In a company as big as Ericsson with a multitude of products, solutions and services spanning from legacy telecom systems to complex modern IoT solutions, how can one assure that all products will achieve the necessary Security and Privacy requirements for create, deploy and maintain secure products?This presentation will tell about how we at Ericsson tackles the challenge of having a holistic security and privacy approach that works for all products, this talk will be about the Security Reliability Model (SRM) which is the model/framework Ericsson developed to achieve the Security and Privacy ambition in all our products, services and security as a business.The Security Reliability Model (SRM) is a holistic approach to secure that product security & privacy is considered and implemented in every step duration the life cycle of the product, from planning to development and to deployment & maintenance.I will uncover how the SRM enables Ericsson products, solutions and services to set their product security and privacy ambition level, to ensures the implementation of appropriate security and privacy and to follows up and measures actual product security and privacy status that enables secure product deployment in customer networks. The SRM are built on requirements that set the base for the security and privacy functions as well as other important supporting processes that ties in to the SRM like Vulnerability Managements, Risk Assessment and Vulnerability analysis at also will be presented to give the best possible view of what exactly SRM is.