Asset-Driven Approach for Security Risk Assessment in IoT Systems
Autor: | Paul-Emmanuel Brun, Marius Bozga, Diego Fernández Alonso, Abdelhakim Baouya, Saddek Bensalem, Salim Chehida, Guillemette Massot |
---|---|
Přispěvatelé: | VERIMAG (VERIMAG - IMAG), Institut polytechnique de Grenoble - Grenoble Institute of Technology (Grenoble INP ), Université Grenoble Alpes (UGA)-Université Grenoble Alpes (UGA)-Centre National de la Recherche Scientifique (CNRS) |
Jazyk: | angličtina |
Rok vydání: | 2021 |
Předmět: |
Cover (telecommunications)
business.industry Computer science Compromise media_common.quotation_subject Urban water cycle 020206 networking & telecommunications 02 engineering and technology Domain model Asset (computer security) Work (electrical) Risk analysis (engineering) 13. Climate action 0202 electrical engineering electronic engineering information engineering 020201 artificial intelligence & image processing [INFO]Computer Science [cs] Risk assessment Internet of Things business ComputingMilieux_MISCELLANEOUS media_common |
Zdroj: | Risks and Security of Internet and Systems Risks and Security of Internet and Systems, pp.149-163, 2021, ⟨10.1007/978-3-030-68887-5_9⟩ Lecture Notes in Computer Science ISBN: 9783030688868 CRiSIS |
DOI: | 10.1007/978-3-030-68887-5_9⟩ |
Popis: | The growth of damage caused by security issues in IoT-based systems requires the definition of a rigorous methodology allowing risks assessment and protecting the system against them. In this work, we propose an approach that follows the security standards to identify and analyse the potential risks. Our approach starts by specifying the system assets considering IoT domain model and the potential threats that might compromise them. Starting from the list of threats, we define the security objectives then technical requirements and countermeasures that can cover these objectives. We apply our approach to an IoT system for monitoring and control the management of the urban water cycle. |
Databáze: | OpenAIRE |
Externí odkaz: |