AutoTrust4IoT – Secure & Automated IoT Integration
We are researching how industrial IoT devices can be securely and largely automatically integrated into existing networks through trusted digital identities and cross-standard security mechanisms.
AutoTrust4IoT is funded by the Federal Ministry for Research, Technology and Space (BMFTR) as part of the Startup Secure II funding programme.
Motivation
As machines, sensors, and industrial systems become increasingly interconnected within the Industrial Internet of Things (IIoT), the attack surface for cyber threats continues to expand. At the same time, the secure onboarding of new devices remains a manual, time-consuming, and error-prone process in many organizations. Misconfigurations and insecure deployment procedures can jeopardize production facilities, energy infrastructures, and entire supply chains.
Growing regulatory requirements, such as NIS2 and the Cyber Resilience Act, further increase the pressure on organizations to strengthen their cybersecurity posture. As a result, there is a growing need for a vendor-independent, easy-to-use, and highly secure approach to automated device integration.
Objectives & Approach
AutoTrust4IoT explores how industrial IoT devices can be securely integrated into existing networks with a high degree of automation and without requiring extensive cybersecurity expertise—even in complex and highly protected environments.
At the core of the project is the development of an open security framework that bridges different technical standards and enables the trustworthy transfer of digital device identities across organizations and supply chains.
The resulting concepts are analyzed scientifically, evaluated technically, and validated in a laboratory environment. In addition, the project investigates usability aspects, long-term cryptographic resilience, and seamless integration into existing security architectures and network infrastructures.
Innovation & Outlook
The project's key innovation is a true “zero-touch” approach, enabling devices to be securely onboarded without manual configuration or physical access. At the same time, AutoTrust4IoT establishes an interoperable trust model that reduces dependencies on individual standards and proprietary solutions while addressing European cybersecurity requirements.
By doing so, AutoTrust4IoT strengthens the resilience of industrial value chains, reduces integration and operational costs, and helps organizations comply with evolving regulatory requirements. In the long term, the project contributes to the development of an open, sovereign, and future-proof security infrastructure for connected industrial devices across Europe.
Your expertise matters! Take part and benefit from the research findings.
As part of the BMFTR-funded research project AutoTrust4IoT, we are talking to experts from industry, research, and technology about the future security of connected components. Your practical experience will contribute to the development of a practical guide and the research into software tooling.
Your benefits as an expert
Research Report “Digital Identities in Industrial IoT 2027”
You will receive a concise summary of the key findings from the expert interviews with industry professionals.
Demo access to tooling for an interoperable Zero-Touch process
AutoTrust4IoT is investigating the interoperability of Zero-Touch processes. An initial version is planned for spring 2027.
Discussion of future-oriented topics
Together we’ll discuss the implications of AI, post-quantum cryptography, the Cyber Resilience Act (CRA), NIS2, and emerging standards.
Contribute your own requirements
Your company’s practical requirements can be taken into account in the development of concepts, the guide, and the software tooling.
What would we like to discuss with you?
How are industrial components identified today, integrated into infrastructures, and securely managed?
Where do manual efforts, media discontinuities, or IT security risks arise?
What role do the CRA, NIS2, IEC 62443, and other IT security standards play in your day-to-day practice?
What requirements arise from AI applications and quantum computing?
How must digital identities be designed to be usable across manufacturers, operators, and platform boundaries?
No preparation is required. The interview is explicitly about your practical perspective – not about providing technically or organizationally “correct” answers.
Your contact
Christoph Milder
Managing Director
Book your appointment directly now!
Meet DEVITY at
it-sa 2026!
Zero-Touch. Zero Trust. Full Control.
27. - 29. October
Nuremberg
Hall 6 | Booth 6-342