CommScope PRiSM Secure Bootloader Signing for TI AM6x

CommScope PRiSM Accelerates Secure Boot and CRA Compliance for TI AM6x Processors

Read Time: 3 minutes

CommScope PRiSM, with hardware-backed signing and automated workflows, reduces development effort and accelerates compliance with the European Union’s Cyber Resilience Act (CRA).

CommScope (NASDAQ: COMM), a global leader in network connectivity, today announced a fully tested, out-of-the-box bootloader signing solution for Texas Instruments’ (TI) Arm-based AM6x processor family. Built on CommScope’s PRiSM™ (Permission Rights Signing Manager) platform, the solution integrates seamlessly with TI’s image build process while ensuring robust key protection through a FIPS-certified Hardware Security Module (HSM) and centralized key lifecycle management.

The solution provides a production-ready path to secure boot adoption—streamlining Continuous Integration/Continuous Delivery (CI/CD) pipelines and meeting modern cybersecurity mandates without requiring device manufacturers to build or manage their own cryptographic infrastructure.

“Secure boot is a cornerstone of system integrity and robust protection against software tampering,” said Sonia Ghelani, Product Line Manager, Sitara™ Processors, Texas Instruments.

“With CommScope’s production-grade infrastructure and HSM-protected signing keys, we’re enabling customers to fully leverage TI’s security capabilities, helping simplify secure boot adoption and defend against today’s sophisticated cyberattacks.”

Bootloader security is a critical foundation for ensuring device integrity, as it determines whether firmware can be trusted before execution. Protecting the private signing key used to authenticate firmware is essential—if compromised, even secure boot mechanisms can be bypassed.

CommScope’s solution safeguards these keys using hardware-backed security and controlled access, providing a clear and auditable path to meet emerging cybersecurity requirements, including the EU Cyber Resilience Act and other regional and industry-specific standards.

“Security should never be a barrier to product innovation,” said Craig Coogan, CTO & VP, Product & Strategy, Access Network Solutions, CommScope.

“By collaborating with TI, we help device makers simplify secure boot adoption, reduce development friction, and deliver trusted products into regulated markets with confidence. We handle the underlying complexity so manufacturers can focus on productivity, faster development, and stronger security outcomes.”

CommScope® PRiSM Key Benefits

  • Full, Robust Key Lifecycle Protection: Signing keys are generated through a multi-party-controlled process, deployed into FIPS-certified HSMs, and never exposed in software. The entire lifecycle—from creation to controlled use— is tightly managed to prevent leakage, unauthorized access, or malicious replacement.
  • Strict Access Control and Policy Enforcement: Role-based access controls (RBAC) and eTokens ensure that only approved users and build systems can perform signing operations, reducing insider threats and policy violations.
  • Seamless CI/CD Integration: A secure, cloud-accessible API integrates directly with TI’s software development kit (SDK), enabling scalable, automated signing workflows without disrupting development pipelines.
  • Comprehensive Visibility and Auditability: PRiSM maintains a full audit trail of all signing operations, capturing who signed what, when, and from where—supporting internal accountability and external compliance.

Availability & Resources

The CommScope secure boot package will be available in Q1 2026. TI AM6x customers may request onboarding details through the TI partner page, where comprehensive recorded walkthroughs and personalized support resources are also available.

For more information about CommScope’s security solutions, visit the CommScope PKI Center.

CommScope and the CommScope logo are registered trademarks of CommScope and/or its affiliates in the U.S. and other countries. Sitara is a trademark of Texas Instruments Incorporated. All other product names, trademarks, and registered trademarks are the property of their respective owners.