The IT Law Wiki
Tag: Source edit
mNo edit summary
Tag: Source edit
Line 13: Line 13:
 
[[Category:IoT]]
 
[[Category:IoT]]
 
[[Category:Cybersecurity]]
 
[[Category:Cybersecurity]]
[[Category:2019]]
+
[[Category:2020]]

Revision as of 01:12, 15 December 2020

Citation

National Institute of Standards and Technology, Core Cybersecurity Feature Baseline for Securable IoT Devices: A Starting Point for IoT Device Manufacturers (May 2020) (NISTIR 8259A) (full-text).

Overview

This publication is intended to help Internet of Things (IoT) device manufacturers understand the cybersecurity risks their customers face so IoT devices can provide cybersecurity features that make them at least minimally securable by the individuals and organizations who acquire and use them. The publication defines a core baseline of cybersecurity features that manufacturers may voluntarily adopt for IoT devices they produce.

The core baseline addresses general cybersecurity risks faced by a generic customer. Manufacturers often know more about their customers and the risks they face, so the publication also provides information on how manufacturers can identify features beyond the core baseline most appropriate for their customers and implement those features to further improve how securable their IoT devices are.

This approach can help lessen the cybersecurity-related efforts needed by IoT device customers, which in turn should reduce the prevalence and severity of IoT device compromises and the attacks performed using compromised IoT devices.