首页> 外文期刊>ISACA journal >Back to the Future in Device Security Leveraging FIPPs to Proactively Manage IoT Privacy and Security Risk
【24h】

Back to the Future in Device Security Leveraging FIPPs to Proactively Manage IoT Privacy and Security Risk

机译:回到设备安全的未来,利用FIPP主动管理物联网隐私和安全风险

获取原文
获取原文并翻译 | 示例
       

摘要

IoT represents great and unpredictable change in the way data are collected, processed, stored and analyzed. New technologies will significantly improve the way companies operate their business and interact with customers and other organizations. In this sense, IoT symbolizes great promise, but it also poses risk to personal privacy and security, including collecting and processing data for new purposes beyond their original intent and generating amplified risk associated with insecure devices and target-rich data sources. To address these issues and challenges, companies must incorporate privacy and security from the outset when looking to adopt, design and deploy new connected technologies. FIPPs represent the foundational elements of many comprehensive risk- and control-based privacy frameworks. Organizations can leverage FIPPs-based frameworks, including GAPP and NIST SP 800-53 appendix J, to evaluate the privacy and security issues posed by new IoT devices, help their organizations design and integrate secure technologies, and reduce their overall risk levels. Although IoT is changing the way data are collected, processed and used, FIPPs contain relevant guidelines for companies to manage privacy and security proactively in the design of new IoT devices.
机译:物联网代表着数据收集,处理,存储和分析方式的巨大且不可预测的变化。新技术将大大改善公司运营业务以及与客户和其他组织进行交互的方式。从这个意义上讲,物联网象征着巨大的希望,但同时也给个人隐私和安全带来风险,包括收集和处理超出其原始意图的数据用于新目的,并产生与不安全的设备和目标丰富的数据源相关的放大风险。为了解决这些问题和挑战,公司在寻求采用,设计和部署新的连接技术时必须从一开始就考虑到隐私和安全性。 FIPP代表了许多基于风险和控制的全面隐私框架的基本元素。组织可以利用基于FIPP的框架(包括GAPP和NIST SP 800-53附录J)来评估新物联网设备带来的隐私和安全问题,帮助其组织设计和集成安全技术,并降低总体风险水平。尽管物联网正在改变数据收集,处理和使用的方式,但FIPP包含有关公司在新物联网设备设计中主动管理隐私和安全性的相关准则。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号