Staying cyber secure is an ongoing process. Organizations that embed security throughout the product lifecycle are better positioned to reduce risk, maintain compliance, and deliver resilient products to their customers.
duagon offers a comprehensive set of services throughout the entire product lifecycle. The evaluation of a project with cybersecurity requirements follows similar process steps like a standard customization project for duagon products. The process for an individual project can be accelerated when train builder specific security concepts have been pre-defined.
- At the beginning of your project, duagon will help to define an appropriate security level for your specific use case, offer general cybersecurity consultancy, as well as initial threat & risk analysis.
- The design process follows IEC 62443-4-1 and makes use of our duagon secure product development platforms which include secure coding, product hardening, penetration tests, user access management, setup & maintenance of Public Key Infrastructure (PKI), security documentation, and the setup of vulnerability watch.
- Production will take place in duagon’s in-house factories.
- The delivery of your products will be secured by tamper detection through software integrity checks. You will also receive a security manual.
- Once your product is put into operation, duagon’s vulnerability watch will monitor the security status of all 3rd party components and detected issues in own components. Depending on the feature package implemented, various services help maintain a secure operation like security audit logging, centralized user management or secure firmware update and firewall functionality. Additionally, duagon offers software security updates to close known security vulnerabilities.
- At the end of your product’s lifecycle, duagon will take care of secure and verifiable deletion of sensitive data and disposal of hardware according to environmental regulations.












