In order to successfully complete this assignment, you will need to select a viable IoT component, thoroughly explore the security risks associated with this device, describe how attackers can exploit vulnerabilities of the component
Instructions
In order to successfully complete this assignment, you will need to select a viable IoT component, thoroughly explore the security risks associated with this device, describe how attackers can exploit vulnerabilities of the component, and develop a mitigation plan. The following are the deliverables for this assignment:
- Choose an IoT Device: Provide a brief overview of IoT devices and the security threats that are associated with them. Select a specific IoT device for your analysis.
- Investigate Risks Associated with the Device: Thoroughly analyze the security risks associated with this device.
- Describe Attack Methods: Describe various attack methods that hackers may use to gain access to the device: including actions they might take, and the consequences of them hacking this device. Be sure to connect the risks you defined earlier: how could these vulnerabilities be exploited?
- Develop a Mitigation Plan: Based upon the risks and attack methods you analyzed earlier, create a mitigation plan to protect against these threats.
- Putting it All Together: Your paper should be between 1500 and 2500 words.
You may refer to the course material for supporting evidence, but you must also use 3-5 external sources. Please include a mix of both primary and secondary sources, with at least one source from a scholarly peer-reviewed journal. All sources should be cited using APA format.
Formatting
Please write your project in APA format and submit it as a Word/Google Doc/PDF file.
Grading
Your project will be graded based on the following rubric:
|
Criteria |
Excellent (5) |
Good (4) |
Needs Improvement (2-3) |
Unacceptable (1) |
Total Possible Points |
|
IoT Analysis and Selection of IoT Device (x2) |
Valid IoT device chosen, and paper includes in-depth
analysis of security threats to IoT devices |
Valid IoT device chosen; general analysis of IoT
devices and security provided. |
Some information provided; IoT device is chosen but
analysis is limited |
No IoT device chosen, or no analysis provided for the
IoT security landscape |
10 |
|
Risks Associated with the IoT Device (x5) |
In-depth analysis of the risks to the specified IoT
device: supporting research used to connect the current case study to support
assertions |
Explains the risks to the specified IoT device:
connects relevant research to the current case study to support assertions |
Basic assessment of the risks associated with the
device, and cursory connection to research or source material |
Does not address the issue, or an incomplete
discussion of the risks; does not connect risks to device |
25 |
|
Attack methods (x5) |
In-depth analysis of the attack methods that could be
used against the specified IoT device: connects relevant research to the
current case study to support assertions |
Explains the attack methods in general terms;
connects relevant research to the current case study to support assertions |
Basic assessment of the attack methods, and cursory
connection to research or source material |
Does not address the attack methods; does not connect
methods to device |
25 |
|
Mitigation Plan (x6) |
Strong and well-written plan that is expertly
organized and connects the device to the risks and attack methods. |
Plan is organized with steps that outline the risks
and attack methods. |
Basic plan missing examples, risks, or attack methods
that were outlined in previous steps. |
Clear and concise plan does not exist; no connection
to the risks or attack methods provided |
30 |
|
Clarity, Structure & Organization (x2) |
Main points are very clear and concise. Organization
is logical; transitions between points are smooth and enhance clarity and
delivery of main ideas. |
Addresses the main points in a cohesive structure.
Language is understandable, clear, and correct. |
Acknowledges the main points, but lacks a cohesive
structure. Contains some unclear language and typos. |
Disorganized and unclear structure. Language is
difficult to understand. Contains grammar, spelling, and punctuation errors. |
10 |