Skip to main content
Switch Language
Cybersecurity

iSAQB® Certified Professional for Software Architecture - Advanced Level (Embedded Security for Architects)

The iSAQB® EMBEDDEDSEC module provides a systematic approach for designing secure embedded systems for medical or automotive applications. It shows how to identify threats, address them with appropriate mitigations and verify their appropriateness.

This advanced-level module, Secure Embedded Systems (EMBEDDEDSEC), supplements the iSAQB® Certified Professional for Software Architecture. The course provides a systematic approach for designing secure embedded systems for medical or automotive applications. It shows how to identify threats, address them with appropriate mitigations and verify their appropriateness.

Course overview

Learn about a systematic approach to designing secure embedded systems.

Hardening embedded systems against attacks poses special challenges due to the constraints of these systems. At the same time, embedded systems range from small microcontroller-based devices with limited resources to complex, interconnected systems operating in critical environments. This advanced-level module, EMBEDDEDSEC, supplements the iSAQB® Certified Professional for Software Architecture. The course provides a systematic approach for designing secure embedded systems for medical or automotive applications. It shows how to identify threats, address them with appropriate mitigations and verify their appropriateness.

This training module provides a consistent, methodical approach to analyzing, designing, implementing and verifying embedded systems to meet the product’s security goals. All topics are accompanied by an overarching exercise example to apply the knowledge in practice.

Key Takeaways

  • Secure software and system development for embedded systems
    • Secure development life cycle
    • Relevant standards and regulations (ISO/SAE 21434, UN R 155, FDA Cybersecurity Pre-Market Submission Guidelines, IEC 62443, IEC 80001-5-1, NIST SP 800)
  • Threat identification and risk analysis
    • Methods to identify potential security impacts and the risks that cause them
    • Overview of typical attacks targeting embedded systems
    • Analysis and rating techniques to prioritize identified risks (e.g., CVSS, ISO/SAE 21434, OWASP Risk Rating)
    • Tools and practical guidelines to perform cybersecurity risk analysis for embedded systems
  • Security-by-design
    • Introduction of concerns, such as authentication, integrity, updatability and confidentiality that need to be considered for cybersecurity
    • Concern-oriented design patterns, principles, methods and technologies to determine and implement suitable mitigations and cybersecurity controls
    • Introduction to cryptography and practical guidelines on employing cryptography in embedded systems
    • Methods employed statically and dynamically to verify that security goals and requirements are met

Target Audience

  • Software architects
  • Software engineers
  • Security engineers

Prerequisites

Before taking this training, participants should have experience developing software for embedded systems and a basic understanding of software architecture, such as the concepts presented in the iSAQB® Certified Professional for Software Architecture — Foundational Level (CPSA-F) training.

Examination

None

Further Information

  • The training is licensed in accordance with the iSAQB® Certified Professional for Software Architecture — Advanced Level EMBEDDEDSEC module.
  • Within the iSAQB® EMBEDDEDSEC module, this training can be tailored to your domain (e.g., automotive or medical) and your system type (microcontrollers and embedded POSIX systems).
  • For online training, all materials are offered digitally. For in-person training, all materials are offered digitally and may be supplemented with hard copies.

Course Dates

Dates Location Time Language Status Price
2026/2/10 —
2026/2/12
Virtual 09:00 AM - 05:00 PM CET German €2145 REGISTER
2026/6/15 —
2026/6/17
Erlangen, Germany 09:00 AM - 05:00 PM CET German €2145 REGISTER
2026/9/28 —
2026/9/30
Virtual 09:00 AM - 05:00 PM CET English €2145 REGISTER
2026/11/24 —
2026/11/26
Virtual 09:00 AM - 05:00 PM CET German €2145 REGISTER
Booking
details
Participant
details
Payment
details
GENERAL INFORMATION
Training ID:
Location:Onsite-Training
Date:2/7 -2/10/2024
Time:09:00 AM - 05:00 PM
Language:English (EN)
Examination Fee:$Xx per participant
Online Price:#Xx per participant, plus vat
Services Provided by:UL
Thank you for booking

Your registration was successful. A confirmation email will be sent to you.

Continue exploring
Booking Overview
Name:
Company:
Email:
Phone:
Address:
Order number (if available):--
Participants
Please enter the full company name.
Please enter the full company name.

To register for this event, please agree to our privacy policies as well as our GTC and the processing of your data.

UL Solutions Online Policies
GTC
Data Processing

For in-person training only, please let us know if you do not eat certain foods for ethical, health or religious reasons.

* Mandatory fields

Payment Method

We’re unable to process your registration due to an unexpected error. Try again or if the problem continues, contact us.

X

Contact Sales

Whether you're looking for a custom quote or private training, we can help. Fill out this form and we'll connect with you shortly.

Please wait…

Can't find what you're looking for?

Click the link and request a quote tailored to your organization's needs.

Request a Quote

Private Trainings Available

Click the link for information on scheduling a private training for your organization.

Contact Sales

Cancellation Policy

Contractual cancellation right

The registration can be cancelled free of charge 30 days before the training date, after which the following rules apply: 

  • 30 days – 14 days before the start of the training: 50% of the participation fee
  • 14 days or less before the start of the training: 100% of the participation fee
  • This shall not apply when a substitute attendee is named. This is possible until the registration at the beginning of the event.

The relevant cut-off date for the calculation of the cancellation period is the first training day of a bindingly booked training.

The cancellation must be declared in writing and sent by email to the training provider.

Naming substitutes

The participant may, after receiving the registration confirmation, name a substitute in writing prior to the beginning of the seminar.

This change of reservation is free of charge; seminars spanning several days may be transferred only in their entirety, i.e. attended by one substitute.

Date cancellations and date changes

The training provider has the right to change the location of events and/or specify a different date as a substitute. The training provider also reserves the right to cancel dates for organizational reasons (e.g. number of participants too low, illness of the speaker at short notice).

The training provider will notify the participant of the cancellation and of the reason with-out undue delay and will attempt to change the participant's reservation, provided that he agrees to a different date or event location. Otherwise, the full amount of any already paid attendance fee will be refunded in the case of a cancellation; no further claims exist, particularly no refund of travel and/or accommodation cost.

Within UL Solutions we provide a broad portfolio of offerings to many industries. This includes certification, testing, inspection, assessment, verification and consulting services. In order to protect and prevent any conflict of interest, perception of conflict of interest and protection of both our brand and our customers brands, UL Solutions has processes in place to identify and manage any potential conflicts of interest and maintain the impartiality of our conformity assessment services.