Category
  • Industry

The UK has officially published the Product Safety and Telecommunications Infrastructure (Security Requirements for Relevant Connectable Products) Regulations 2023


Recently, the United Kingdom has made new moves on network information security requirements. On 31 October 2023, the UK government announced that the PSTI Regulation, known as the Product Security and Telecommunications Infrastructure (Security Requirements for Related Connectable Products) Regulations 2023, will be enacted on 14 September 2023 and that this PSTI security regime will come into force on 29 April 2024 and will apply to England and Wales, Scotland and Northern Ireland.

Based on the Product Security and Telecommunications Infrastructure Act 2022, the regulation stipulates minimum security requirements for products provided to UK consumers, based on ETSI EN 303 645 V2.1.1 and ISO/IEC 29147:2018 Information Technology – Security Technologies – Vulnerability Disclosure Standard (2nd Edition, 2018).

At the same time, the regulation clarifies the following requirements:

  • How it is deemed to meet the security requirements
  • Information to be included in the Declaration of Conformity 
  • Product List that is excluded from the regulatory regime
The list of excluded products includes computers (desktops, laptops, tablets without cellular connectivity), medical devices, electric vehicle charging stations and smart meter products, as well as products supplied to Northern Ireland that comply with the relevant legislation.

Click on the link to view the original text of the regulation.