The SecIC-HSM security firmware is a lightweight, standardized HSM hardware security module firmware, marking the first post-quantum cryptographic product certified by NIST FIPS CAVP in Chinese Mainland. Leveraging native hardware security capabilities and hardware accelerators, it enables compliant hardware security domains and cryptographic operations at the chip-level firmware empowerment, establishing a trusted security anchor at the controllers foundational layer. The product meets core security capabilities such as secure boot verification, firmware upgrade signature validation, end-to-end encrypted communication, and remote diagnostics, safeguarding against traditional cyberattacks and future quantum decryption risks. It serves as the preferred lightweight information security solution for automotive, aviation, aerospace, embodied systems, medical, and other industries, complying with regulations like UNECE WP29 R155 and the EU Cyber Resilience Act.
- Support multi task scheduling: Built in RTOS real-time operating system, supports multi task scheduling and high priority task preemption, meeting the deployment requirements of complex security communication scenarios.
- Support multi-core parallel access: Allow different cores of the MCU chips main core to "simultaneously access" firmware in parallel, avoiding access conflicts of hardware resources.
- Support key lifecycle management: Support automatic key derivation in production line environments, comply with SHE/SHE+specifications, and meet high sensitivity key injection requirements.
- Support AUTOSAR integration: compatible and seamlessly migrated on mainstream AUTOSAR basic software platforms.
- Support high-performance deployment of quantum cryptography after PQC: Support performance optimization of quantum cryptography after PQC, such as Kyber, Dilithium, Sphinx+, LMS, etc.
- Support continuous upgrade after mass production: Support continuous firmware updates after mass production to meet the requirements of post quantum cryptographic algorithm iteration migration and key updates.