A Survey of Cybersecurity Certification for the Internet of Things

被引:33
|
作者
Matheu, Sara N. [1 ]
Hernandez-Ramos, Jose L. [2 ]
Skarmeta, Antonio F. [1 ]
Baldini, Gianmarco [2 ]
机构
[1] Univ Murcia, Dept Informat & Commun Engn, Murcia 30100, Spain
[2] European Commiss, Joint Res Ctr, I-21027 Ispra, Italy
基金
欧盟地平线“2020”;
关键词
Security certification; IoT; security; security testing; security risk assessment; labelling; SECURITY ANALYSIS; COMMON CRITERIA; RISK; FRAMEWORK; TAXONOMY; MODEL;
D O I
10.1145/3410160
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
In recent years, cybersecurity certification is gaining momentum as the baseline to build a structured approach to mitigate cybersecurity risks in the Internet of Things (IoT). This initiative is driven by industry, governmental institutions, and research communities, which have the goal to make IoT more secure for the end-users. In this survey, we analyze the current cybersecurity certification schemes, as well as the potential challenges to make them applicable for the IoT ecosystem. We also examine current efforts related to risk assessment and testing processes, which are widely recognized as the processes to build a cybersecurity certification framework. Our work provides a multidisciplinary perspective of a possible IoT cybersecurity certification framework by integrating research and technical tools and processes with policies and governance structures, which are analyzed against a set of identified challenges. This survey is intended to give a comprehensive overview of cybersecurity certification to facilitate the definition of a framework that fits in emerging scenarios, such as the IoT paradigm.
引用
收藏
页数:36
相关论文
共 50 条
  • [1] Toward a Cybersecurity Certification Framework for the Internet of Things
    Matheu, Sara N.
    Hernandez-Ramos, Jose L.
    Skarmeta, Antonio F.
    [J]. IEEE SECURITY & PRIVACY, 2019, 17 (03) : 66 - 76
  • [2] CYBERSECURITY AND INTERNET OF THINGS
    Capek, Jan
    [J]. STRATEGIC MODELING IN MANAGEMENT, ECONOMY AND SOCIETY (IDIMT-2018), 2018, 47 : 343 - 349
  • [3] The Internet of Things Cybersecurity Examination
    Prokofiey, Anton O.
    Smirnova, Yulia S.
    Silnov, Dmitry S.
    [J]. 2017 SIBERIAN SYMPOSIUM ON DATA SCIENCE AND ENGINEERING (SSDSE), 2017, : 44 - 48
  • [4] Cybersecurity in the Internet of Medical Things
    Thomasian, Nicole M.
    Adashi, Eli Y.
    [J]. HEALTH POLICY AND TECHNOLOGY, 2021, 10 (03)
  • [5] A Comprehensive Survey of Cybersecurity Threats, Attacks, and Effective Countermeasures in Industrial Internet of Things
    Alnajim, Abdullah M.
    Habib, Shabana
    Islam, Muhammad
    Thwin, Su Myat
    Alotaibi, Faisal
    Mahmoud, Mohammed
    [J]. TECHNOLOGIES, 2023, 11 (06)
  • [6] Cybersecurity in the Internet of Things: Legal aspects
    Weber, Rolf H.
    Studer, Evelyne
    [J]. COMPUTER LAW & SECURITY REVIEW, 2016, 32 (05) : 715 - 728
  • [7] Cybersecurity Issues in Internet of Things and Countermeasures
    Al Ghadeer, Hoda
    [J]. 2018 IEEE INTERNATIONAL CONFERENCE ON INDUSTRIAL INTERNET (ICII 2018), 2018, : 195 - 201
  • [8] Envisioning Cybersecurity Analytics for the Internet of Things
    Chavis, Jeffrey S.
    Syed, Daniel P.
    [J]. 2020 IEEE 3RD 5G WORLD FORUM (5GWF), 2020, : 193 - 198
  • [9] Cybersecurity in the Internet of Things in Industrial Management
    Raimundo, Ricardo Jorge
    Rosario, Alberico Travassos
    [J]. APPLIED SCIENCES-BASEL, 2022, 12 (03):
  • [10] Security certification and labelling in Internet of Things
    Baldini, Gianmarco
    Skarmeta, Antonio
    Fourneret, Elizabeta
    Neisse, Ricardo
    Legeard, Bruno
    Le Gall, Franck
    [J]. 2016 IEEE 3RD WORLD FORUM ON INTERNET OF THINGS (WF-IOT), 2016, : 627 - 632