Steps to Implementing Security by Design for IoT

 

IoT security by design might seem like a buzzword in that it’s not well-defined in the consumer landscape, but KORE Wireless’s Chris Francosky said the most effective security measures are put in place well before production even begins.

Host Shelby Skrhak sat down with Francosky on this episode of the Industrial IoT podcast, brought to you by MarketScale.

“I’m evangelizing this idea of a five-step process centered around threat modeling, which is at the heart of security by design,” Francosky said.

5 Step Process for Threat Modeling

  1. Define your assets – not only devices, but the data, as well.
  2. Decompose that application through an architecture diagram so you can see clearly how the application is broken up.
  3. Look at each area of the decomposed application and identify threats.
  4. Document threats.
  5. Rate and prioritize threats

How do you recognize threats? In the late 1990s, Microsoft devised an acronym that summarizes the kinds of threats to look for, and it’s still useful today, Francosky said.

The acronym STRIDE stands for Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service and Escalation of Privilege. These aspects serve as guideposts to help you identify the types of threats you’re looking for.

KORE Wireless offers tool suites to help make IoT security a part of a consistent process.

For the latest news, videos, and podcasts in the IoT Industry, be sure to subscribe to our industry publication.

Follow us on social media for the latest updates in B2B!
Twitter – @MarketScale
Facebook – facebook.com/marketscale
LinkedIn – linkedin.com/company/marketscale

Follow us on social media for the latest updates in B2B!

Image

Latest

medicine
The Art of Recovery: Where Music and Medicine Meet in Patient Care
May 14, 2026

Healthcare today can feel overwhelming—not just for patients, but for the teams caring for them. After a major illness or injury, recovery isn’t handled by one doctor alone; it often involves a whole network of specialists, from physical therapists to nurses to social workers, all trying to help someone regain their independence and quality…

Read More
infant health
From Monitoring to Knowing: How Owlet Is Redefining Infant Health at Retail
May 14, 2026

Baby monitors have long promised parents the ability to see and hear their child from another room. But as connected health devices become more normalized in everyday life, from smartwatches to sleep trackers, parents are beginning to expect more than visibility. They want insight. For Owlet, that shift matters because its wearable monitors track…

Read More
SPD
Unlocking CensisAI²: The Metrics That Matter for Smarter SPD Decisions
May 13, 2026

Sterile processing departments are swimming in data, from workflow automation and supply data to patient outcome and quality metrics. But the real challenge is not collecting more information; it is knowing which metrics actually improve SPD performance, technician education, OR readiness and patient safety. For Censis, a leader in surgical asset management, the focus…

Read More
User-generated content
The New Rules of Discoverability: How User-Generated Content Is Reshaping Search, Trust, and Brand Visibility
May 12, 2026

User-generated content (UGC) is moving from marketing side dish to main course as large language models change how people discover brands, products, creators, and ideas. Customer reviews, forum posts, videos, and community conversations increasingly carry more influence than polished brand copy because they feel more specific, lived-in, and trustworthy. As AI systems learn from…

Read More