Instructions
In order to successfully complete this assignment, you will need to select a viable IoT component, thoroughly explore the security risks associated with this device, describe how attackers can exploit vulnerabilities of the component, and develop a mitigation plan. The following are the deliverables for this assignment:
- Choose an IoT Device: Provide a brief overview of IoT devices and the security threats that are associated with them. Select a specific IoT device for your analysis.
- Investigate Risks Associated with the Device: Thoroughly analyze the security risks associated with this device.
- Describe Attack Methods: Describe various attack methods that hackers may use to gain access to the device: including actions they might take, and the consequences of them hacking this device. Be sure to connect the risks you defined earlier: how could these vulnerabilities be exploited?
- Develop a Mitigation Plan: Based upon the risks and attack methods you analyzed earlier, create a mitigation plan to protect against these threats.
- Putting it All Together: Your paper should be between 1500 and 2500 words.
You may refer to the course material for supporting evidence, but you must also use 3-5 external sources. Please include a mix of both primary and secondary sources, with at least one source from a scholarly peer-reviewed journal. All sources should be cited using APA format.
Formatting
Please write your project in APA format and submit it as a Word/Google Doc/PDF file.
Grading
Your project will be graded based on the following rubric:
|
Criteria |
Excellent (5) |
Good (4) |
Needs Improvement (2-3) |
Unacceptable (1) |
Total Possible Points |
|
IoT Analysis and Selection of IoT Device (x2) |
Valid IoT device chosen, and paper includes in-depth |
Valid IoT device chosen; general analysis of IoT |
Some information provided; IoT device is chosen but |
No IoT device chosen, or no analysis provided for the |
10 |
|
Risks Associated with the IoT Device (x5) |
In-depth analysis of the risks to the specified IoT |
Explains the risks to the specified IoT device: |
Basic assessment of the risks associated with the |
Does not address the issue, or an incomplete |
25 |
|
Attack methods (x5) |
In-depth analysis of the attack methods that could be |
Explains the attack methods in general terms; |
Basic assessment of the attack methods, and cursory |
Does not address the attack methods; does not connect |
25 |
|
Mitigation Plan (x6) |
Strong and well-written plan that is expertly |
Plan is organized with steps that outline the risks |
Basic plan missing examples, risks, or attack methods |
Clear and concise plan does not exist; no connection |
30 |
|
Clarity, Structure & Organization (x2) |
Main points are very clear and concise. Organization |
Addresses the main points in a cohesive structure. |
Acknowledges the main points, but lacks a cohesive |
Disorganized and unclear structure. Language is |
10 |
