Corsec would like to congratulate our partner, Wind River Systems, Inc., on completing the Federal Information Processing Standard Publication 140-3 (FIPS 140-3) validation process on their Wind River FIPS Object Module. Completion of the FIPS 140-3 validation process provides reassurance and third-party confirmation that the product meets rigorous government security requirements for protecting sensitive data.
To achieve this benchmark, Wind River partnered with Corsec, completing the validation at a Level 1 as seen in certificate #5396. For more information on the validation and to find additional details on the module’s security policy, visit NIST’s validated modules site.
To learn how to engineer your product to meet federal and regulated industry requirements—and avoid common certification delays, schedule time to speak to a Corsec engineer.
About FIPS 140
FIPS 140-2 / FIPS 140-3 are a joint effort by the National Institute of Standards and Technology (NIST) in the United States and the Communications Security Establishment Canada (CSEC), under the Canadian government. The Cryptographic Module Validation Program (CMVP), headed by NIST, provides module and algorithm testing for FIPS 140, which applies to Federal agencies using validated cryptographic modules to protect sensitive government data in computer and telecommunication systems. FIPS 140 provides stringent third-party assurance of security claims on any product containing cryptography that may be purchased by a government agency.
FIPS 140 is mandated by law in the U.S. and very strictly enforced in Canada. FIPS 140 has gained worldwide recognition as an important benchmark for third party validations of encryption products of all kinds. A FIPS 140 validation of a product provides end users with a high degree of product security, assurance, and dependability.
About the Wind River FIPS Object Module
The Wind River FIPS Object Module is a general-purpose software cryptographic library offering symmetric encryption/decryption, digital signature generation/verification, hashing, cryptographic key generation, random number generation, message authentication, and key establishment functions.
It is designed for ease of use with the popular OpenSSL cryptographic library and toolkit and is available for use as part of Wind River’s platforms.
About Corsec Security, Inc.
For over 28 years, Corsec has guided companies through complex security certifications, like FIPS 140-2 / FIPS 140-3, Common Criteria (CC), CSfC, and DoD STIG / DoDIN APL.
Corsec’s end-to-end approach helps organizations reduce risk, avoid certification delays, and accelerate time to market. From mobile devices to satellites, our expertise ensures a more predictable and efficient path to validation.
###
Connect With Us:
Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – Subscribe
Press Contact:
Jake Nelson
Corsec Director of Marketing
jnelson@corsec.com
