...
首页> 外文期刊>EURASIP journal on information security >IoT cyber risk a holistic analysis of cyber risk assessment frameworks, risk vectors, and risk ranking process
【24h】

IoT cyber risk a holistic analysis of cyber risk assessment frameworks, risk vectors, and risk ranking process

机译:IOT网络风险对网络风险评估框架,风险向量和风险排名过程的整体分析

获取原文
           

摘要

Security vulnerabilities of the modern Internet of Things (IoT) systems are unique, mainly due to the complexity and heterogeneity of the technology and data. The risks born out of these IoT systems cannot easily fit into an existing risk framework. There are many cybersecurity risk assessment approaches and frameworks that are under deployment in many governmental and commercial organizations. Extending these existing frameworks to IoT systems alone will not address the new risks that have arisen in the IoT ecosystem. This study has included a review of existing popular cyber risk assessment methodologies and their suitability to IoT systems. National Institute of Standards and Technology, Operationally Critical Threat, Asset, and Vulnerability Evaluation, Threat AssessmentandRemediation Analysis, and International Standards Organization are the four main frameworks critically analyzed in this research study. IoT risks are presented and reviewed in terms of the IoT risk category and impacted industries. IoT systems in financial technology and healthcare are dealt with in detail, given their high-risk exposure. Risk vectors for IoT and the Internet of Medical Things (IoMT) are discussed in this study. A unique risk ranking method to rank and quantify IoT risk is introduced in this study. This ranking method initiates a risk assessment approach exclusively for IoT systems by quantifying IoT risk vectors, leading to effective risk mitigation strategies and techniques. A unique computational approach to calculate the cyber risk for IoT systems with IoT-specific impact factors has been designed and explained in the context of IoMT systems.
机译:现代物联网的安全漏洞(IOT)系统是独一无二的,主要是由于技术和数据的复杂性和异质性。出于这些IOT系统中出现的风险不能轻易符合现有的风险框架。在许多政府和商业组织中,有许多网络安全风险评估方法和框架正在部署。仅将这些现有框架扩展到IOT系统将不会解决IOT生态系统中出现的新风险。本研究包括对现有的热门网络风险评估方法的审查及其对IOT系统的适用性。国家标准与技术研究所,经营关键威胁,资产和漏洞评估,威胁评估和解分析和国际标准组织是本研究研究中的四个主要框架。根据物联网风险类别和受影响的行业介绍和审查了IOT风险。鉴于其高风险暴露,详细讨论了金融技术和医疗保健的物联网系统。在本研究中讨论了物联网和医学互联网(IOMT)的风险向量。在本研究中介绍了一个独特的风险排名方法来等级和量化物联网风险。该排名方法通过量化物联网风险向量,专门为物联网系统启动风险评估方法,导致有效的风险缓解策略和技术。在IOMT系统的背景下,设计和解释了一种独特的计算IOT系统网络风险的网络风险。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号