A new Internet of Things (IoT) security and privacy policy statement has emerged, this time a potentially wide-reaching set of principles springing from the Association for Computing Machinery U.S. Public Policy Council (USACM) and its counterpart, the ACM Europe Council Policy Committee (EUACM).Beyond the statement’s specifics (we’ll get to that in a moment), the underlying thinking is interesting: Policies and technologies to tackle the IoT's privacy and security challenges must complement but not impede its advancement.In other words, let’s not stall the car while we make sure the roads are safe--the two must support one another. That may sound simple enough but actually it’s not. The number and variety of IoT stakeholders is significant--including government officials, academia, industry, nonprofits, technical experts, and consumer advocates—and you know what’s said about too many cooks in the kitchen.The bottom line, said the agencies, is that the stakeholders must work with one another and coordinate their efforts across borders. The agencies also suggested that cementing in consumers’ minds that the IoT is safe and their privacy will be protected must be factored in when framing policies.
IoT Security and Privacy Policies: The Highlights
You can read the two-page document here. Otherwise, the high notes are these:- Support privacy and security throughout the IoT device lifecycle, including continuous, reliable device operation and regular patches, upgrades and software updates.
- Develop new technologies to support IoT privacy and security, such as flexible access control and advances in cryptography and encryption.
- Protect consumer data by addressing data ownership, building consumer awareness about privacy and data sources and protecting data integrity.
- Foster cooperation among stakeholders through promoting an interdisciplinary approach to trust and encouraging coordinated efforts among stakeholders.




