Auditing the Swiss E-Voting System: Lessons Learned from the Field
Swiss electronic voting is one of the most scrutinised and controversial topics in cybersecurity, marked by significant public criticism and vulnerabilities uncovered in earlier system versions. This talk shares field experience from auditing the Swiss e-voting system, focusing on infrastructure and operations. It explores the concrete challenges faced during audits, from assessing complex and distributed architectures to verifying controls across organisational boundaries, and provides an informed perspective on the security of the system.