Schréder – Inteligentní a propojená řešení pro města

Cybersecurity by design Cybersecurity is embedded at every level of Schréder EXEDRA, combining IT security (data, cloud, user access) with product security (devices, firmware, operational processes). Measures are aligned with the most relevant international standards and regulations.

Standards & compliance • Schréder EXEDRA

Product security • Compliance with EN 18031-1 (RED-DA) – Certification pending

certified to ISO/ IEC 27001:2022 (information security) • GDPR-compliant processing of personal and location data • Data sharing

• Prepared for the upcoming EU Cyber Resilience Act and aligned

User and access control • Role-based access control (RBAC) ensuring permissions match responsibilities • Multi-factor authentication (MFA) to prevent account compromise • Automatic session time- outs and strong password policies with EU and international standards such as IEC 62443 for industrial control system security • Unique digital identities (X.509 certificates) and tamper-resistant authentication • AES-128 encryption at the link layer for secure mesh communications • Secure firmware with signed images to prevent malicious code • Over-the-air (OTA) updates with integrity checks to patch vulnerabilities quickly

and data portability in compliance with the EU Data Act

• Ongoing

alignment with NIS2

requirements, supported by ISO/IEC 27001:2022 certification • Ensuring long-term

compliance with European and international legislation on information security and personal data

Monitoring & resilience • Microsoft Azure cloud hosting certified to ISO/

Network & cloud security • Wi-SUN mesh redundancy: hybrid star-mesh architecture with no single point of failure • LTE-M / NB- IoT WAN with private tunnels to Schréder EXEDRA • Microsoft Azure hosting, including DDoS protection, geo-redundancy and automatic failover

IEC 27017, 27018 and 27701 (cloud and data privacy)

• Backup and disaster recovery aligned with European legislation • ISO-certified disaster recovery practices delivering industry-leading

security and compliance • Data kept safe and quickly restorable in any situation • Strong focus on reliability and the highest standards of customer assurance

• VPN and TLS 1.3 encryption for

end-to-end secure communications

31

Powered by