Specifying security requirements for IoT workloads
IoT devices have continued to increase in prevalence within our technological society. An IoT device is any device connected to a private or public network. These are generally operational technology to collect data that can be analyzed, such as a thermostat, machine sensor, or traffic camera. In many cases, these devices send data over insecure networks. Securing these devices requires an amount of due diligence and understanding of what and how data is being collected.
Evaluating and determining the security requirements for IoT workloads should be divided into the different components that make up an IoT infrastructure. These areas are as follows:
- Device
- Field gateway
- Cloud gateway
- Services
Each of these areas becomes a potential attack surface and should be reviewed and treated as a security boundary to be isolated with zero-trust principles. Microsoft Defender for IoT can be used to provide security...