14
Carlos Chalico LI, CISA, CISSP, CISM, CGEIT, CRISC, PbDLA, ISO27001LA Instructor University of Toronto School of Continuing Studies +1(647)406-7785 [email protected] @CarlosChalicoT #IoT

Kijiji 160616

Embed Size (px)

Citation preview

Page 1: Kijiji 160616

Carlos Chalico LI, CISA, CISSP, CISM, CGEIT, CRISC, PbDLA, ISO27001LA

Instructor University of Toronto

School of Continuing Studies +1(647)406-7785

[email protected] @CarlosChalicoT

#IoT

Page 2: Kijiji 160616

Understanding IoT

Internet of Things

Page 3: Kijiji 160616

Understanding IoT

Thing

Identification Communication

Sensitivity Control

Native

Enabled

Page 4: Kijiji 160616

IoT Expected Market Growth

7.11.8700531

Trillion - USA

Trillion - China

Billion - Germany

Billion - UK

Estimated Value for

the Internet Of Things in 2030

Fuente: The Growth Game-Changer; Accenture

IoT GDP Impact (Current Conditions)

IoT GDP Impact (with additional measures)

Page 5: Kijiji 160616

7.11.8700531

Trillion - USA

Trillion - China

Billion - Germany

Billion - UK

Estimated Value for

the Internet Of Things in 2030

Fuente: Winning with the Industrial Internet of Things; Accenture

• NAC = National Absorptive Capacity - Reliable banking and finance - Education - Good governance - Healthy network of suppliers - Levels of research and development

- Presence of High-Tech companies - Degree of Technology Skills - Level of social and end-user acceptance - Willingness to embrace organizational

change - Ability to respond to the impacts on

human capital

Most conductive environments

Weaker enabling environments

Middle Performing Cohort

IoT Expected Market Growth

100%

Page 6: Kijiji 160616

Is there any threat for the IoT?

Fuente: Defending the Digital Frontier: A Security Agenda; Jose Granado, Sajay Rai, Mark Doll

Inve

stm

ent

High

Low

1990s 2000sTime

Information Security

Inform

ation

Techno

logy

Security

Breach

Page 7: Kijiji 160616

Is there any threat for the IoT?

Page 8: Kijiji 160616

Is there any threat for the IoT?

Page 9: Kijiji 160616

Is there any threat for the IoT?

XX

XX

X

XX

Page 10: Kijiji 160616

NYSE - Navigating the Digital AgeVI. Cybersecurity beyond your network

32. The Internet of Things • IoT Benefits • IoT Privacy Issues • IoT Security Issues • Addressing the Issues

• Not future, here, today • Consider risks and challenges • One step ahead • Security protocols standardization • Notifying security breaches • Solve issues related to breaches • Develop legal agreements with IoT

vendors

Page 11: Kijiji 160616

The OWASP Model - The IoT Top 10 Project• I1 Insecure Web Interface • I2 Insufficient Authentication/

Authorization • I3 Insecure Network Services • I4 Lack of Transport Encryption • I5 Privacy Concerns • I6 Insecure Cloud Interface • I7 Insecure Mobile Interface • I8 Insufficient Security Configurability • I9 Insecure Software/Firmware • I10 Poor Physical Security Ethics

https://www.owasp.org/index.php/OWASP_Internet_of_Things_Top_Ten_Project

Page 12: Kijiji 160616

Protect from the very very beginning

Page 13: Kijiji 160616

Good Readings

Page 14: Kijiji 160616

Carlos Chalico LI, CISA, CISSP, CISM, CGEIT, CRISC, PbDLA, ISO27001LA

Instructor University of Toronto

School of Continuing Studies +1(647)406-7785

[email protected] @CarlosChalicoT

#IoT