Project cooperationUpdated on 31 March 2025

Secure IoT Infrastructure for EV charging stations

Faruk SARI

CEO at Cyber Quanta

Istanbul, Türkiye

About

1. Introduction

The IoT and smart device market is expanding rapidly. According to IDC, 895 million IoT devices were shipped in 2021, and this number is expected to reach 40 billion by 2030.

In the field of IoT security, we propose two pilot projects that align with the existing product portfolio of EV charging station manufacturers. These projects aim to enhance security, improve user experience, and provide a competitive advantage.

Our goal is to conduct a Proof of Concept (PoC) through these pilot projects and subsequently collaborate on productization. Additionally, compliance with regulations (such as CRA, ISO 15118 – Plug & Charge, etc.) will be a key focus of this initiative.

2. Pilot Project 1: Security for EV Charging Stations

Electric vehicle (EV) charging stations require robust security measures to protect user data, ensure secure authentication, safeguard payment processes, and enable seamless system integration. Current charging infrastructures are vulnerable to cyber threats and need a strong cryptographic framework to establish secure communication between stations.

Why Do EV Charging Stations Need Security?

  • User Data Protection: Secure authentication, payment systems, and station management.

  • IoT Cyber Threats: Prevention of unauthorized device connections to the charging network.

  • Secure Device Authentication: PKI-based authentication to ensure secure communication between charging stations.

  • Firmware Update Security: Ensuring secure over-the-air (OTA) firmware updates for charging stations.

  • Secure Payments & User Verification: Cybersecurity solutions integrated with payment systems during charging.

  • Post-Quantum Security: Preparing charging stations against future cryptographic threats.

Proposed Solution

By developing a PKI (Public Key Infrastructure) and Certificate Management-based IoT security framework, we offer:

  • Secure Authentication: Differentiation of legitimate charging stations from fraudulent ones.

  • Encrypted Communication: Protection of all communication using TLS and AES-GCM encryption algorithms.

  • Regulatory Compliance: Full compliance with the ISO 15118 – Plug & Charge standard, which will be enforced in Europe.

  • OCPP Integration: Seamless integration with existing charging infrastructures through the Open Charge Point Protocol (OCPP).

This solution will enhance the security and regulatory compliance of EV charging stations, giving manufacturers a competitive edge in the market.

Stage

  • Planning

Type

  • Research
  • Technical

Organisation

Cyber Quanta

SME

Istanbul, Türkiye

Similar opportunities