A Survey of Cybersecurity Certification for the Internet of Things

Author:

Matheu Sara N.1ORCID,Hernández-Ramos José L.2,Skarmeta Antonio F.1,Baldini Gianmarco2

Affiliation:

1. University of Murcia, Department of Information and Communications Engineering, Murcia, Spain

2. European Commission, Joint Research Centre, Ispra 21027, Italy

Abstract

In recent years, cybersecurity certification is gaining momentum as the baseline to build a structured approach to mitigate cybersecurity risks in the Internet of Things (IoT). This initiative is driven by industry, governmental institutions, and research communities, which have the goal to make IoT more secure for the end-users. In this survey, we analyze the current cybersecurity certification schemes, as well as the potential challenges to make them applicable for the IoT ecosystem. We also examine current efforts related to risk assessment and testing processes, which are widely recognized as the processes to build a cybersecurity certification framework. Our work provides a multidisciplinary perspective of a possible IoT cybersecurity certification framework by integrating research and technical tools and processes with policies and governance structures, which are analyzed against a set of identified challenges. This survey is intended to give a comprehensive overview of cybersecurity certification to facilitate the definition of a framework that fits in emerging scenarios, such as the IoT paradigm.

Funder

Spanish Ministry of Economy and Competitiveness

Ministry of Education and Professional Training of Spain

European Commission through the SerIoT project

ERDF funds cofinantiation through the PERSEIDES project

CyberSec4Europe

Publisher

Association for Computing Machinery (ACM)

Subject

General Computer Science,Theoretical Computer Science

Reference187 articles.

1. European Parliament. 2016. Directive 2010/41/EU of the European Parliament and of the Council of 7 July 2010. Retrieved from https://eur-lex.europa.eu/legal-content/EN/TXT/PDF/?uri=CELEX:32016L11488from=EN. European Parliament. 2016. Directive 2010/41/EU of the European Parliament and of the Council of 7 July 2010. Retrieved from https://eur-lex.europa.eu/legal-content/EN/TXT/PDF/?uri=CELEX:32016L11488from=EN.

2. Cyber Security and the Internet of Things: Vulnerabilities, Threats, Intruders and Attacks

3. Model-Based Testing as a Service for IoT Platforms

Cited by 37 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. Risk and threat mitigation techniques in internet of things (IoT) environments: a survey;Frontiers in the Internet of Things;2024-01-23

2. Integrating the manufacturer usage description standard in the modelling of cyber–physical systems;Computer Standards & Interfaces;2024-01

3. A Deep Learning Approach to Discover Router Firmware Vulnerabilities;IEEE Transactions on Industrial Informatics;2024-01

4. An IoT Security Risk Assessment Framework for Healthcare Environment;2023 International Symposium on Networks, Computers and Communications (ISNCC);2023-10-23

5. A Secure Ensemble Learning-Based Fog-Cloud Approach for Cyberattack Detection in IoMT;IEEE Transactions on Industrial Informatics;2023-10

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3