A new security methodology for internet of things
Surya Kant Josyula, Daya Sagar Gupta · 2017
The usability and popularity of the phenomenon of Internet of Things (IoT) is growing day by day. It is estimated that there will be billions of devices which will be inter-connected and working with each other using IoT. As the number of devices using this concept grows rapidly, security risks also grow with the same pace. Security principles and concepts applicable to existing networks may not be directly applicable to these networks and involved devices because of the constraints involved in IoT. Personal data privacy, financial investments, safety hazards and human-life risks are some of the major stakes in IoT due to its working with everyday objects and human beings. More and more software vulnerabilities get exploited by attackers and other insane people. Then huge costs need to be spent to mitigate the problems that occur due to security issues. Therefore, this paper proposes a new security methodology based on Security Engineering Framework which considers security requirements to be a part the design decisions in the development life cycle. Using the inferred decisions of the proposed methodology security measures can be easily adapted during each stage of software development to improve overall security and maintenance costs of the system.