A new call for views from DSIT is considering new regulation regarding the security of “Enterprise connected devices” (or “IoT devices”). VoIP phones are explicitly considered in scope of the proposals along other typical enterprise devices such as cameras, Network Attached Storage and meeting room panels.
The consultation is broadly modelled on the Product Security and Telecommunications Infrastructure Act which introduced minimum security standards for consumer products.
At the heart of the proposals is a new Code of Practice for Enterprise Connected Device Security with 11 security principles (see below).The call for views is considering how this code should be implemented.
The Call for views closes on 7 July and DSIT is also planning to hold stakeholder workshops.
CCUK is considering responding to this consultation. Please get in touch with team@commscouncil.uk to find out more.