NIST Updates IoT Cybersecurity Guidance and Accompanying Catalog
NIST has released final IoT-specific guidance to federal organizations to support extending their risk management process to the inclusion of IoT
Stay updated with breaking news from Profile Using. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.
NIST has released final IoT-specific guidance to federal organizations to support extending their risk management process to the inclusion of IoT
Device identification: The IoT device can be uniquely identified logically and physically. Device configuration: The configuration of the IoT device’s software can be changed, and such changes can be performed by authorized entities only. Data protection: The IoT device can protect the data it stores and transmits from unauthorized access and modification. Logical access to interfaces: The IoT device can restrict logical access to its local and network interfaces, and the protocols and services used by those interfaces, to authorized entities only. Software update: The IoT device’s softwa...
A universe of devices and technology has fallen into our laps at a speed that organizations struggle to manage effectively. And that boom in devices shows no signs of stopping. In 2019, there were an estimated 9.9 billion Internet of Things (IoT) devices. By 2025, we expect 21.5 billion. As more information about IoT device vulnerabilities is published, the pressure on industry and government authorities to enhance security standards might be reaching a tipping point. Last month’s passage of the IoT Cybersecurity Improvement Act of 2020 means all IoT devices used by government agencies will...
To embed, copy and paste the code into your website or blog: The National Institute of Standards and Technology (NIST) has been an active driver of Internet of Things (IoT) cybersecurity efforts for several years, convening stakeholders from the federal government and the private sector to develop IoT risk management guidance. To date, NIST’s Cybersecurity for IoT Program has collaborated across the wide IoT ecosystem to develop seminal voluntary guidance, including an IoT Device Cybersecurity Capability Core Baseline, which defines a set of device cybersecurity capabilities for organizatio...
[co-author: Tawanna Lee] On December 15, 2020, the National Institute of Standards and Technology (NIST) released four new draft Internet of Things (IoT) cybersecurity documents to provide guidance for federal agencies and device manufacturers. Additionally, NIST is updating its catalog of IoT cybersecurity capabilities. The concurrent release of this slate of IoT cybersecurity guidance comes on the heels of the IoT Cybersecurity Improvement Act of 2020, signed into law on December 4. NIST explains that the new documents “will help address challenges raised in [the Act] and begin to provid...