post-quantum hardware and software upgrades – modernizing the vital security systems and components of the world’s technology supply chain.
A global leader in applied safety science, UL Solutions transforms safety, security and sustainability challenges into opportunities for customers in more than 110 countries. We deliver testing, inspection and certification services, plus software and advisory offerings that support our customers’ product innovation and business growth, including testing and evaluation Services for FIPS 140-2 and FIPS 140-3. UL certification Marks serve as a recognized symbol of trust in our customers’ products and reflect an unwavering commitment to advancing our safety mission. We help our customers innovate, launch new products and services, navigate global markets and complex supply chains, and grow sustainably and responsibly. From the adoption of electrification to the enablement of 5G and new mobility, we look toward new frontiers. Our science is your advantage.
wolfSSL provides FIPS 140-3 certified and post-quantum cryptography (PQC) for enterprise, embedded systems, aerospace, automotive, and other high-security applications. With 2,000+ OEM customers and 5 billion secured connections, our TLS/DTLS 1.3, secure boot, and cryptographic libraries offer efficient, high-assurance security. Our wolfCrypt library includes post-quantum algorithms like ML-KEM (Kyber) and ML-DSA (Dilithium), supporting hybrid cryptography for a smooth transition to quantum-resistant security. This allows organizations to implement PQC alongside traditional encryption like RSA and ECC. wolfBoot ensures signed and verified firmware updates, preventing unauthorized modifications. wolfTPM provides TPM 2.0 security for key management, ensuring trusted device identity and secure storage. wolfSSL supports CNSA 2.0 compliance, integrating with HSMs, secure elements, and cryptographic acceleration for optimized performance. Designed for long-term security and real-world constraints, our solutions help embedded systems meet government and industry security standards. Visit us at ICMC 2025 to discuss how wolfSSL’s cryptographic solutions can help secure embedded systems against evolving threats.
Security and Connectivity for IoT Devices – Allegro Software is a leading provider of IoT device security and connectivity software toolkits to OEMs worldwide. Field proven in 275,000,000+ devices, our solutions enable medical device manufactures to create secure, connected devices. Allegro’s suite of toolkits specifically enable manufacturers to meet HIPAA encryption requirements and the FDA’s new medical device cybersecurity guidelines keeping patient data safe. Pre-integrated with the complete line of Allegro toolkits, Allegro’s ACE toolkit provides FIPS validated cryptography for medical applications deployed in VA and DoD settings. Learn more at http://www.allegrosoft.com.
Intertek Acumen Security is a worldwide leader in cybersecurity evaluation and certification, enabling you to get products into the hands of customers faster. Our team has extensive expertise in a diverse set of standards and certifications to meet your needs, including FIPS 140-2 and 140-3, Common Criteria, CSFC, UC APL, and more. While our security know-how is unrivaled, it’s our service and overall project management that truly sets us apart. Intertek Acumen Security is part of Intertek Group (“ITRK”), a FTSE 100 listed company on the London Stock Exchange with more than 40,000 employees across 1,000+ offices around the world. Learn more at https://www.acumensecurity.net/
Keyfactor brings digital trust to the hyper-connected world with identity-first security for every machine and human. By simplifying PKI, automating certificate lifecycle management, and securing every device, workload, and thing, Keyfactor helps organizations move fast to establish digital trust at scale — and then maintain it. In a zero-trust world, every machine needs an identity and every identity must be managed.
Lightship Security is an accredited Common Criteria and FIPS 140 laboratory that specializes in accelerating Protection Profile conformance for the NIAP Product Compliant List (PCL). We use our industry leading test automation platform that codifies our extensive experience to drive certification results for speed, thoroughness and quality that previously hasn’t been possible.
The Cybersecurity division of DEKRA is an internationally recognized leading Common Criteria IT security evaluation facility and FIPS 140-3 testing laboratory for cryptographic modules. The lab is accredited under the CCRA terms in the Spanish and Turkish schemes for the latest Common Criteria version and in the Spanish scheme under the SOGIS terms in the Hardware Devices with Security Boxes Technical Domain. DEKRA is also accredited by the USA NIST Cryptographic Module Validation Program (CMVP).
Quantinuum, the world’s largest and leading integrated quantum company, pioneers powerful quantum computers and advanced software solutions. Quantinuum’s technology drives breakthroughs in materials discovery, cybersecurity, and next-gen quantum AI. With over 500 employees, including 370+ scientists and engineers, Quantinuum leads the quantum computing revolution across continents.
Founded in 2012, SafeLogic is a premier provider of cryptographic software solutions that enable enduring privacy and trust in the ever-changing digital world. SafeLogic’s CryptoComply FIPS 140-3 validated cryptographic modules support a broad range of platforms, programming languages, and operating environments. Its FIPS Validation-as-a-Service expedites the delivery of CMVP certificates for CryptoComply customers and then keeps those certificates active over time. CryptoComply is also the basis for SafeLogic’s post-quantum cryptography (PQC) capabilities including PQC algorithms, hybrid and pure PQ TLS, and policy-driven crypto-agility. SafeLogic’s newest product is a standalone CAVP-certified Entropy Provider. For more information, go to http://www.safelogic.com.
Teron Labs is a FIPS 140 laboratory based in Australia and a Common Criteria (CC) laboratory under the Australian Information Security Evaluation Program (AISEP). Our evaluations are regularly cross-posted on the NIAP PCL. We aim to help organizations globally achieve certifications in a timely and predictable manner. Understanding the impact of delays on sales, we work closely with clients throughout the product development and evaluation process to ensure certifications are obtained without roadblocks. Unlike larger, multinational cybersecurity firms, Teron Labs specializes in security testing for ICT products, particularly in FIPS 140 and Common Criteria. Our focused expertise, simpler business structure, and low overheads give us a competitive edge in delivering personalized consulting and testing solutions.
In today’s digital landscape, organizations rely on Thales to protect what matters most – applications, data, identities, and software. Trusted globally, Thales safeguards organizations against cyber threats and secures sensitive information and all paths to it — in the cloud, data centers, and across networks. Thales offers platforms that reduce the risks and complexities of protecting applications, data, identities and software, all aimed at empowering organizations to operate securely in the digital landscape. By leveraging Thales’s solutions, businesses can transition to the cloud with confidence, meet compliance requirements, optimize software usage, and deliver exceptional digital experiences to their users worldwide.
Crypto4A’s mission is to pioneer and deliver crypto-agile and quantum-safe cryptographic solutions, ensuring the fundamental trust expected from our digital infrastructures in the upcoming quantum era. Emerging trends in identity management, cloud, edge computing, AI, IoT, blockchain, IT/OT convergence, and the adoption of new post-quantum cryptographic standards demand innovative approaches to next-generation trust infrastructures. Our HSM products and solutions are built on crypto-agile and quantum-safe foundations from the ground up, ensuring we stay ahead of rapid technological advancements. This allows us to guarantee true ownership of cryptographic material without vendor lock-in and support flexible, cloud-scale deployment architectures.
Pseudo random number generators are vulnerable to hacking because they tend to have a predictable pattern hackers can exploit. The weak entropy problem is compounded for FinTech & IoT devices with limited access to physical random events such as mouse movement. EYL provides Quantum random number generator that extracts randomness from radioactive isotope put in the very tiny chip(3x3mm) in order to generate powerful encryption keys.
PQSecure is a unique deep tech company focused on delivering robust, side-channel resistant hardware and software IPs for both classical and post-quantum cryptography. Our mission is to secure the future of embedded and resource-constrained systems by combining high-performance cryptographic design with strong protection against physical attacks such as power analysis, fault injection, and timing attacks. What sets PQSecure apart is our emphasis on formal verification and assurance, ensuring that our cryptographic IPs meet the highest standards of reliability, security, and correctness—critical for integration into secure boot, root-of-trust, HSMs, and other security-critical platforms. Whether you’re looking to future-proof your devices against quantum threats or harden existing systems with proven protections, PQSecure offers flexible, silicon-proven IP solutions built to meet your needs.
ABI Research is a global technology intelligence firm uniquely positioned at the intersection of technology solution providers and end-market companies. We serve as the bridge that seamlessly connects these two segments by providing exclusive research and expert guidance to drive successful technology implementations and deliver strategies proven to attract and retain customers.
The Common Criteria Users Forum (CCUF) was founded in 2012 and is a community based around those using the Common Criteria and ISO/IEC 15408 standards. The Common Criteria Users’ Forum mission is to provide a voice and communications channel between the CC community and the CC organizational committees, CC evaluation schemes, and policy makers. To join, go to http://www.ccusersforum.org/.
The Cryptographic Module User Forum (CMUF) mission is to provide a voice and communications channel between the community of UNCLASSIFIED cryptographic module (CM) and UNCLASSIFIED cryptographic algorithm developers, vendors, consultants, test labs and other interested parties, and the various national, international, and multi-lateral organizational committees, schemes, and policy makers. To Join the CMUF contact any CMUF Steering Committee member.
GlobalPlatform is a technical standards organization that enables the efficient launch and management of innovative, secure-by-design digital services and devices, which deliver end-to-end security, privacy, simplicity and convenience to users. It achieves this by providing standardized technologies and certifications that empower technology and service providers to develop, certify, deploy and manage digital services and devices in line with their business, security, regulatory and data protection needs.
OASIS is a nonprofit consortium advancing open standards and open source development on a global scale. We’re the home of KMIP, STIX, TAXII, OpenC2, PKCS#11, SAML and CACAO course-of-action playbooks. One of our largest open source projects is the Open Cybersecurity Alliance (OCA). OCA is building an open ecosystem where cybersecurity products interoperate without the need for customized integrations. OCA open project operates independently under industry-approved process and IPR policies. All are welcome to participate.
Trusted Connectivity Alliance (TCA) is a global, non-profit industry association working to enable trust in a connected future. The organisation’s vision is to drive the sustained growth of a connected society through trusted connectivity which protects assets, end user privacy and networks.
TCA members are leaders within the global Tamper Resistant Element (TRE) ecosystem, and work collectively to define requirements and provide deliverables of a strategic, technical and marketing nature. This enables all stakeholders in our connected society to benefit from the most stringent secure connectivity solutions that leverage TCA members’ expertise in tamper proof end-to-end-security.