Security risk assessment in Internet of Things systems

Cybersecurity risk assessment approaches have served us well over the last decade. They have provided a platform through which organisations and governments could better protect themselves against pertinent risks. As the complexity, pervasiveness and automation of technology systems increases howeve...

Full description

Bibliographic Details
Main Authors: Nurse, J, Creese, S, De Roure, D
Format: Journal article
Published: IEEE 2017
_version_ 1797085215254904832
author Nurse, J
Creese, S
De Roure, D
author_facet Nurse, J
Creese, S
De Roure, D
author_sort Nurse, J
collection OXFORD
description Cybersecurity risk assessment approaches have served us well over the last decade. They have provided a platform through which organisations and governments could better protect themselves against pertinent risks. As the complexity, pervasiveness and automation of technology systems increases however, particularly with the Internet of Things (IoT), there is a strong argument for the need for new approaches to assess risk and build trust. The challenge with simply extending existing assessment methodologies to these systems is that we could be blind to new risks arising in such ecosystems. These risks could be related to the high degrees of connectivity present, or the coupling of digital, cyber-physical and social systems. This article makes the case for new methodologies to assess risk in this context which consider the dynamics and uniqueness of IoT, but also the rigour of best practice in risk assessment.
first_indexed 2024-03-07T02:05:47Z
format Journal article
id oxford-uuid:9ef3ca63-624f-4ff6-b22b-3bb09300c696
institution University of Oxford
last_indexed 2024-03-07T02:05:47Z
publishDate 2017
publisher IEEE
record_format dspace
spelling oxford-uuid:9ef3ca63-624f-4ff6-b22b-3bb09300c6962022-03-27T00:53:42ZSecurity risk assessment in Internet of Things systemsJournal articlehttp://purl.org/coar/resource_type/c_dcae04bcuuid:9ef3ca63-624f-4ff6-b22b-3bb09300c696Symplectic Elements at OxfordIEEE2017Nurse, JCreese, SDe Roure, DCybersecurity risk assessment approaches have served us well over the last decade. They have provided a platform through which organisations and governments could better protect themselves against pertinent risks. As the complexity, pervasiveness and automation of technology systems increases however, particularly with the Internet of Things (IoT), there is a strong argument for the need for new approaches to assess risk and build trust. The challenge with simply extending existing assessment methodologies to these systems is that we could be blind to new risks arising in such ecosystems. These risks could be related to the high degrees of connectivity present, or the coupling of digital, cyber-physical and social systems. This article makes the case for new methodologies to assess risk in this context which consider the dynamics and uniqueness of IoT, but also the rigour of best practice in risk assessment.
spellingShingle Nurse, J
Creese, S
De Roure, D
Security risk assessment in Internet of Things systems
title Security risk assessment in Internet of Things systems
title_full Security risk assessment in Internet of Things systems
title_fullStr Security risk assessment in Internet of Things systems
title_full_unstemmed Security risk assessment in Internet of Things systems
title_short Security risk assessment in Internet of Things systems
title_sort security risk assessment in internet of things systems
work_keys_str_mv AT nursej securityriskassessmentininternetofthingssystems
AT creeses securityriskassessmentininternetofthingssystems
AT deroured securityriskassessmentininternetofthingssystems