Introduction
Certified IoT Security Practitioner overview
()
1. Managing Internet of Things (IoT) Risks
Map the IoT attack surface
()
Build in security by design
()
2. Securing Cloud and Web Interfaces
Identify threats to IoT web and cloud interfaces
()
Prevent injection flaws
()
Prevent session management flaws
()
Prevent cross-site scripting flaws
()
Prevent cross-site request forgery flaws
()
Prevent unvalidated redirects and forwards
()
3. Securing Data
Use cryptography appropriately
()
Protect data in motion
()
Protect data at rest
()
Protect data in use
()
4. Controlling Access to IoT Resources
Identify the need to protect IoT resources
()
Implement secure authentication
()
Implement secure authorization
()
Implement security monitoring on IoT systems
()
5. Securing IoT Networks
Ensure the security of IP networks
()
Ensure the security of wireless networks
()
Ensure the security of mobile networks
()
Ensure the security of IoT edge networks
()
6. Ensuring Privacy
Improve data collection to reduce privacy concerns
()
Protect sensitive data
()
Dispose of sensitive data
()
7. Managing Software and Firmware Risks
Manage general software risks
()
Manage software installation and configuration risks
()
Manage software patch and update risks
()
Manage IoT device operating systems and firmware risks
()
8. Promoting Physical Security
Protect local memory and storage
()
Prevent physical port access
()
Conclusion
Course summary
()