Defining Cyber Risk Scenarios to Evaluate IoT Systems
The growth of the Internet of Things (IoT) has accelerated digital transformation processes in organizations and cities. However, it has also opened new security challenges due to the complexity and dynamism of these systems. The application of security risk analysis methodologies used to evaluate i...
Main Authors: | , , , , |
---|---|
Format: | Article |
Language: | English |
Published: |
MDPI AG
2022-12-01
|
Series: | Games |
Subjects: | |
Online Access: | https://www.mdpi.com/2073-4336/14/1/1 |
_version_ | 1797895029131313152 |
---|---|
author | Roberto Andrade Iván Ortiz María Cazares Gustavo Navas María Isabel Sánchez-Pazmiño |
author_facet | Roberto Andrade Iván Ortiz María Cazares Gustavo Navas María Isabel Sánchez-Pazmiño |
author_sort | Roberto Andrade |
collection | DOAJ |
description | The growth of the Internet of Things (IoT) has accelerated digital transformation processes in organizations and cities. However, it has also opened new security challenges due to the complexity and dynamism of these systems. The application of security risk analysis methodologies used to evaluate information technology (IT) systems have their limitations to qualitatively assess the security risks in IoT systems, due to the lack of historical data and the dynamic behavior of the solutions based on the IoT. The objective of this study is to propose a methodology for developing a security risk analysis using scenarios based on the risk factors of IoT devices. In order to manage the uncertainty due to the dynamics of IoT behaviors, we propose the use of Bayesian networks in conjunction with the Best Worst Method (BWM) for multi-criteria decision-making to obtain a quantitative security risk value. |
first_indexed | 2024-04-10T07:19:54Z |
format | Article |
id | doaj.art-b4fe96a0433646a2bdf7f5e09400859b |
institution | Directory Open Access Journal |
issn | 2073-4336 |
language | English |
last_indexed | 2024-04-10T07:19:54Z |
publishDate | 2022-12-01 |
publisher | MDPI AG |
record_format | Article |
series | Games |
spelling | doaj.art-b4fe96a0433646a2bdf7f5e09400859b2023-02-24T14:50:17ZengMDPI AGGames2073-43362022-12-01141110.3390/g14010001Defining Cyber Risk Scenarios to Evaluate IoT SystemsRoberto Andrade0Iván Ortiz1María Cazares2Gustavo Navas3María Isabel Sánchez-Pazmiño4Facultad de Ingeniería de Sistemas, Escuela Politécnica Nacional, Quito 170525, EcuadorFacultad de Ingeniería y Ciencias Aplicadas, Universidad de las Américas, Quito 170122, EcuadorIDEIAGEOCA Research Group, Universidad Politécnica Salesiana, Quito 170517, EcuadorIDEIAGEOCA Research Group, Universidad Politécnica Salesiana, Quito 170517, EcuadorFacultad de Posgrados, Universidad de las Américas, Quito 170122, EcuadorThe growth of the Internet of Things (IoT) has accelerated digital transformation processes in organizations and cities. However, it has also opened new security challenges due to the complexity and dynamism of these systems. The application of security risk analysis methodologies used to evaluate information technology (IT) systems have their limitations to qualitatively assess the security risks in IoT systems, due to the lack of historical data and the dynamic behavior of the solutions based on the IoT. The objective of this study is to propose a methodology for developing a security risk analysis using scenarios based on the risk factors of IoT devices. In order to manage the uncertainty due to the dynamics of IoT behaviors, we propose the use of Bayesian networks in conjunction with the Best Worst Method (BWM) for multi-criteria decision-making to obtain a quantitative security risk value.https://www.mdpi.com/2073-4336/14/1/1cybersecurityIoTBayesian networkmulti-criteria analysisrisk analysis |
spellingShingle | Roberto Andrade Iván Ortiz María Cazares Gustavo Navas María Isabel Sánchez-Pazmiño Defining Cyber Risk Scenarios to Evaluate IoT Systems Games cybersecurity IoT Bayesian network multi-criteria analysis risk analysis |
title | Defining Cyber Risk Scenarios to Evaluate IoT Systems |
title_full | Defining Cyber Risk Scenarios to Evaluate IoT Systems |
title_fullStr | Defining Cyber Risk Scenarios to Evaluate IoT Systems |
title_full_unstemmed | Defining Cyber Risk Scenarios to Evaluate IoT Systems |
title_short | Defining Cyber Risk Scenarios to Evaluate IoT Systems |
title_sort | defining cyber risk scenarios to evaluate iot systems |
topic | cybersecurity IoT Bayesian network multi-criteria analysis risk analysis |
url | https://www.mdpi.com/2073-4336/14/1/1 |
work_keys_str_mv | AT robertoandrade definingcyberriskscenariostoevaluateiotsystems AT ivanortiz definingcyberriskscenariostoevaluateiotsystems AT mariacazares definingcyberriskscenariostoevaluateiotsystems AT gustavonavas definingcyberriskscenariostoevaluateiotsystems AT mariaisabelsanchezpazmino definingcyberriskscenariostoevaluateiotsystems |