IoT Trust Framework leading to self regulation code of conduct and certification models Craig Spiezle Executive Director & President Online.

Slides:



Advertisements
Similar presentations
29e CONFÉRENCE INTERNATIONALE DES COMMISSAIRES À LA PROTECTION DES DONNÉES ET DE LA VIE PRIVÉE 29 th INTERNATIONAL DATA PROTECTION AND PRIVACY COMMISSIONERS.
Advertisements

GridWise ® Architecture Council Becky Harrison GridWise Alliance Future of the Grid Evolving to Meet America’s Needs.
Introduction to Research Data Management Services, January 2013 Research Data Management Infrastructure The Current Context.
Revalidation and Code review update November 2014.
The New World of Security for Business Travellers Anurag Lal Senior Vice President Strategic Services & Business Development Wi-Fi Business Development.
Handle with care : Digital marketing and online behavioural advertising Global guidance to help improve consumer trust in practice, techniques and messages.
Connecting Health and Care for the Nation: A Shared Nationwide Interoperability Roadmap – DRAFT Version 1.0 Joint FACA Meeting Chartese February 10, 2015.
ALLIANCE FOR TELECOMMUNICATIONS INDUSTRY SOLUTIONS (ATIS) UPDATE Susan Miller, President & CEO, ATIS GSC-18 Meeting, July 2014, Sophia Antipolis,
CTA Brussels, 30th November 2011 G20 AGRICULTURE Food price volatility.
HIPAA Training +: Beyond Compliance to Culture Change Lois C. Ambash, PhD John Mack, M.A., M. Phil. The Internet Healthcare Coalition e-Health Quality.
Resiliency Rules: 7 Steps for Critical Infrastructure Protection.
Chapter © 2012 Pearson Education, Inc. Publishing as Prentice Hall.
Identifying the Baseline IDESG Security Committee Discussion 10/23/
WHEN TITLE IS NOT A QUESTION N O ‘WE CAN’ WHEN TITLE IS NOT A QUESTION N O ‘WE CAN’ WHEN TITLE IS NOT A QUESTION N O ‘WE CAN’ Identity and Privacy: the.
Kim Andreasson Managing Director DAKA advisory AB Bahrain International eGovernment Forum Kingdom of Bahrain 8-10 April 2013 Measuring E-Government.
Federal Trade Commission required to issue and enforce regulations concerning children’s online privacy. Initial COPPA Rule effective April 21, 2000;
EHealth/mHealth Gisele Roesems Deputy Head of Unit Health and Well-Being DG CONNECT EUROPEAN COMMISSION 2 nd International Conference on Health Informatics.
Our Vision – Healthy Kansans living in safe and sustainable environments. Climate Change Policy Update October 9, 2015 Thomas Gross Bureau of Air and Radiation.
Australia Cybercrime Capacity Building Conference April 2010 Brunei Darussalam Ms Marcella Hawkes Director, Cyber Security Policy Australian Government.
INDUSTRY COMMITMENT TO INNOVATION IN NOTICE AND CHOICE AAAA, ANA, CBBB, DMA, IAB Convene Task-Force (April 2008) Coalition begins drafting industry principles.
World summit on the information society Comments on the Visions & Principles of “ Information Society ” Takuo Imagawa, Osaka.
Sustainable Product Innovation Project UNEP’s Policy Component On behalf of UNEP Tran Van Nhan Asc. Prof., Ph.D Director Vietnam Cleaner Production Centre.
Data Governance: Addressing the Big Data Challenge IT.CAN 2015 Information Technology Law Spring Forum May 4, 2015 Adam Kardash Partner, Privacy & Data.
12 Developing a Web Site Section 12.1 Discuss the functions of a Web site Compare and contrast style sheets Apply cascading style sheets (CSS) to a Web.
The Impact of Privacy on HP’s Customer Relationship Management Solution Mike Overly Vice President, Marketing © 2003 Hewlett-Packard Development Company,
Corporate Social Responsibility LECTURE 25: Corporate Social Responsibility MGT
Catawba County Board of Commissioners Retreat June 11, 2007 It is a great time to be an innovator 2007 Technology Strategic Plan *
Jose Jimenez Telefónica I+D Future Network & Mobile Summit 2011 The vision of Future Internet in the FI PPP Core Platform project.
Making Money with Windows Phone Applications and Games Todd Biggs, Director of Product Management John Bruno, Lead Program Manager.
Asia Pacific Regional Council OCLC Record Use Policy Some Recent Developments OCLC Asia Pacific Regional Council Meeting National Library of Australia.
Introduction to our reality
CABA’s CONNECTED CONSUMER ROADMAP
Creating an Interoperable Learning Health System for a Healthy Nation Jon White, M.D. Acting Deputy National Coordinator Office of the National Coordinator.
Chapter © 2012 Pearson Education, Inc. Publishing as Prentice Hall.
Friday Institute Leadership Team Glenn Kleiman, Executive Director Jeni Corn, Director of Evaluation Programs Phil Emer, Director of Technology Planning.
5 th ITU Green Standards Week Nassau, The Bahamas December 2015 Taming The IoT Security & Privacy Beast Craig Spiezle, Executive Director, Online.
Network Centric Operations Industry Consortium The Intersection of Cloud Computing and Cyber Security Melvin Greer, NCOIC Vice Chair, Cloud Computing Working.
The Value of Creating the Identity Ecosystem. The Identity Ecosystem Steering Group (IDESG) is the source of expertise, guidance, best practices and tools.
Towards an IoT Good Practice Workshop organized by the DC IoT on 12 November 2015, 09:00 – 10:30, Joao Pessoa.
Cybersecurity Strategy in Japan May 2016 Yasu TANIWAKI Deputy Director-General National center of Incident readiness and Strategy for Cybersecurity (NISC)
Progress Report on the U.S. NSTIC Efforts Jack Suess – Delegate for Research, Development, Education & Innovation
Updates on AASCU & APLU Data Projects Christine M. Keller, PhD Executive Director, Voluntary System of Accountability APLU Associate Vice President, Academic.
IoT R&I on IoT integration and platforms INTERNET OF THINGS
© Cloud Security Alliance, 2016 Brian Russell, Leidos Co-Chair, IoT WG 2 March 2016.
SAFE-BioPharma Association Blocking the Big Breach SCOPE Summit 2016 Mollie Shields Uehling SAFE-BioPharma Association.
I&S Meeting 26 September 2011 Draft PIA Tool. © 2011 GS1 Agenda Introduction PIA Requirements Background RFID PIA Tool demonstration Next steps for PIA.
A policy framework for an open and trusted Internet
Open Platform 3.0™ Overview – 3rd August 2016 Dr Christopher J Harding
#ConnectedHomeHuman&Habitat
PRI – Service Provider Reporting 2017
فایل ارائه حاضر توسط مرکز تحقیقات فناوری «اینترنتی از اشیاء »
Internet-of-somewhat-dubious-Things
OTA & IoT A Shared & Collaborative Responsibility 24 October 2017
Office of Nuclear Materials Safety and Safeguards
HOSTED BY IN PARTNERSHIP WITH SUPPORTED BY Barcelona iCapital 2015.
Insightful Analysis Practical Advice
Data protection certification and cloud computing
2018 Autonomous Vehicle Summit
NRENs and IoT Security: Challenges and Opportunities
Securing the Internet of Things: Key Insights and Best Practices Across the Industry Theresa Bui Revon IoT Cloud Strategy.
Sameer Sharma, ITU 7 August, 2018 Dhaka, Bangladesh.
IoT Security and Privacy
Executive Order No. 23 Update Air & Waste Management Association Conference November 16, 2018 Presentation will focus on the latest policy development.
Reflections on PIPEDA and the Future of Privacy Law in Canada
The Impact of Digitization on Global Alignment of Product Safety Regulations ICPHSO International Symposium November 12, 2018.
Protection of Privacy Online CAIGF2017-Dushanbe, Tajikistan
Trust by Design: The Internet of Things
What you need to know about
eHealth/mHealth Gisele Roesems
© 2016 Global Market Insights, Inc. USA. All Rights Reserved Global Electronic Design Automation Market to hit $14 Bn by 2024: Global.
Presentation transcript:

IoT Trust Framework leading to self regulation code of conduct and certification models Craig Spiezle Executive Director & President Online Trust Alliance

Who is OTA? Mission to enhance online trust and empowering users, while promoting innovation and the vitality of the internet.  Goal to help educate businesses, policy makers and stakeholders while developing and advancing best practices and tools to enhance the protection of users' security, privacy and identity.  Collaborative public-private partnerships, benchmark reporting, meaningful self-regulation and data stewardship.  U.S. based 501(c)(3) tax-exempt charitable organization Global focus & charter Supported by dues and donations

Focused on Collaboration

Service/Data Providers The IoT Ecosystem IoT Provider Website Highly personal, dynamic, persistent collection and transfer of data. Reliance on a combination of devices, apps, platforms and cloud services. Multiple data flows, touch points and disclosures. Sustainability / lifecycle issues. Lack of defined standards. Non-traditional market players. IoT Data Processing Service/Data Providers Mobile app Connected Home Fitness Wearables Entertainment Devices

Multi-Dimension Issues User Device Cloud Service Mobile App Connected Device Mobile Platform Service Provider(s) ? Device & Data Security Privacy Sustainability Lifecycle considerations Supportability Data retention / ownership Data in use, transit & rest

Working Group Goals Sustainability Phase 1; focus on connected home & wearable technologies Provide guidance to help reduce vulnerabilities and adopt responsible privacy and data practices. Drive the adoption of best practices; embracing as a voluntary, yet enforceable code of conduct. Provide recognition to companies, products and retailers who embrace the code of conduct. Provide retailers / commerce sites criteria to aid in their product merchandising decisions. Think globally; where possible, apply international standards and practices. Encourage collaboration, sharing of best practices and threat intelligence. Evaluate gating issues and considerations which may lead to the development of a seal or certification program. Sustainability Privacy Security

Framework Excerpts - Sustainability Disclose what functions will work if “smart” functions are disabled or stopped Provide a mechanism for transfer of ownership including providing updates for consumer notices and access to documentation/support Publish a timeframe for support after a device/app is discontinued or replaced by a newer version

Where We Are January – Working Group Formed June – Working draft of principles & goals ratified Aug – Public draft released with call for comments Sept – Over 100 comments received October 19 – 2nd public draft released (today) November 18 Last call Face-to-Face IoT Trust Summit in Washington DC.

Framework – Total of 38 Criteria

User Access & Credentials

Privacy, Transparency & Disclosures

What’s Next? November 18 - IoT Trust Summit, Washington DC. https://otalliance.org/news-events/upcoming-events Consolidate feedback, release initial framework. Validate global considerations. Pursue a voluntary code of conduct (some companies already using it as vendor “checklist”), evolving to an enforceable code of conduct. Develop criteria as basis for a certification program. Expand collaboration with other organizations.

More Information Submit Comments – We will review all! https://otalliance.org/iot-trust-framework-submission Join the working group https://otalliance.org/system/files/files/member/documents/ota _iot_membership_application-2015v2.pdf Working group meeting in Washington, D.C. – November 18 https://otalliance.org/news-events/upcoming-events Contact us for more info: https://otalliance/org/Iot +1-425-455-7400