Common Cybersecurity Requirements in IoT Standards, Best Practices, and Guidelines

被引:2
|
作者
Kaksonen, Rauli [1 ]
Halunen, Kimmo [1 ]
Roning, Juha [1 ]
机构
[1] Univ Oulu, Oulu, Finland
基金
欧盟地平线“2020”;
关键词
Internet of Things; IoT; Cybersecurity; Security Requirements; Standards; Best Practices; Guidelines;
D O I
10.5220/0011041700003194
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The cybersecurity of the Internet of Things (IoT) is an increasing concern and product vendors are advised to follow security standards, best practices, and guidelines. From the many requirement sources, a vendor is likely to choose only a few. How does this selection impact the security requirements of an IoT product? To answer the question, we collect requirements from 16 sources and divide them into categories for comparison. Common categories are identified, with all sources covering Security design, Interface security, Authentication, Data protection, and System updates. The agreement on the high-level categories does not hold in the subcategories and the selection of the sources have a big impact to the requirement details. Consolidation of the IoT security requirements would be desirable and possible.
引用
收藏
页码:149 / 156
页数:8
相关论文
共 50 条
  • [21] Best Practices for Setting Up a Cybersecurity Operations Center
    Putrus, Robert
    ISACA Journal, 2021, 5 : 50 - 57
  • [22] Cybersecurity in smart local energy systems: requirements, challenges, and standards
    Dong S.
    Cao J.
    Flynn D.
    Fan Z.
    Energy Informatics, 2022, 5 (01)
  • [23] Common Requirements Problems, Their Negative Consequences, and the Industry Best Practices to Help Solve Them
    Firesmith, Donald
    JOURNAL OF OBJECT TECHNOLOGY, 2007, 6 (01): : 17 - 33
  • [24] Process standards: Pursuing best practices
    Phelps, R
    CONTROL ENGINEERING, 2006, 53 (05) : 69 - +
  • [25] Best business practices for standards groups
    LoBue, M
    COMPUTER, 2004, 37 (01) : 124 - 125
  • [26] The ISoP Standards and Best Practices Committee
    Bruno, R.
    Mentre, F.
    Tannenbaum, S.
    Wang, Y.
    Corrigan, B.
    Mager, D. E.
    CLINICAL PHARMACOLOGY & THERAPEUTICS, 2014, 95 (06) : 581 - 582
  • [27] When standards and best practices are ignored
    Jackelen, G
    Jackelen, M
    FOURTH IEEE INTERNATIONAL SYMPOSIUM AND FORUM ON SOFTWARE ENGINEERING STANDARDS - PROCEEDINGS, 1999, : 111 - 115
  • [28] Best Practices for Requirements Validation Process
    Santana, Sonia R.
    Antonelli, Leandro R.
    Thomas, Pablo J.
    COMPUTER SCIENCE, CACIC 2021, 2022, 1584 : 139 - 156
  • [29] Are best practices requirements documents a myth?
    Rost, Johann
    IEEE Software, 2006, 23 (03)
  • [30] BLOOD COLLECTION AND PROCESSING: QUALITY GUIDELINES AND STANDARDS REFLECTING COMMON BEST PRACTICE STANDARDS REFERRING TO THE EUBIS MANUAL AND GUIDE
    Seidl, C.
    Mueller-Kuller, T.
    Sireis, W.
    Aquilina, A.
    Barotine-Toth, K.
    Cardenas, J. M.
    Ceulemans, J.
    Cermakova, Z.
    van Galen, Jansen J. P.
    Grazzini, G.
    Hinloopen, B.
    Heiden, M.
    Huber, H.
    Nightingale, M.
    Pupella, S.
    Teskrat, F.
    Wit, J.
    Seifried, E.
    VOX SANGUINIS, 2012, 103 : 2 - 2