Finite StateFinite State
Finite StateFinite State
Compliance & Regulations

A Must-Listen Podcast on IoT Security & the U.S. Cyber Trust Mark

Eric Greenwald & Larry Pesce discuss the U.S. Cyber Trust Mark for IoT devices & its impact on security in this episode of IoT: The Internet of Threats

Ryan Owen

Ryan Owen

September 1, 2023

In today's digitally interconnected world, discussions surrounding cybersecurity and the Internet of Things (IoT) are more relevant than ever. To understand the landscape of IoT security, catch this latest episode of the IoT: The Internet of Threats podcast. Host Eric Greenwald sits down with Larry Pesce, Finite State’s Director of Product Security Research and Analysis, to dive deep into the recently announced U.S. Cyber Trust Mark—a cybersecurity labeling program for IoT devices.

What Sets This Episode Apart

Unlike conventional, static rating systems such as ENERGY STAR, the U.S. Cyber Trust Mark aims to be a dynamic IoT security score. It evolves to reflect the ever-changing landscape of cybersecurity threats and controls. Larry and Eric discuss the complexities of this labeling initiative, debating its efficacy. Will consumers understand it? Will manufacturers comply, and if so, at what cost?

Why You Should Listen

One of the standout segments is a comparison between ENERGY STAR ratings and the dynamic nature of IoT security labels. This episode will provide you with insights into how these labels aim to adapt in real-time to the fluctuating risks and challenges in the cybersecurity realm.

Later in the episode, Larry and Eric touch on how user-friendly strategies like QR codes can help in easy implementation and understanding. Imagine being able to scan a QR code on an IoT device, such as a baby monitor or solar panel, and immediately understanding its security posture. Fascinating, right?

Expert Insights

Larry Pesce brings a wealth of experience to the table. With his extensive background in IoT security, penetration testing, and his current role at Finite State, his perspective is uniquely valuable. Larry's influence is far-reaching, from training professionals at the SANS Institute to co-hosting the Paul's Security Weekly podcast since 2005. This discussion gains an extra layer of nuance as Larry questions Eric about the FCC’s role in regulating IoT labeling compliance.

The Impact Across Industries

Whether you’re a manufacturer, a policymaker, or an end-consumer, understanding the implications of this voluntary program is crucial. Larry and Eric don’t just explore what the labeling program means for consumers; they also analyze how it could affect a multitude of sectors. From household consumer gadgets like baby monitors to large-scale industrial applications like solar panels, no stone is left unturned.

Be Part of the Discussion

If there was ever a time to prioritize understanding the intricacies of IoT security, it is now. Join Larry Pesce and Eric Greenwald as they discuss:

  • How IoT security labels differ from traditional rating systems
  • The criteria used in assigning these labels
  • The potential impact of this voluntary labeling initiative across different sectors
  • The unexpected role of the FCC in enforcing compliance

Don't miss this compelling episode that taps into the pulse of IoT security. Tune in, enrich your perspective, and be part of the conversation that defines tomorrow’s cybersecurity landscape.

Listen to the full episode now!

The information is just a click away, but the insights you gain could be invaluable. So go ahead, give it a listen. You won't regret it!

Tags

#regulation
Ryan Owen

Ryan Owen

Ryan is Head of Content Marketing at Finite State, where he leads content strategy across thought leadership, product marketing, and customer education.

Related Articles

Road to Compliance: First Steps OEMs and Suppliers Should Take Today

The Road to Compliance: First Steps OEMs and Suppliers Should Take Today

Learn how to achieve Connected Vehicle Rule compliance with six actionable steps — from SBOM & HBOM generation to supplier engagement and risk evaluat...

Oct 20, 2025
Legacy Software & CVR Compliance Carveouts Explained

Legacy Software & CVR Compliance Carveouts Explained

Learn how legacy carveouts and specific authorizations can help you comply with CVR—while time-limited, they demand proactive planning now.

Oct 16, 2025
Regulations Driving IoT Security Forward

Regulations Driving IoT Security Forward

From EU CRA to FDA 524B, IoT regulations are reshaping the market. Learn what manufacturers need for compliance—SBOMs, testing, and supply chain visib...

Sep 24, 2025

Ready to Level Up Your Security Knowledge?

Join thousands of security professionals learning from the best in the industry

Start Learning TodayStart Learning Today
Finite StateFinite State

Finite State is the Product Security Automation Platform that functions as an autonomous Product Security OS: design → verify → prove, grounded in what you ship.

Platform

Platform Overview
Ground Truth Inventory
Exploitability-Based Prioritization
Design-Time Architecture Security
Automated Evidence-Backed Compliance

Solutions

Device Manufacturers
Automotive
Medical Devices
Energy & Utilities
Government
Industrial

Resources

Blog
Resource Library
Webinars & Videos
Events
Documentation

Company

About Us
CareersHIRING
Press & Media
Contact Sales
X

Privacy PolicyTerms of UseCustomer Terms and Conditions