From: OpenDNS Blog
By Owen Lystrup
As a budding industry, the Internet of Things could create a number of direct security risks for enterprises, but compliance is also an issue that needs addressing. Companies that deploy IoT devices for their own use, or those that have employees bringing them into the office, will find a dearth in documented answers from manufacturers about data collection methods. And the controls needed to keep company and customer data safe can be sparse for some devices. As a compliance issue, the lack of control over the security of IoT devices and the data they collect can come with weighty consequences.
According to Jennifer Tharp, a security compliance analyst at OpenDNS, the world of compliance can be a labyrinthine of rules and guidelines, and regulations vary widely depending on the country. For companies looking to break out of a domestic market, it can be difficult to know all the regulations involved, and not knowing can have some pretty weighty consequences. Given that most Internet of Things devices do not disclose where they send collected data, let alone what data is collected in the first place, IoT is also bound to make compliance management even more difficult.
Leave a Reply