Главная
Study mode:
on
1
Intro
2
A little About Me
3
Learning Objectives
4
Security Intricacies Don't Make Sense To Users - Type 1
5
Security is Not Interesting to the Regular User
6
Barriers to Necessary Workflow
7
Differing Views of Security
8
Put on your "User" Hat
9
P2: Secure Defaults Only ctd.
10
Display Targeted Risk Information for Security Config
11
Assist your User with Pre-configured Security Levels
12
Design to Scale (Zero-Touch Device Provisioning Example)
13
Do Not Allow Passive or Transitive Authorization
14
Implement Runtime Anomaly Detection & Device Health Checks
15
Ensure lot Admins Can Seamlessly Revoke Previously Granted Authority Ctd.
16
Just Keep Secrets Secret
17
Monitor Circumvention of Security Controls
18
In closing, Aim for Clarity & Simplicity
19
My Social Networking
Description:
Explore the intricacies of designing user-friendly IoT security in this 42-minute conference talk by Damilare D. Fagbemi. Delve into the challenges of making security comprehensible and appealing to regular users, and learn strategies to overcome barriers in necessary workflows. Discover how to implement secure defaults, display targeted risk information, and assist users with pre-configured security levels. Examine the importance of scalable design, including zero-touch device provisioning, and understand the need for runtime anomaly detection and device health checks. Learn about revoking previously granted authority, keeping secrets secure, and monitoring circumvention of security controls. Gain insights on achieving clarity and simplicity in IoT security design, ensuring a balance between robust protection and user-friendly interfaces.

The Security We Need - Designing Usable IoT Security

OWASP Foundation
Add to list