In this talk we present the Trusted Platform Module - TPM - and its role in the integrity of the bootsequence of devices, typically servers, laptops etc, but also extend this to IoT devices. Byunderstanding what is being measured and how measurements can be trusted and utilised we canbuild an understanding of how firmware behaves, how changes to the firmware can be detected andhow this can be used to protect the hardware and software running on those devices. We then explorenotions and reasons of 'trust failure', how this is detected, techniques such as root cause analysis,failure model and effects analysis in this context and how mitigations can be constructed againstfirmware attacks. Finally we extend these concepts to supply-chain integrity and trust and show howintegrity and trust could be utilised.