Department of Computer Science, King Abdulaziz University, Jeddah 21589, Saudi Arabia.
Department of Computer Science, Imam Mohammad Ibn Saud Islamic University, Riyadh 11432, Saudi Arabia.
Sensors (Basel). 2023 Jun 14;23(12):5578. doi: 10.3390/s23125578.
This study aims to address the challenges of managing the vast amount of data generated by Internet of Things (IoT) devices by categorizing stakeholders based on their roles in IoT security. As the number of connected devices increases, so do the associated security risks, highlighting the need for skilled stakeholders to mitigate these risks and prevent potential attacks. The study proposes a two-part approach, which involves clustering stakeholders according to their responsibilities and identifying relevant features. The main contribution of this research lies in enhancing decision-making processes within IoT security management. The proposed stakeholder categorization provides valuable insights into the diverse roles and responsibilities of stakeholders in IoT ecosystems, enabling a better understanding of their interrelationships. This categorization facilitates more effective decision making by considering the specific context and responsibilities of each stakeholder group. Additionally, the study introduces the concept of weighted decision making, incorporating factors such as role and importance. This approach enhances the decision-making process, enabling stakeholders to make more informed and context-aware decisions in the realm of IoT security management. The insights gained from this research have far-reaching implications. Not only will they benefit stakeholders involved in IoT security, but they will also assist policymakers and regulators in developing effective strategies to address the evolving challenges of IoT security.
本研究旨在解决物联网 (IoT) 设备产生的大量数据管理挑战,方法是根据利益相关者在物联网安全中的角色对其进行分类。随着连接设备数量的增加,相关的安全风险也随之增加,这凸显了需要有技能的利益相关者来减轻这些风险并防止潜在的攻击。该研究提出了一种两部分的方法,包括根据职责对利益相关者进行聚类,并确定相关特征。本研究的主要贡献在于增强物联网安全管理中的决策过程。所提出的利益相关者分类为物联网生态系统中利益相关者的各种角色和职责提供了有价值的见解,有助于更好地理解他们之间的相互关系。这种分类通过考虑每个利益相关者群体的特定背景和职责,促进了更有效的决策制定。此外,该研究引入了加权决策的概念,纳入了角色和重要性等因素。这种方法增强了决策过程,使利益相关者能够在物联网安全管理领域做出更明智、更具上下文意识的决策。这项研究的见解具有深远的意义。它们不仅将使参与物联网安全的利益相关者受益,还将帮助政策制定者和监管机构制定有效的策略来应对物联网安全不断发展的挑战。