Achieving Security in the Internet of Things through Expansion of the Partnership Model

W. Diehl, Forrest Hare
{"title":"Achieving Security in the Internet of Things through Expansion of the Partnership Model","authors":"W. Diehl, Forrest Hare","doi":"10.1109/ISTAS.2018.8638286","DOIUrl":null,"url":null,"abstract":"There are countless connected devices and applications in the Internet of Things (IoT), in areas ranging from health to automotive and industrial, to energy, security, and logistics. Currently, a lack of security within the IoT presents significant cybersecurity risks, including the compromise of sensitive information and damage to infrastructure. As a way to overcome security challenges, this paper proposes expanding the current public-private partnership framework for cybersecurity to one that more effectively encompasses personal-level considerations. To be successful, this new public-private-personal partnership model will require simultaneous advancements in three co-equal domains: technology, policy, and society. Specifically, technology adjustments consist of upgrades to device access and authorization; policy adjustments consist of changes to cooperation regimes and regulations at the federal, state, and local level; and societal adjustments involve public education about vulnerabilities and changes in attitudes toward individual roles in security. In this research, we leverage two examples of emerging IoT applications: health monitoring and smart-grid. For each application and related sector, we outline the security challenges, discuss the shortcomings of existing public-private partnerships, and make recommendations for the expansion of existing partnerships to the personal level.","PeriodicalId":122477,"journal":{"name":"2018 IEEE International Symposium on Technology and Society (ISTAS)","volume":"50 2","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-11-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2018 IEEE International Symposium on Technology and Society (ISTAS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ISTAS.2018.8638286","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2

Abstract

There are countless connected devices and applications in the Internet of Things (IoT), in areas ranging from health to automotive and industrial, to energy, security, and logistics. Currently, a lack of security within the IoT presents significant cybersecurity risks, including the compromise of sensitive information and damage to infrastructure. As a way to overcome security challenges, this paper proposes expanding the current public-private partnership framework for cybersecurity to one that more effectively encompasses personal-level considerations. To be successful, this new public-private-personal partnership model will require simultaneous advancements in three co-equal domains: technology, policy, and society. Specifically, technology adjustments consist of upgrades to device access and authorization; policy adjustments consist of changes to cooperation regimes and regulations at the federal, state, and local level; and societal adjustments involve public education about vulnerabilities and changes in attitudes toward individual roles in security. In this research, we leverage two examples of emerging IoT applications: health monitoring and smart-grid. For each application and related sector, we outline the security challenges, discuss the shortcomings of existing public-private partnerships, and make recommendations for the expansion of existing partnerships to the personal level.
通过扩展伙伴关系模式实现物联网安全
物联网(IoT)中有无数的连接设备和应用,涉及从健康到汽车和工业,再到能源、安全和物流等领域。目前,物联网内部缺乏安全性会带来重大的网络安全风险,包括敏感信息的泄露和基础设施的破坏。作为克服安全挑战的一种方法,本文建议将当前的网络安全公私伙伴关系框架扩展到更有效地包含个人层面考虑的框架。为了取得成功,这种新的公私伙伴关系模式需要在技术、政策和社会三个平等的领域同时取得进展。具体来说,技术调整包括对设备访问和授权的升级;政策调整包括改变联邦、州和地方各级的合作制度和法规;社会调整包括对公众进行有关脆弱性的教育,以及改变对个人在安全中所扮演角色的态度。在本研究中,我们利用了新兴物联网应用的两个例子:健康监测和智能电网。对于每个应用程序和相关部门,我们概述了安全挑战,讨论了现有公私伙伴关系的缺点,并提出了将现有伙伴关系扩展到个人层面的建议。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信