We Build Identity Infrastructure for Devices
ErlySign provides certificate lifecycle management, firmware signing, and hardware-backed device identity for IoT hardware teams. Built at EON Free Zone, Kharadi — in the middle of Pune's embedded systems engineering community.
The Identity Problem in IoT
Every enterprise server has an X.509 certificate. Every TLS connection is authenticated. Yet the majority of IoT devices deployed today carry no cryptographic identity at all — or share the same factory-default PSK across an entire product line. A single compromised unit exposes the fleet.
The tools to solve this exist — X.509 PKI, TPM attestation, code signing — but they were designed for enterprise IT operations teams, not for embedded engineers shipping 10,000 units a month under a 4-week hardware cycle. Deploying Keyfactor or DigiCert-scale infrastructure requires a dedicated PKI team and a 3-month onboarding. That is not an option for most IoT OEMs.
ErlySign is built specifically for hardware teams — not for enterprise IT. An embedded C SDK under 50KB with a binary footprint that runs on bare-metal ARM Cortex-M. A REST API that issues a device certificate in under 50ms at manufacturing line throughput. A management console that a firmware engineer can operate without PKI expertise.
ErlySign is not a general-purpose certificate authority. We do not issue TLS server certificates, code signing certificates for enterprise software, or S/MIME email certificates. Our focus is device identity — X.509 certificates for hardware endpoints, embedded in the manufacturing process.
The ErlySign Team
Based at EON Free Zone, Kharadi, Pune — India's emerging IoT and embedded systems hub.
Spent several years building IoT platform firmware and embedded security tooling, primarily working with MCU provisioning pipelines and TLS certificate handling on constrained devices. Founded ErlySign in Pune to build the PKI middleware that embedded teams actually need — not a port of enterprise PKI.
Background in cryptographic protocol engineering at a semiconductor IP firm. Leads HSM integration, CA architecture design, and ECDSA/Ed25519 implementation work across ErlySign's SDK and platform.
Builds and operates ErlySign's certificate issuance backend and REST API. Previous focus on distributed systems for high-throughput IoT data pipelines. Leads SDK engineering for embedded C and Python clients.
Leads go-to-market across APAC and EMEA — working with chipset vendors, embedded systems integrators, and IoT OEM procurement teams. Background in B2B enterprise technology partnerships.
Join the Team
We're an early-stage team — every engineer owns a meaningful surface. We're looking for embedded C engineers with TLS/PKI experience, backend engineers comfortable with certificate infrastructure, and enterprise sales focused on APAC IoT OEM markets.
Send Us Your BackgroundSee ErlySign in action
100-device pilot at no cost. We onboard you with the engineering team directly.