Arm Zena CSS Security’s built-in security supports AI-powered futures
AI Summary
As autonomous machines evolve into connected, and AI-defined systems, adoption drives both innovation and new cybersecurity challenges. Arm Zena CSS Security delivers a secure foundation for AI-driven compute, providing layered protection underpinned by Armv9’s defensive security architecture. Designed for ASIL B applications and aligned with ISO 21434 and UNECE R155 standards, it safeguards the expanding attack surface of intelligent mobility.
Why choose Zena CSS Security
Arm Zena CSS Security combines next-generation architecture with enhanced protection to secure every layer of compute.
Layered defense-in-depth
Security-by-design principles across hardware, firmware, and runtime ensure comprehensive threat mitigation.
Root of Trust (RoT)
The Runtime Security Engine (RSE) establishes a secure foundation for cryptographic operations, key management, and attestation.
Future-ready compliance
Supports ISO 21434 and UNECE R155 requirements for connected and autonomous vehicles.
Security and development benefits of Arm Zena CSS
-
Delivers end-to-end platform security with a secure foundation integrating Arm RSE, high-performance cryptography, and Armv9 defensive security.
-
Enhances system resilience through secure-by-design architecture combining RoT, Armv9 defensive features, high-performance crypto extensions, and SVE2.
-
Enables safe and reliable operation with isolation for secure AI compute, secure boot, OTA protection, key management, and lifecycle management.
-
Accelerates secure software development using TF-M and TF-A reference firmware, PSA APIs, documentation, and RSE virtual prototyping.

Features and capabilities of Zena CSS Security
Arm Zena CSS Security delivers a holistic defense architecture combining trusted compute, cryptography, and secure lifecycle management:
Runtime Security Engine (RSE): Hardware Root of Trust leveraging TrustZone and integrated cryptography.
Armv9 defensive architecture: Enables secure-by-design features with SVE2 and advanced crypto.
Secure boot and OTA: Supports anti-rollback, firmware verification, and security-enabled OTA updates.
Lifecycle and key management: Key handling, debug authentication, and attestation.
Arm Zena CSS Security specifications
- Cortex-A720AE CPUs with advanced crypto extensions.
- Secure boot with OTA and anti-rollback feature for firmware updates.
- Cryptographic key and lifecycle management.
- Attestation of software and authentication of sensors and communications.
Security for AI
Protects on-vehicle inference and sensor data processing with trusted execution environments and cryptographic validation.
Security for ADAS
Enables safe deployment of perception and control workloads, ensuring data integrity across safety-critical functions.
Security for IVI
Secures infotainment and cockpit systems, isolating multimedia and connectivity workloads within trusted domains.
Success stories powered by Arm Zena CSS Security
AWS builds automotive AI on Arm
Volkswagen’s intelligent driving future
ROBOTIS AI autonomous robots
Latest news and resources
- News and Blogs
- Podcasts
Key takeaways
-
Enables layered, Armv9-based defense-in-depth for autonomous machines.
-
Supports compliance with ISO 21434 and UNECE R155 standards for cybersecurity.
-
Establishes a secure Root of Trust via the Runtime Security Engine.
-
Enables security-supported firmware updates, key management, and attestation.
-
Helps protects connected and autonomous systems while maintaining high performance.
FAQs
How does Arm Zena CSS Security protect AI-driven autonomous systems?
Zena CSS Security combines the Armv9 defensive architecture with the Runtime Security Engine (RSE) to safeguard AI workloads, to help enable trusted execution and support secure data handling.
What security standards does Zena CSS Security support?
Zena CSS Security is designed support compliance with ISO 21434 and UNECE R155 standards, providing compliance for modern cybersecurity requirements.
What is the role of the Runtime Security Engine (RSE)?
The RSE acts as the hardware Root of Trust, handling key management, cryptographic operations, and attestation across compute system.
How does Zena CSS Security support software updates securely?
Zena CSS Security features secure boot and over-the-air (OTA) update capabilities with anti-rollback protection and firmware authentication to help protect against unauthorized changes.
Can Arm Zena CSS Security integrate with existing automotive SoC designs?
Yes. Zena CSS Security offers flexible integration through PSA APIs, TF-M/TF-A firmware, and reference documentation to accelerate secure software validation and deployment.
Stay Connected
Receive the latest news, case studies, and insight on physical AI from Arm. Subscribe to our physical AI newsletter: