a NIST blog It may be summertime, but the NIST Cybersecurity for the Internet of Things (IoT) Program isn’t hitting the hammock! Organizations are managing growing device complexity, evolving threats, and pressure to turn guidance into operational decisions…so we remain focused on helping stakeholders apply security guidance in ways that are practical and actionable. What’s Been Happening Lately? The IPD reflects current needs, with lessons learned from stakeholders who use these guidelines. Particularly, it’s focused on providing clearer guidance, more relevant content, and better alignment to today’s environment. Notably, we shift towards speaking about “products”—better capturing how these connected devices function and are deployed. NIST SP 800-213 remains focused on integrating “new” products. That is, new to the system—a product not previously part of the system. We do not necessarily mean “new” to indicate that it’s fresh out of the box (metaphorical or not!). Many thanks to all attendees for contributing to informing our next steps. Recap of Unify 2026! For those who attended Unify 2026, I was on a June 17th panel, “Security by Design Across Alliance Standards.” The focus was on “embed(ding) security principles across… standards,” with “how a harmonized security framework supports interoperability, reduces certification complexity, and builds trust.” These topics are closely tied to our mission (cultivate trust in the IoT and foster an environment that enables innovation on a global scale through standards, guidance, and related tools) and our Program Principles. This was yet another opportunity to hear about our upcoming work, ask questions and provide feedback in person, and help align next steps with our program’s intent! Our Vision for the Future Our North Star remains fostering cybersecurity in the IoT ecosystem, across industry sectors and at scale. To this end, we’re planning to develop a framework to help risk managers and CISOs manage
Advancing Product Security: New <b>IoT</b> Guidance and New Engagement | NIST
Read the original article
nist.gov →