mercredi 25 février 2015

Industry voice: The dark shadow cast by the IoT: the potential for security nightmares

The Internet of Things (IoT) has everyone giddy. You can use your phone to record shows that you forgot to set on your digital TV box before you left the house. You can unlock your house without a key or turn on your lights before you get home. You can turn on the heater remotely so it's nice and toasty before you step in the door.


Much more is to come; there's buzz about the connected car, healthcare devices, and other endless possibilities. Analysts at IDC predict IoT spending will exceed $7.3 trillion (around £4.7 trillion, AU$9.4 trillion) by 2017. While all this is great for improving the consumer experience, a dark shadow lurks behind it all: concerns about privacy and security.


Cybercrime opportunities


It's no surprise that the IoT is leading to a new category of cybercrime. The smart LED light bulbs that leaked Wi-Fi passwords are a recent example. What does a hack of such a device mean? We haven't seen one with devastating consequences – yet. But even relatively minor hacks can cause inconvenience for the user. Worse, these vulnerabilities break the customers' trust and tarnish a company's brand reputation, which can irreparably damage its business.


Identifying who's who and what's what has never been so complex. It's not just about protecting IoT devices but the entire ecosystem, from the customer to the partner, the web page, the mobile device, the mobile app, the cloud and everything else in between.


Static and portable devices need to communicate with each other, and human-to-machine and machine-to-machine identification and interaction must be taken into account. Without the right model in place, your organisation could be at risk of making your data – and your customers' – openly available to cyber-attacks.


The IoT requires a new way of thinking and acting, one that will protect a business and help it grow. To ensure security in the era of IoT, I'd recommend organisations consider the following points.


1. Think security


IT needs to authenticate customers outside the firewall. Users may want to access systems via multiple devices, and they will expect a user experience that is tailored to how, when, and where they access services.


2. Think ecosystem


Trying to duct-tape security architecture together or protect access on a device-by-device basis is not going to work effectively – or even at all. A single platform that unifies the entire ecosystem will provide a simple, repeatable way to protect a growing number of devices.


3. Think flexibility


Building a platform that supports and unifies the entire ecosystem is challenging enough, but you also need to keep the future in mind. Businesses need to support new services, new devices, and new infrastructure on the back-end. Open source gives IT a platform it can build on and customise, while open standards offer the flexibility to adapt to future needs in a very standardised manner.


4. Think monetisation


How do enterprises protect data they can't see as it's communicated between IoT devices and other parts of the ecosystem? Ensuring data is encrypted and authenticated is important. However, it's also important to understand the relationship between different parts of the ecosystem.


Knowing who accesses data and how, where, and when they access it are just a few of the factors that can help ensure proper security. This knowledge helps you verify the user is legitimate and that current behaviour is consistent with past behaviour. Because organisations collect all this information, businesses now have a platform they can leverage to better understand and serve the needs of their customers and to provide upsell opportunities that generate new revenue streams.


Reputational damage


Savvy organisations will go to great lengths to protect their customers. We've all seen the negative impact mega data-breaches have on organisations. Being smart about security not only helps the CEO keep his or her job, it helps to protect the brand and provides an opportunity to turn the cost of IoT security on its head by using it to provide new and valuable avenues for future growth. Isn't that what the board really wants in the first place?


According to a recent Gartner report, CEOs list growth among their top three business priorities and are investing heavily in their digital businesses to achieve this goal. IoT will surely play a significant role in achieving this growth, but if it is implemented without proper security, CEOs will fail before they have a chance to succeed.



  • Neil Chapman is Senior Vice President & Managing Director EMEA/International at ForgeRock






from TechRadar: All latest feeds http://ift.tt/1FWMLGW

via IFTTT

Related Posts:

  • Updated: Best gaming laptops: top gaming notebooks reviewedGaming laptops we recommendUpdate: Gigabyte is two for two. After the company won our hearts with the P37X powerhouse gaming laptop, we've also become smitten with the P35K v3 as an surprisingly capable machine on the afforda… Read More
  • Review: Woojer reviewA silent, wearable woofer. That's the claim Woojer is making about its… er… Woojer.Weird indie Kickstarter projects really do have a lot to answer for...The Woojer truly is a bizarre little device, designed to translate sound… Read More
  • HP splashes out $2.7bn on Aruba NetworksHP's aspirations to become a big player in the enterprise mobility sector have been boosted after it acquired Aruba Network in a deal worth $2.7 billion (around £1.7 billion, or AU$3.4 billion).It gives HP access to Aruba's e… Read More
  • MWC 2015: You can try out Project Spartan in the next Windows 10 previewInternet Explorer is the past - Project Spartan is the future. Microsoft's super-fast, clutter-free browser for the future is on its way and the Redmond company has just confirmed you'll be able to try it out yourself in the … Read More
  • Hands-on review: MWC 2015: Windows 10 MobileMicrosoft unveiled a new version of its operating system last year breaking the mould and skipping ahead right to the number 10.Windows 10's main aim was to connect its ecosystem of devices using the same apps across desktop,… Read More

0 commentaires :

Enregistrer un commentaire