fissea 2015 conference, march 24-25 - evaluating …fissea 2015 conference, march 24-25 - evaluating...
TRANSCRIPT
![Page 1: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/1.jpg)
Evaluating the Security
Implications of Innovation:
Risk and Risk Reduction in the
Internet of Everything
UMUC Faculty Presentation to FISSEA 2015
Valorie King, Richard White, Sam Chun
![Page 2: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/2.jpg)
Is this the Internet of Everything?
![Page 3: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/3.jpg)
Or, is this how you see the IoE?
![Page 4: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/4.jpg)
INNOVATIONS
![Page 5: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/5.jpg)
Quantized Self
• Body Sensors (Tattoos, Electro Myographics)– Gestures
– Authentication
– Threat Detection (CBRNE)
• Wearable Computers – Communications & Productivity
– Health & Fitness
– Augmented Reality (input / feedback)
• Implants & Medical Devices – Body Area Networks
– Medication Delivery
– Monitor / Augment internal systems
– Prosthetics
![Page 6: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/6.jpg)
Infrastructures & Technologies
• Smart Homes
• Smart Communities
• Autonomous Vehicles
• Intelligent Transportation Infrastructures
• Utilities Infrastructures & Advanced
Metering
• Banking Sector & Digital Currencies
![Page 7: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/7.jpg)
Enabling Technologies
• Graphene
• Neuromorphic Chips
• Brain-Computer Interfaces
• Physical Unclonable Functions (PUFs)
• Dielectric thin films
• Magneto-electric magnetic sensors
• Nano imprinting
• Nano machines
![Page 8: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/8.jpg)
TECHNOLOGY REVIEWS
![Page 9: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/9.jpg)
Technology Transfer
• Technology Identification & Maturation
– Identifying promising technologies in R&D phases
– helping technologies emerge from the R&D environment
• Technology Transfer Processes (Universities)
• Technology Transfer Initiatives (DHS, DOE)
• Influence of funding availability & sources, i.e. venture capital, government grants, etc.
![Page 10: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/10.jpg)
Technology Development Life Cycle
Image Source: http://www.atp.nist.gov/eao/gcr02-841/chapt2.htm
![Page 11: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/11.jpg)
Technology Identification &
Evaluation Process
![Page 12: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/12.jpg)
RISK IDENTIFICATION
![Page 13: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/13.jpg)
Cybersecurity & Emerging Tech
• Incorporating emerging technologies into products and services
– What security features are needed?
– Can we predict how these features will fail?
– Can we identify potential or expected cybersecurity:• Gaps
• Risks
• Vulnerabilities
![Page 14: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/14.jpg)
Evaluation Methodologies
• Analysis of Alternatives
• Case Studies
• Delphi Technique (Expert Panels)
• Experiments
• Gap Analyses
• Meta-Analyses (Published Research)
• Pilot Studies & Implementations
• Product Assurance
• Risk Assessments
![Page 15: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/15.jpg)
Analysis of Alternatives
![Page 16: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/16.jpg)
Experiment-Based Evaluations
![Page 17: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/17.jpg)
RISK REDUCTION
![Page 18: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/18.jpg)
Two Key Questions
• How can this technology or emerging application of technology be used to improve or support the security of devices and services which comprise the Internet of Everything?
• How can this technology be used by attackers, criminals, terrorists, etc. to achieve their goals and objectives within the context of the Internet of Everything?
![Page 19: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/19.jpg)
SUMMARY & CONCLUSIONS
![Page 20: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/20.jpg)
Cybersecurity for the IoE:
Built-in or Bolted-on?
Image Source: http://www.atp.nist.gov/eao/gcr02-841/chapt2.htm
![Page 21: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/21.jpg)
Questions?
![Page 22: FISSEA 2015 Conference, March 24-25 - Evaluating …FISSEA 2015 Conference, March 24-25 - Evaluating the Security Implications of Innovation, Risk, and Risk Reduction in the Internet](https://reader033.vdocuments.net/reader033/viewer/2022043009/5f9dac51a59a746641665e10/html5/thumbnails/22.jpg)
Contact Information
• Valorie King (Course Chair):
• Richard White (Course Chair):
• Samuel Chun (Faculty Member):