Strong Security Will Underpin IoT Success


The Internet of Things is ushering in a Jetson-like future in which almost every device is capable of connecting to the Internet and is redefining the way humans interact with their immediate environments. At the same time, the transition from closed networks to enterprise IT networks to the public Internet is accelerating at an alarming pace—and justly raising alarms about security.

As people become increasingly reliant on intelligent, interconnected devices, how can IoT providers and technology and IT services firms protect potentially billions of these devices from intrusions and interference that could compromise personal privacy or threaten public safety?

Security is paramount for safe and reliable operations of IoT connected devices. Network firewalls and protocols can manage the high-level traffic resulting from the explosion of data, but what is the best way to protect deeply embedded endpoint devices, such as home security systems, thermostats, and refrigerators? By 2020, Gartner predicts, the IoT will be made up of 26 billion “things.” Fortunately, because IoT is in its infancy, there’s still time to secure devices before consumers are at risk. There’s not much in terms of security that can be added to a device as an afterthought. These heterogeneous devices come in sizes large and small, and when unmanaged, can easily (and unintentionally) spill their informational guts and provide unauthorized network access.

Because of the variety of devices and varying complexities of each one, there is no ‘one-size-fits-all’ approach. Manufacturers, working with IT services firms, need to ensure that each device is secure unto itself; it is no longer sufficient to deploy the device in a secure network. Security must be addressed throughout a device’s lifecycle, from initial design to operational environment. The initial steps in the process include secure booting to verify the authentication and integrity of a device, followed by secure communication. Most IoT devices don’t have the computing power to support full disk encryption, but sensitive data needs to be protected.

When the device is plugged into a network, it should authenticate itself; machine authentication should be required for all devices connected to the network. Devices also need embedded firewalls to control potentially harmful or malicious traffic that needs to be terminated. Devices in production must meet basic security standards, such as Data at Rest (DAR) protection, which is the encryption of sensitive data.

Efforts are constantly being made to create secure IoT ecosystems. This includes an end-to-end security management and analytics platform which serves several purposes, including to authenticate communication, protect applications, secure devices, and manage and update devices remotely, even in resource-limited environments.

Device makers, applications developers, and IT services firms must be vigilant in carving out secure systems within an internet that is public and vulnerable to an on-going number of intrusions. Security measures are constantly evolving to ward off threats, which will be vital to underpinning the short and long-term success of IoT efforts.

About the Author: Robert Hallahan is vice president, solutions architecture for Xavient Information Systems ( He has more than 25 years’ experience consulting and designing advanced OSS/BSS solutions for Tier-1 US 3/4G Wireless, Cable MSO, and Direct Broadcast Satellite networks. Robert has worked with telecom firms to orchestrate the deployment of next generation service offerings. He can be reached at

Edited by Ken Briodagh

Related Articles

Microsoft Introduces IoT Signals

By: Chrissie Cluney    8/21/2019

Microsoft Corporation recently introduced its IoT Signals report. This is a new research report, which is designed to provide a global overview of the…

Read More

New Study Identifies the Power of Merging AI and IoT

By: Ken Briodagh    8/19/2019

Data Analytics firm Research and Markets has released a new study, which evaluates technologies involved in digital transformation including AI and Io…

Read More

Balancing Risk Management and Innovation within Your Organization

By: Special Guest    8/14/2019

Too often risk management takes a backseat to innovation. You cannot have one without the other. Become too risk-averse and you stagnate. Ignore risk …

Read More

Taoglas Acquires Firmwave to Enable Next-Generation IoT

By: Ken Briodagh    8/12/2019

Acquisition enables Taoglas to extend advanced IoT design and component solutions to its global customers

Read More

IMS Evolve and Current, Powered by GE, Partner on Smart Food Retail

By: Ken Briodagh    8/9/2019

Partnership enabling retailers to leverage legacy infrastructure to achieve multi-million dollar energy savings, reduce machine failure and slash stoc…

Read More