Arm Newsroom Blog
Blog

PSA Certified Enters a New Era: GlobalPlatform to Steer Next Phase of Growth

Born at Arm. Backed by the industry. Built for the future of secure, connected systems
By Rob Coombs, Director, Market Strategy, Architecture Technology Group, and PSA Certified Co-Founder, Arm

From AI at the edge to critical infrastructure in cities, factories and homes, the digital systems shaping our future all depend on a secure beginning: a Root of Trust (RoT). That’s why in 2019, Arm, and its six founding partners, made up of leading security evaluation labs, launched PSA Certified, a global security framework designed to help the ecosystem build and validate trusted connected products.

Today, PSA Certified is entering its next phase of growth under new stewardship. GlobalPlatform, a globally recognized body for open security standards, will assume governance of PSA Certified, ensuring its continued success, neutrality and alignment with evolving global regulations.

This is more than a milestone. It’s a sign that the ecosystem we envisioned has taken root and is ready to scale even further.

Built on Trust: The PSA Certified Journey

At its core, PSA Certified provides a standardized way to evaluate and certify the Root of Trust (RoT), a critical component that safeguards foundational security functions such as device identity, cryptography, secure boot and attestation. Before PSA Certified, the industry lacked consensus on how to define or validate a RoT. That ambiguity created friction, fragmentation and uncertainty.

PSA Certified was created to solve that challenge, delivering a layered certification model and a scalable evaluation framework. The result? A security foundation that is now embedded across the ecosystem and adopted by the world’s leading semiconductor companies, with more than 250 certified products spanning silicon, software and devices. These certifications have enabled trust from chipmakers to OEMs to software providers and beyond, defining a common measure for security across the value chain.

Today, PSA Certified is more than a standard. It’s a global enabler of supply chain assurance, a blueprint for aligning security architectures with regulatory requirements and best practices.

Why GlobalPlatform and Why Now?

As PSA Certified matured into a global standard, the needs of the industry evolved. The next chapter requires broader participation, transparent governance and structured alignment with fast-moving regulation.

That’s where GlobalPlatform comes in.

With more than 25 years of experience managing open, secure technologies, GlobalPlatform brings a proven model of neutrality and technical depth. Its standards are already mapped to emerging policy efforts , such as Europe’s Cyber Resilience Act and initiatives like Trusted Chips (TC47X). GlobalPlatform also maintains SESIP (Security Evaluation Standard for IoT Platforms), the framework that underpins PSA Certified’s Level 2 and Level 3 assurance levels.

This transition means PSA Certified will benefit from:

• Independent, neutral governance

• Open working group participation

• Alignment with international standards and regulation

• Broader community engagement

Importantly, nothing changes about the PSA Certified brand, certification levels or evaluation methodology. The ecosystem experience stays consistent and existing investments remain valid.

Arm’s Commitment Remains Unchanged

Although stewardship is shifting, Arm’s commitment to PSA Certified remains strong. We continue to be active contributors, advocates and adopters.

One example of this commitment is Trusted Firmware, a long-term stable (LTS) reference implementation for root of trust firmware which has lowered barriers and sped adoption across the silicon ecosystem, and continues to be independently certified through PSA Certified. As AI and compute increasingly move to the edge, PSA Certified’s role in enabling measurable, scalable and reusable security becomes even more critical.

This handover marks a moment of success for Arm and the wider security community. PSA Certified began as a focused initiative. Now, it becomes an industry-led standard, ready to grow, evolve and support a world of intelligent, connected systems.

What Happens Next

A new PSA Certified Working Group within GlobalPlatform will shape the path forward. By becoming a member of GlobalPlatform, the entire ecosystem can contribute: From silicon vendors and software developers to OEMs and policymakers.

This move ensures that PSA Certified continues to:

• Reflect real-world security needs

• Evolve in response to regulatory trends

• Foster broad ecosystem collaboration

• Remain scalable, sustainable and globally relevant

As regulations tighten and new use cases emerge – from autonomous vehicles to smart factories – collaborative stewardship becomes essential. This transition is not simply about continuity; it’s about expanding influence and deepening impact.

The Future is Secure – and Open

We believe this transition reflects the best of what PSA Certified set out to do: to create a shared, scalable foundation for device security, driven by openness and collaboration. In GlobalPlatform, we’ve found the right partner to carry that vision forward.

PSA Certified will continue to support the industry with trusted, accessible tools for building and certifying secure systems. And Arm will continue to support PSA Certified, ensuring our platforms; and those of our partners – benefit from recognized, standardized security.

This is what success looks like: A security foundation built by Arm and its partners, adopted globally and now handed over to thrive at scale.

For further information about GlobalPlatform assuming governance of PSA Certified, visit their website here.

Article Text
Copy Text

Any re-use permitted for informational and non-commercial or personal use only.

Editorial Contact

Arm Editorial Team
Subscribe to Blogs and Podcasts
Get the latest blogs & podcasts direct from Arm

Latest on X

promopromopromopromopromopromopromopromo