Defining Cyber Risk Scenarios to Evaluate IoT Systems

The growth of the Internet of Things (IoT) has accelerated digital transformation processes in organizations and cities. However, it has also opened new security challenges due to the complexity and dynamism of these systems. The application of security risk analysis methodologies used to evaluate i...

Full description

Bibliographic Details
Main Authors: Roberto Andrade, Iván Ortiz, María Cazares, Gustavo Navas, María Isabel Sánchez-Pazmiño
Format: Article
Language:English
Published: MDPI AG 2022-12-01
Series:Games
Subjects:
Online Access:https://www.mdpi.com/2073-4336/14/1/1
_version_ 1797895029131313152
author Roberto Andrade
Iván Ortiz
María Cazares
Gustavo Navas
María Isabel Sánchez-Pazmiño
author_facet Roberto Andrade
Iván Ortiz
María Cazares
Gustavo Navas
María Isabel Sánchez-Pazmiño
author_sort Roberto Andrade
collection DOAJ
description The growth of the Internet of Things (IoT) has accelerated digital transformation processes in organizations and cities. However, it has also opened new security challenges due to the complexity and dynamism of these systems. The application of security risk analysis methodologies used to evaluate information technology (IT) systems have their limitations to qualitatively assess the security risks in IoT systems, due to the lack of historical data and the dynamic behavior of the solutions based on the IoT. The objective of this study is to propose a methodology for developing a security risk analysis using scenarios based on the risk factors of IoT devices. In order to manage the uncertainty due to the dynamics of IoT behaviors, we propose the use of Bayesian networks in conjunction with the Best Worst Method (BWM) for multi-criteria decision-making to obtain a quantitative security risk value.
first_indexed 2024-04-10T07:19:54Z
format Article
id doaj.art-b4fe96a0433646a2bdf7f5e09400859b
institution Directory Open Access Journal
issn 2073-4336
language English
last_indexed 2024-04-10T07:19:54Z
publishDate 2022-12-01
publisher MDPI AG
record_format Article
series Games
spelling doaj.art-b4fe96a0433646a2bdf7f5e09400859b2023-02-24T14:50:17ZengMDPI AGGames2073-43362022-12-01141110.3390/g14010001Defining Cyber Risk Scenarios to Evaluate IoT SystemsRoberto Andrade0Iván Ortiz1María Cazares2Gustavo Navas3María Isabel Sánchez-Pazmiño4Facultad de Ingeniería de Sistemas, Escuela Politécnica Nacional, Quito 170525, EcuadorFacultad de Ingeniería y Ciencias Aplicadas, Universidad de las Américas, Quito 170122, EcuadorIDEIAGEOCA Research Group, Universidad Politécnica Salesiana, Quito 170517, EcuadorIDEIAGEOCA Research Group, Universidad Politécnica Salesiana, Quito 170517, EcuadorFacultad de Posgrados, Universidad de las Américas, Quito 170122, EcuadorThe growth of the Internet of Things (IoT) has accelerated digital transformation processes in organizations and cities. However, it has also opened new security challenges due to the complexity and dynamism of these systems. The application of security risk analysis methodologies used to evaluate information technology (IT) systems have their limitations to qualitatively assess the security risks in IoT systems, due to the lack of historical data and the dynamic behavior of the solutions based on the IoT. The objective of this study is to propose a methodology for developing a security risk analysis using scenarios based on the risk factors of IoT devices. In order to manage the uncertainty due to the dynamics of IoT behaviors, we propose the use of Bayesian networks in conjunction with the Best Worst Method (BWM) for multi-criteria decision-making to obtain a quantitative security risk value.https://www.mdpi.com/2073-4336/14/1/1cybersecurityIoTBayesian networkmulti-criteria analysisrisk analysis
spellingShingle Roberto Andrade
Iván Ortiz
María Cazares
Gustavo Navas
María Isabel Sánchez-Pazmiño
Defining Cyber Risk Scenarios to Evaluate IoT Systems
Games
cybersecurity
IoT
Bayesian network
multi-criteria analysis
risk analysis
title Defining Cyber Risk Scenarios to Evaluate IoT Systems
title_full Defining Cyber Risk Scenarios to Evaluate IoT Systems
title_fullStr Defining Cyber Risk Scenarios to Evaluate IoT Systems
title_full_unstemmed Defining Cyber Risk Scenarios to Evaluate IoT Systems
title_short Defining Cyber Risk Scenarios to Evaluate IoT Systems
title_sort defining cyber risk scenarios to evaluate iot systems
topic cybersecurity
IoT
Bayesian network
multi-criteria analysis
risk analysis
url https://www.mdpi.com/2073-4336/14/1/1
work_keys_str_mv AT robertoandrade definingcyberriskscenariostoevaluateiotsystems
AT ivanortiz definingcyberriskscenariostoevaluateiotsystems
AT mariacazares definingcyberriskscenariostoevaluateiotsystems
AT gustavonavas definingcyberriskscenariostoevaluateiotsystems
AT mariaisabelsanchezpazmino definingcyberriskscenariostoevaluateiotsystems