Top Banner
© Copyright 2015 Hildebrand Technology Limited Security and Privacy Overcoming concerns to unlock potential Nimbus Ninety IGNITE Seminar November 2015 Joshua Cooper Hildebrand Technology Limited [email protected] @HildebrandTech #IoT
34

IoT: Security & Privacy at IGNITE 2015

Feb 08, 2017

Download

Data & Analytics

HildebrandTech
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Security and PrivacyOvercoming concerns to unlock potential

Nimbus Ninety IGNITE Seminar November 2015

Joshua Cooper Hildebrand Technology Limited [email protected] @HildebrandTech #IoT

Page 2: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Let’s talk Privacy then Security

Page 3: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

IoT is not quite the Internet

not quite Things

Sweeping Statement No. 1

Page 4: IoT: Security & Privacy at IGNITE 2015

Light Quality

Air Temp

Occupancy

Appliance Function

Page 5: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

sense actuate

intelligence

IoT Promise

Page 6: IoT: Security & Privacy at IGNITE 2015
Page 7: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

not a commodity and

refined petrol is value

“IoT Big Data Oil”

Page 8: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Page 9: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Streamed power reads Bill estimation and forecast

Prepaid (and remaining) balance Consumption graphs (day/wk/mth/yr)

Comparisons CO2

Appliance monitoring and control Weather

Messages Feedback Form [Competitions]

Smart Meter Application

Page 10: IoT: Security & Privacy at IGNITE 2015

Page 1H

owz

© Intelesant Ltd 2014 Private and confidential

The Solution

Page 11: IoT: Security & Privacy at IGNITE 2015

How

z

© Intelesant Ltd 2014 Private and confidential

Family

GP

Social services

Collect Process Notify

Sensors and hub

Web, mobile and API

Knowledge base

Statistics Events Patterns Exceptions Alerts

Electricity

Heat

Door

Visits and deliveries

Checklist

Care network

Occupational

Physiotherapy

Geriatrics

Elderly person

Web, mobile and API

Howz platform combines machine, human observation and expert knowledge

The Platform

Shopping Basket

Page 12: IoT: Security & Privacy at IGNITE 2015

© Copyright 2014 Hildebrand Technology Limited

Where do people go? What do they do?

How long do they stay?

Cameras and door counters lack actionable information

3 6

Page 13: IoT: Security & Privacy at IGNITE 2015

© Copyright 2014 Hildebrand Technology Limited

We use “big data” and “machine learning” to understand movement,

predict use and discover opportunities

Our People in Places (PIPTM) technology operates in real-time using advanced spatio-temporal statistical analysis

I work here I eat

here

I like books

My local

cinema

I meet friends

I am in and out

Page 14: IoT: Security & Privacy at IGNITE 2015
Page 15: IoT: Security & Privacy at IGNITE 2015
Page 16: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

people, places goods and resources

(not really about the devices)

“Things”

Page 17: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Google cars Artificial intelligence

(cyber physical systems) = liability

“What about …”

Page 18: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

GDPR General Data Protection Regulation

(harmonised EU Data Protection)

Sweeping Change

Page 19: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Lack of control and information asymmetry

Privacy Challenge 1

Page 20: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Quality of user’s consent

Privacy Challenge 2

Page 21: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Inference and repurposing of original data

Privacy Challenge 3

Page 22: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Intrusive identification of behaviour patterns and

profiling

Privacy Challenge 4

Page 23: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Limitation on possibility of remaining anonymous

Privacy Challenge 5

Page 24: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Security is the unplanned risk

Privacy Challenge 6

Page 25: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Fines 2%-5% of global

turnover*

“Why do I care …”

Page 26: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Goal posts are moving 2017 - 2019

“When do I care …”

Page 27: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

ISO27001 Integration of Security and

Privacy

Strategies for Success

Page 28: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Data Protection Officer

Strategy 1

Page 29: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Privacy Impact Assessment

Strategy 2

Page 30: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Privacy by Design

Strategy 3

Page 31: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Put the Data Subject first

Strategy 4

Page 32: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Include Privacy and Security in New Product

Development

Strategy 5

Page 33: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Actuators are the most interesting, but present

different challenges

Sweeping Statement No. 4

Page 34: IoT: Security & Privacy at IGNITE 2015

© Copyright 2015 Hildebrand Technology Limited

Joshua Cooper Hildebrand Technology Limited [email protected]

@HildebrandTech #IoT