Ride the Lightning

Cybersecurity and Future of Law Practice Blog
by Sharon D. Nelson Esq., President of Sensei Enterprises, Inc.

NIST Issues Draft Report: Status of International Cybersecurity Standardizations for the Internet of Things

February 20, 2018

The Interagency International Cybersecurity Standardization Working Group (IICS WG) was established in December 2015 by the National Security Council's Cyber Interagency Policy Committee. The purpose of the IICS WG is to coordinate on major issues in international cybersecurity standardization and thereby enhance U.S. federal agency participation in international cybersecurity standardization.

On February 14th, NIST announced that the IICS WG had developed the Draft NIST Interagency Report (NISTIR) 8200, Interagency Report on Status of International Cybersecurity Standardization for the Internet of Things (IoT). The intended audience is both the government and the public. The purpose is to inform and enable policymakers, managers, and standards participants as they seek timely development of and use of cybersecurity standards in IoT components, systems, and services.

The draft report:

  • Provides a functional description for IoT (Section 4);
  • Describes several IoT applications that are representative examples of IoT (Section 5);
  • Summarizes the cybersecurity core areas and provides examples of relevant standards (Section 6);
  • Describes IoT cybersecurity objectives, risks, and threats (Section 7);
  • Provides an analysis of the standards landscape for IoT cybersecurity (Sections 8 and 9); and
  • Maps IoT relevant cybersecurity standards to cybersecurity core areas (Appendix D).

The draft report is based upon the information available to the participating agencies. Comments are now being solicited to augment that information, especially on the information about the state of cybersecurity standardization for IoT that is found in Sections 8, 9, 10, and Annex D.

The comment period closes April 18, 2018. Comments should be submitted to .

Hat tip to Dave Ries.

E-mail: Phone: 703-359-0700
Digital Forensics/Information Security/Information Technology