<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>IoT Archives - Corsec Security, Inc.®</title>
	<atom:link href="https://sitdev.corsec.com/tag/iot/feed/" rel="self" type="application/rss+xml" />
	<link>https://sitdev.corsec.com/tag/iot/</link>
	<description>Corsec helps companies complete security certifications and validations like FIPS 140-2, Common Criteria, and listing on the DoDIN APL / UC APL.</description>
	<lastBuildDate>Tue, 04 Feb 2020 18:11:01 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.3</generator>

<image>
	<url>https://sitdev.corsec.com/wp-content/uploads/cropped-Corsec-Logo-SiteMap-32x32.png</url>
	<title>IoT Archives - Corsec Security, Inc.®</title>
	<link>https://sitdev.corsec.com/tag/iot/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>IoT Expansion Opens The Door to Vulnerabilities</title>
		<link>https://sitdev.corsec.com/iot-expansion-opens-door-vulnerabilities/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Wed, 11 Apr 2018 20:30:25 +0000</pubDate>
				<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[DoDIN APL]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Certification ROI]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[Data Breaches]]></category>
		<category><![CDATA[IoT]]></category>
		<category><![CDATA[IT security]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<category><![CDATA[UC APL]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=14205</guid>

					<description><![CDATA[]]></description>
										<content:encoded><![CDATA[<div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<p>The IoT expansion has been innovative, immersive, and impressive; revolutionizing modern day interactions and connectivity.</p>
<p>To meet this demand, companies are deploying products at rapid speed, while lowering prices to promote user adoption; leaving many in the security sector concerned about user data protection and proper product security hardening.</p>
<p>To address these concerns, The UK is taking a proactive approach, outlining a 13-point Code of Practice for manufactures, service providers, mobile application developers, and retailers to follow related to the IoT space &#8211; <a href="https://assets.publishing.service.gov.uk/government/uploads/system/uploads/attachment_data/file/686089/Secure_by_Design_Report_.pdf">“Secure by Design: Improving the Cyber Security of Consumer Internet of Things Report”</a>.</p>
<p>This concept may be new to the growing IoT space, but it is already the status quo for many products in Regulated Industries, as well as heavily mandated by Federal Governments around the globe. Their requirements for certifications like <a href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a>, <a href="https://sitdev.corsec.com/common-criteria/">Common Criteria</a>, and the <a href="https://sitdev.corsec.com/dodin-apl/">DoD’s APL </a>address these concerns; ensuring products protect sensitive data and implement proper security architecture frameworks prior to deployment and network integration.</p>
<p>For companies looking to analyze their current security strategy and implement sound product security certification practices, there is help. Corsec Security is the global leader in providing assistance in security certifications and product security hardening. With the largest staff of experts in the industry and a comprehensive end-to-end solution that includes assessment audits, documentation, testing, enterprise lab services, and strategic product roadmap planning, Corsec has helped secure more than <a href="https://sitdev.corsec.com/global-clients/">400 unique products</a> for hundreds of organizations on five continents over the last 20 years.</p>
<p>This guidance helps companies address security requirements for healthcare, financial services, critical infrastructure, national and international markets, and now IoT. Not only do they secure products, but also foster public trust and reap rewards for security investments, enabling you to overcome competitors in a market valued at over $3.5 trillion.</p>
<p>More on <a href="https://sitdev.corsec.com/turnkey-solution/#designengineering">Product Security Hardening</a></p>

		</div>
	</div>
</div></div></div></div><div class="vc_row wpb_row vc_row-fluid"><div class="wpb_column vc_column_container vc_col-sm-12"><div class="vc_column-inner"><div class="wpb_wrapper">
	<div class="wpb_text_column wpb_content_element " >
		<div class="wpb_wrapper">
			<h5><strong><a href="https://sitdev.corsec.com/company/contact-us/">Connect With Us:</a></strong></h5>
<p>Stay up to date with Corsec as we bring you all the most recent updates to the standards, certifications, and requirements – <a href="http://marketing.corsec.com/Subscribe-Email.html">Subscribe</a></p>
<h5><a href="https://sitdev.linkedin.com/company/corsec-security"><img decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png" sizes="(max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/LinkedIn.png 128w, https://sitdev.corsec.com/wp-content/uploads/LinkedIn-150x150.png 150w" alt="LinkedIn" width="35" height="35" />     </a><a href="https://twitter.com/CorsecSecurity"><img decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Twitter.png" sizes="(max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Twitter.png 128w, https://sitdev.corsec.com/wp-content/uploads/Twitter-150x150.png 150w" alt="Twitter" width="35" height="35" />     </a><a href="https://sitdev.facebook.com/Corsec-158518584300710/"><img decoding="async" src="https://sitdev.corsec.com/wp-content/uploads/Facebook.png" sizes="(max-width: 40px) 100vw, 40px" srcset="https://sitdev.corsec.com/wp-content/uploads/Facebook.png 128w, https://sitdev.corsec.com/wp-content/uploads/Facebook-150x150.png 150w" alt="Facebook" width="35" height="35" /></a></h5>
<hr />
<h5></h5>

		</div>
	</div>
</div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>IoT Security Facing Government Regulation</title>
		<link>https://sitdev.corsec.com/iot-regulation/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Wed, 27 Sep 2017 19:08:03 +0000</pubDate>
				<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[federal regulation]]></category>
		<category><![CDATA[IoT]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=10891</guid>

					<description><![CDATA[New legislation could be on the way to secure the devices we use in our everyday lives. From our smart phones to our garage door openers, the IoT space has revolutionized the way we organize ... <p class="read-more-container"><a title="IoT Security Facing Government Regulation" class="read-more button" href="https://sitdev.corsec.com/iot-regulation/#more-10891" aria-label="More on IoT Security Facing Government Regulation">Read more</a></p>]]></description>
										<content:encoded><![CDATA[<p>New legislation could be on the way to secure the devices we use in our everyday lives. From our smart phones to our garage door openers, the IoT space has revolutionized the way we organize and live out our daily routine. In recent months, the security of these devices has been scrutinized as vulnerabilities have been uncovered, and even worse, exploited.</p>
<p>Republicans Cory Gardner and Steve Daines along with Democrats Mark Warner and Ron Wyden are working to introduce a new bill that will work to prevent such attacks &#8211; <span style="color: #0000ff;"><a style="color: #0000ff;" href="http://www.scribd.com/document/355269230/Internet-of-Things-Cybersecurity-Improvement-Act-of-2017">Internet of Things Cybersecurity Improvement Act of 2017</a></span>. The bill outlines &#8220;<span class="a">minimal cybersecurity operational standards for </span><span class="a">Internet-connected devices purchased by Federal agen</span><span class="a">cies, and for other purposes.&#8221; The legislation is intended to hold providers of devices that connect to the internet accountable for potential threats to the security of the connected products. </span>These companies would need to provide patches, fixes, and other means to safeguard against attacks as they are uncovered.</p>
<p>The bill lays out several security focuses, including:</p>
<ul>
<li>IoT companies that offer products purchased by the federal government must ensure their devices are patchable, rely on industry standard protocols, do not use hard-coded passwords, and do not contain any known security vulnerabilities</li>
<li>Requirements for alternative network-level security requirements for devices with limited data processing and software functionality, led by the Office of Management and Budget (OMB)</li>
<li>The development of new guidelines regarding cybersecurity coordinated vulnerability disclosure policies to be required by contractors providing connected devices to the U.S. Government, led by the Department of Homeland Security’s National Protection and Programs Directorate</li>
<li>An executive agency mandate to inventory all Internet-connected devices in use by the agency</li>
</ul>
<p>This concept may be new to those within the growing IoT space, but it is already the status quo in many Federal agencies and heavily Regulated Industries around the globe. Security standards and procedures exist today in order to hold companies accountable for the technology they produce, and through an accredited security certification testing process, they are validated against potential threats to systems and infrastructure. This new movement to secure the IoT space has already taken lessons learned from other industries in order to quickly and effectively introduce protocols to protect user data and security. This new bill specifically &#8220;requires the contractor providing the Internet-connected device to provide written certification that the devices, does not contain, at the time of submitting the proposal, any hardware, software, or firmware component with any known security vulnerabilities or defects listed in the National Vulnerability Database of NIST.&#8221;</p>
<p>NIST oversees other security certifications such as <strong><span style="color: #008000;"><a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span></strong>, which is used to secure products sold into the U.S. federal government are required to complete FIPS 140-2 validation if they use cryptography in security systems that process sensitive but unclassified information.</p>
<p>If you would like more information regarding IoT Security, or how existing security certifications like: FIPS 140-2, Common Criteria, or the DoD&#8217;s APL, can be applied- then contact Corsec today to get started!</p>
<p><a href="http://marketing.corsec.com/Subscribe-Email.html">Subscribe</a> to Corsec emails!</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>IoT Device Security &#8211; What You Need To Know</title>
		<link>https://sitdev.corsec.com/iot-security/</link>
		
		<dc:creator><![CDATA[Jake Nelson]]></dc:creator>
		<pubDate>Thu, 20 Apr 2017 21:40:17 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Certification ROI]]></category>
		<category><![CDATA[Common Criteria]]></category>
		<category><![CDATA[Data Breaches]]></category>
		<category><![CDATA[FIPS 140-2]]></category>
		<category><![CDATA[IoT]]></category>
		<category><![CDATA[IP protection]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Certifications]]></category>
		<guid isPermaLink="false">https://sitdev.corsec.com/?p=9848</guid>

					<description><![CDATA[The expanding market for connected devices and the Internet of Things (IoT) has propelled demand for products that alleviate the stress of managing daily interactions; from buying groceries to protecting our homes, there is an app or device for ... <p class="read-more-container"><a title="IoT Device Security &#8211; What You Need To Know" class="read-more button" href="https://sitdev.corsec.com/iot-security/#more-9848" aria-label="More on IoT Device Security &#8211; What You Need To Know">Read more</a></p>]]></description>
										<content:encoded><![CDATA[<h5>The expanding market for connected devices and the Internet of Things (IoT) has propelled demand for products that alleviate the stress of managing daily interactions; from buying groceries to protecting our homes, there is an app or device for that. To meet this demand, manufacturers are developing products at rapid speed, while trying to keep prices low to promote user adoption. This has left many in the security sector asking the question, have we taken the necessary steps to ensure these products are properly securing user data?</h5>
<h3><strong>Internet of &#8220;Bad&#8221; Things?</strong></h3>
<h5>The IoT industry expansion has been innovative, immersive, and impressive. The direct-to-consumer IoT device market has also faced incredible growth, however with increased access and cheaper solutions, device security is not always prioritized.</h5>
<h5>IoT products aren&#8217;t limited to just one consumer audience- in fact, you can find products directed towards any demographic. Not only are the devices sold as a singular solution, but they can also be incorporated into existing technology. Often, they are fairly inexpensive and this is what makes unsecured IoT devices a goldmine to hackers; as they are now able to infiltrate and disrupt any consumer industry. From children&#8217;s toys, home assistants, connected cars, etc; IoT devices have begun to incorporate themselves within our everyday lives.</h5>
<h5>Protecting consumer data isn&#8217;t difficult, but it is a step that many overlook in a quest for convenience or excitement in adopting the new technology.</h5>
<h5>IoT specific security standards haven&#8217;t been ratified, which means that it is up to the consumer in most cases to ensure that they are taking every precaution in securing their devices.</h5>
<h3><strong><em>Here is your basic IoT Device Securing Checklist:</em></strong></h3>
<ol>
<li>Identify which of your devices have communication abilities, and ensure that the hardware/software/firmware is up to date on both the IoT device <strong>and</strong> whatever device you are establishing a connection with.</li>
<li>Upon your first use of the IoT device, update your user credentials. Do not just keep the credentials on the factory/default setting.</li>
<li>Disable any Universal Plug and Play (UPnP) option, and disable any automatic connections to the device.</li>
<li>Check to see if there is a competing product that has gone through the security certification process. A FIPS 140-2 certification shows that the product has undergone extensive testing and that the crypto functionality of the solution is up to <a href="http://csrc.nist.gov/groups/STM/cmvp/standards.html#02">NIST</a>/government standard.</li>
</ol>
<h5>If you are unsure of whether or not your IoT solution could benefit from obtaining a security certification like:<strong><span style="color: #008000;"> <a style="color: #008000;" href="https://sitdev.corsec.com/fips-140-2/">FIPS 140-2</a></span></strong>,<strong> <span style="color: #ff6600;"><a style="color: #ff6600;" href="https://sitdev.corsec.com/common-criteria/">Common Criteria</a></span></strong>, or <strong><span style="color: #000080;"><a style="color: #000080;" href="https://sitdev.corsec.com/uc-apl/">DoDIN APL</a></span></strong>; <a href="https://sitdev.corsec.com/contact-us/"><span style="color: #800000;"><strong>contact Corsec</strong></span></a> to discuss your options.</h5>
<p><a href="http://marketing.corsec.com/Subscribe-Email.html">Subscribe</a> to Corsec emails!</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/?utm_source=w3tc&utm_medium=footer_comment&utm_campaign=free_plugin

Content Delivery Network via cdn.corsec.com

Served from: sitdev.corsec.com @ 2026-05-30 23:18:32 by W3 Total Cache
-->