Fox Crypto has achieved a significant milestone with the acquisition of the Common Criteria EAL7 certification, one of the highest security standards globally. This achievement, which took a lot of time planning, rigorous preparation, and evaluation, reflects Fox Crypto's unwavering commitment to secure and reliable products. Project Manager Talitha van Loenhout, alongside Senior Architect Ellen Wesselingh, spearheaded the certification journey, navigating a complex process that involved multiple stakeholders and intense inspection.
Why EAL7 matters: A game-changer for clients and the industry
For organizations in sectors like government, defense, and critical infrastructure, the EAL7 certification is not just a badge—it's a vital assurance that the highest possible security measures have been rigorously tested and validated. As Talitha explains, "Achieving EAL7 is a critical differentiator in the cybersecurity space. It signals to our clients that we are serious about security, that we adhere to the highest standards, and that we are committed to continuous improvement."
In an industry where trust is paramount, particularly for companies handling sensitive government or military data, EAL7 certification provides a strong foundation of confidence. Talitha continues, “It shows our clients that we are trustworthy, that our processes are solid, and that we’re willing to undergo external inspections to ensure security. This is more than just meeting product specifications; it's about proving the integrity of our entire operation.”
With few other companies globally holding the EAL7 certification, Fox Crypto’s accomplishment sets them apart as a leader in cybersecurity. It ensures that they can confidently deliver secure products that meet the rigorous demands of their clients.
The highly involved journey to EAL7
Achieving the EAL7 Common Criteria certification is no simple task, and the process to get there was complex and demanding. Talitha explains, “I’ve been working on this for about 1.5 years – from the moment I joined Fox Crypto. It all started with requesting quotes, writing documentation, collecting evidence, and navigating the specific requirements for Common Criteria certification.”
The process required Fox Crypto to meet not only the product-specific requirements but also to ensure that internal processes, like site security and production lifecycle management, were up to the highest standards. “We couldn’t just meet the basic product requirements,” says Talitha. “We had to evaluate and adjust our internal operations, including our production environment and lifecycle management, to meet EAL7’s rigorous inspection.”
Conquering certification challenges through teamwork
The road to certification was filled with challenges, particularly with the complex evaluation process. “One of the biggest challenges was how we managed the evaluation process, especially with the level of documentation required. We couldn’t just send documents over email or Teams. Sensitive information had to be handled and shared with extreme care,” Talitha notes.
Despite these hurdles, the teamwork within Fox Crypto played a critical role in the project’s success. Talitha highlights the internal collaboration: “One of the most rewarding parts of the project was seeing the involvement of our entire team. During a security drill, we set off an alarm, and it was amazing to see people immediately jump in, ensuring everything was secure. This level of commitment from the team made all the difference.”
Future opportunities and continuous improvement
Now that Fox Crypto has secured the EAL7 certification, the team is focused on ensuring the processes remain ingrained in daily operations and continue to improve. “We are not stopping here. Now that we have the certification, we are transitioning from project mode to process mode,” Talitha explains. “We want to make sure these practices are fully embedded within our operations and that we can scale them across all our products.”
Beyond the certification itself, the lessons learned and improvements made during the process will shape future projects and product developments. “The knowledge gained from this certification is already being integrated into other projects and products within Fox Crypto. This certification not only validates our efforts but also opens new doors for us in the market, helping us build stronger trust with our clients. We are committed to maintaining our leadership in secure communication technology and delivering products that stand up to the highest security standards.”