Menu

IoT FEATURE NEWS

Ponemon Institute and Shared Assessments Find IoT Risks

By

Ponemon Institute, an independent research firm that focuses on privacy, data protection and information security policy, and Shared Assessments Program, the industry-standard body on third party risk assurance, released their findings from their annual survey, “The Internet of Things (IoT): A New Era of Third Party Risk.

The report was distributed to understand organizations’ level of awareness and preparedness for the upcoming enterprise IoT wave. Participants were asked to evaluate their perception of IoT risks, the state of current third party risk management programs and their companies’ current governance practices to defend against cyber attacks.

“More and more enterprises are turning to IoT to improve business outcomes and this growth is creating a breeding ground for cyber attacks,” said Dr. Larry Ponemon, chairman and founder, the Ponemon Institute. “What’s shocking about these findings is the complete disconnect between understanding the severity of what a third party security breach could mean for businesses, and the lack of preparedness and communication between departments.”

What did they find? The findings uncovered a high rate of concern among organizations about the security of IoT. The respondents felt a gap in understanding of how to mitigate and communicate the risks, especially as it relates to third parties.

The survey found that 76 percent say a DDoS attack involving an unsecured IoT device is likely to occur within the next two years. 94 percent of those surveyed noted that a security incident related to unsecured IoT devices or applications could be catastrophic. Also 69 percent of respondents do not keep their CEO and board informed about the effectiveness of the third party risk management program. 44 percent say their organization has the ability to protect their network or enterprise systems from risky IoT devices. 77 percent of respondents are not considering IoT-related risks in their third party due diligence. 67 percent of those surveyed are not evaluating IoT security and privacy practices before engaging in a business relationship.

“Ready or not, IoT third party risk is here. Given the proliferation of connected devices, today’s cyber climate is evolving and organizations have to shift their focus to the security of external parties, now more than ever,” said Charlie Miller, senior vice president, Shared Assessments Program. “In order to avoid becoming the next big headline, our security tactics have to evolve along with the threats. New technology and practices are needed to ensure security, and this starts by communicating the risks to the right people and acknowledging potential devastating outcomes when engaging with a third party. Avoiding these problems can no longer be the solution.”     

The partnership of the Ponemon Institute and Shared Assessments Program is making sure that organizations are as prepared as possible to defend themselves against security threats that are associated with using the IoT.




Edited by Ken Briodagh
Get stories like this delivered straight to your inbox. [Free eNews Subscription]
SHARE THIS ARTICLE
Related Articles

Assessing IoT Innovator LTIMindtree: Its 2023-24 Successes to Date and a Peek at What's Next

By: Alex Passett    4/24/2024

IoT Evolution World has presented a brief rundown of LTIMindtree's successes during FY24, as well as a peek at what's to come for the Internet of Thin…

Read More

Powering Adaptability in IoT: Telit Cinterion Reveals its First High-Precision GNSS Module

By: Alex Passett    4/22/2024

Telit Cinterion announced the launch of its SE868K5-RTK module, a high-precision Global Navigation Satellite System (GNSS) receiver capable of centime…

Read More

ICYMI: Your 'IoT TGIF' News Review

By: Alex Passett    4/19/2024

We've compiled several Internet of Things (IoT) stories that will benefit readers interested in global IoT market growth, Industrial Internet of Thing…

Read More

Tracking the Growth of IoT: Global Industry Revenue, Uses Cases, and Security for What's Next

By: Alex Passett    4/18/2024

Citing data from the likes of Stocklytics, Statista and Earthweb, further study of the rapidly evolving Internet of Things is always recommended.

Read More

ICYMI: Your Weekly IoT News Review

By: Alex Passett    4/12/2024

We've compiled a handful of important Internet of Things (IoT) news stories that will benefit readers interested in consumer-facing developments, indu…

Read More