Ensure safe and secure Consumer Internet of Things (CIoT) device
Ensure safe and secure Consumer Internet of Things (CIoT) device
The Internet of Things (IoT) has gained importance in recent years. It is an umbrella term describing technologies that enable objects and machines to be networked and to communicate with each other, often involving wireless-enabled devices connected over Wi-Fi, Bluetooth or Zigbee.
When assessing an IoT system, it is important to look at the entire system – from the device or smartphone application (app) to the back-end or cloud solution. In addition, more and more IoT devices are being installed in private households as part of a smart home.
The security of IoT products is paramount for consumers and users. Nobody wants to have their personal data hacked because of insufficient encryption between their smartphone and IoT device. This is where TÜV SÜD's cybersecurity tests come in. Our solutions are designed to reveal problem areas and potential security gaps and provide effective remedies. In addition, our tests pre-empt problems that may cause serious damage to a company's reputation.
In principle, the VdTÜV CloT certification program is applicable to all consumer IoT devices.
To improve the security of networked devices, the European Telecommunication Standards Institute (ETSI) has created a basic 303 645 IoT standard within Europe. In the US, cybersecurity requirements for IoT devices are established by the NISTIR 8259 standard.
Penetration tests aim to uncover any potential weak points in an IoT device or system and assess its vulnerability to hackers. It works by enlisting an "ethical hacker" to infiltrate the system and look for weak points – without, of course, causing any damage to either the manufacturer or cloud operator. The testing process follows guidelines such as the OWASP IoT Top 10. Furthermore, there are three different types of checks:
Site Selector
Global
Americas
Asia
Europe
Middle East and Africa