Cutting-Edge Hardware Security IP

Overview

Ensuring the system security by safeguarding the integrity, authenticity, freshness, and confidentiality of assets

The KSE portfolio, Kudelski IoT’s hardware security IP, provides SoC manufacturers with robust, modular, and advanced security and cryptographic capabilities. Our solutions address IoT security requirements, with upgradable cryptographic capabilities to adapt to evolving conditions. The KSE Portfolio provides a diverse range of proven, certification-ready embedded security features, compliant with key governmental and industry standards.

KSE SOLUTIONS PORTFOLIO

Offering SoC manufacturers flexibility according to their specific needs for security, performance, and gate count

At Kudelski IoT, we acknowledge the multifaceted landscape of security standards, regulations, requirements, and services that are mandated by various use cases. In response to this complex environment, our product portfolio has been structured into two distinct product series, the KSE5 and KSE3, and complemented by a modular architecture. Each of these series is designed to meet a specific security level while providing a common core feature set.

Our portfolio organization reflects our dedication to delivering tailored solutions that serve diverse applications needs, offering SoC manufacturers flexibility according to their specific requirements for security, performance, and gate count. As part of our offering, we provide full support for integrating the KSE and obtaining certifications. Our products adhere to strong coding standards and undergo comprehensive assessments and audits.

Key Features

  • Built-in HW security: Combining a proprietary RISC-V processor with a robust and resilient security foundation, our solutions offer physical attack protection and anti-tampering capabilities to safeguard sensitive data and operations within the enclave.
  • Programmable Trust Application (TA): Proprietary TAs are developed securely, isolated by the secure platform. The IP’s secure debug can be utilized to facilitate TA development and integration.
  • Multiple use cases & verticals: Meets the security requirements and standards of multiple vertical markets and use cases.
  • Safeguarding external NVM data: Empower application and data security for external NVM with our Secure Flash Access (SFA) block, ensuring top-tier confidentiality, authenticity, integrity, freshness, and real-time access assurance.
  • Cryptographic, Random Number Generation, and Key Protection Services: Seamlessly integrated cryptographic solution, including Quantum-Resistant Cryptography (QRC), secure provisioning, storage, and usage of secret keys.
  • Built-in advanced security services: Including secure device lifecycle, secure boot, secure debug, data and communication. The integration of these security services is simplified through the Kudelski Secure Services Library (KSSL).

Block Diagram

Cutting-Edge Hardware Security IP Block Diagram

Technical Specifications

×
Semiconductor IP