Welcome!

@ThingsExpo Authors: Elizabeth White, Yeshim Deniz, Zakia Bouachraoui, Liz McMillan, William Schmarzo

Related Topics: @ThingsExpo, Mobile IoT, @CloudExpo

@ThingsExpo: Blog Post

Breaking Up Is Hard to Do: Defriending Your Smart Device | @ThingsExpo [#IoT]

Now is the time to make de-provisioning of smart objects part of the IoT discussion

The Internet of Things is already changing the way we track fitness, manage our homes, and drive our cars. But while there is considerable discussion around how we securely provision our devices and who will have access to the data they capture, an important topic no one seems to be talking much about is the de-provisioning of smart objects. What happens when I ditch my Fitbit, trade in my connected car, or sell my house with its Nest thermostat, smart fridge and next-generation home security system? How do I manage to remove these smart devices from my life and make sure that no one has access to the data they have captured?

As the universe of connected things grows exponentially, so will the number of smart objects in our daily lives. Yes, one or two connected things may be easy to manage. But if we are expected to reach a point where nearly all the objects in our lives are capturing information about us - from cars and appliances to watches and clothing - we will need a simple way to manage all our connected things and to safely say goodbye to objects that have outlived their usefulness.

Ideally, managing smart devices should be as simple as managing friends on Facebook, where a single click controls what they see of our personal lives or removes them from our social network altogether. And just as Facebook, LinkedIn and other social networks are platforms of a sort, it is sensible for manufacturers, consumers and service providers to start thinking in terms of a central cloud-based platform for managing devices and the connected experience.

Why a Platform
Cloud-based platforms centralize service delivery, security and policies. They enable consistent user experiences. And they scale extraordinarily cost-effectively. These are all attributes that need to be baked into the way we interact with our growing array of smart devices.

A platform for managing connected things would perform the following key tasks:

  1. Managing digital identities: Identity management is the bedrock of ensuring privacy in this connected age. It is integral to determining whether you truly are the owner/administrator of the device, and if you have permission to access its collected data, override its settings or de-commission it. This holds true whether you are attempting to erase data remotely from all the components in your stolen car or smart watch, or wipe away your user persona and remove data from all the objects in your just-sold house. Of course, people are not the only entities with digital identities. Each object in the expanding digisphere has one too, and they all must be managed. Effective identity management includes dynamically authenticating a user's request to access particular information based on pre-specified trust levels, locations, timing, nature of requests and other variables.
  2. Managing rules and policies: Device owners and authorized users, as well as device providers (OEMs, utilities, employers, healthcare providers, etc.), need an easy way to set rules and policies regarding usage, data collection and access, and de-provisioning. They also need an easy way to change these rules and policies when necessary. Multiplied across thousands of connected objects, this is a daunting task that a cloud-based platform can simplify while scaling to handle the growing challenge.
  3. Keeping it simple and consistent for the user: When all is said and done, the user is at the center of the connected ecosystem. Thus the idea is to make things simple and effective for each user - that "one-click defriending" thing again - across as many connected devices as possible in a standardized fashion. An individual appliance, automotive or electronics OEM can try to tackle the challenge across all the devices it makes, but won't be able to even come close to covering every connected device a consumer ends up using. As a result, industry and cross-industry partnerships will be crucial to ensure standardization. Third-party service providers have an opportunity here as well, along the lines of today's universal password services. Keep in mind that no matter how good an OEM is in making a smart thermostat or connected car, developing security protocols and identity management capabilities in-house is not their core competence (and it is also a costly, time-consuming and risky proposition). Agreeing on standards, forming partnerships and consortiums and involving parties that do have cross-industry competence in consumer-friendly digital security platforms are essential.

While we began this piece talking about defriending smart devices, a clean and easy breakup is clearly not the only virtue of a platform approach to managing these devices. From a consumer perspective, I also look forward to having a greater say into where my data goes and what other devices it may be shared with. A platform approach has the potential to give me that across all my devices. OEMs can anticipate providing consumers with a smoother and more satisfying digital experience, and in doing so in a cost-effective self-service manner. And privacy advocates and the enforcers of compliance mandates should be pleased as well.

Breaking up can be messy, in both the real world and the digital world. But if we start the discussion now about the de-provisioning of smart objects, and the empowering of users to manage their relationships with the IoT, there is hope yet for our digital world.

More Stories By David Miller

David Miller, Covisint’s Chief Security Officer, is an internationally renowned security thought leader recently named by FORTUNE magazine as an “identity visionary”. He has more than 20 years of experience in identity management and information technology. He is Chief Security Officer for Covisint, where he is responsible for internal and external system architecture security issues for e-business exchange.

In addition, Miller directs the identity management offering at Covisint, which currently secures access for automotive, healthcare, energy and government customers. He has spoken at numerous conferences in various industries and has also spoke before the U.S. Senate regarding e-prescribing of controlled substances.

Comments (0)

Share your thoughts on this story.

Add your comment
You must be signed in to add a comment. Sign-in | Register

In accordance with our Comment Policy, we encourage comments that are on topic, relevant and to-the-point. We will remove comments that include profanity, personal attacks, racial slurs, threats of violence, or other inappropriate material that violates our Terms and Conditions, and will block users who make repeated violations. We ask all readers to expect diversity of opinion and to treat one another with dignity and respect.


IoT & Smart Cities Stories
Intel is an American multinational corporation and technology company headquartered in Santa Clara, California, in the Silicon Valley. It is the world's second largest and second highest valued semiconductor chip maker based on revenue after being overtaken by Samsung, and is the inventor of the x86 series of microprocessors, the processors found in most personal computers (PCs). Intel supplies processors for computer system manufacturers such as Apple, Lenovo, HP, and Dell. Intel also manufactu...
At CloudEXPO Silicon Valley, June 24-26, 2019, Digital Transformation (DX) is a major focus with expanded DevOpsSUMMIT and FinTechEXPO programs within the DXWorldEXPO agenda. Successful transformation requires a laser focus on being data-driven and on using all the tools available that enable transformation if they plan to survive over the long term. A total of 88% of Fortune 500 companies from a generation ago are now out of business. Only 12% still survive. Similar percentages are found throug...
Darktrace is the world's leading AI company for cyber security. Created by mathematicians from the University of Cambridge, Darktrace's Enterprise Immune System is the first non-consumer application of machine learning to work at scale, across all network types, from physical, virtualized, and cloud, through to IoT and industrial control systems. Installed as a self-configuring cyber defense platform, Darktrace continuously learns what is ‘normal' for all devices and users, updating its understa...
AI and machine learning disruption for Enterprises started happening in the areas such as IT operations management (ITOPs) and Cloud management and SaaS apps. In 2019 CIOs will see disruptive solutions for Cloud & Devops, AI/ML driven IT Ops and Cloud Ops. Customers want AI-driven multi-cloud operations for monitoring, detection, prevention of disruptions. Disruptions cause revenue loss, unhappy users, impacts brand reputation etc.
Apptio fuels digital business transformation. Technology leaders use Apptio's machine learning to analyze and plan their technology spend so they can invest in products that increase the speed of business and deliver innovation. With Apptio, they translate raw costs, utilization, and billing data into business-centric views that help their organization optimize spending, plan strategically, and drive digital strategy that funds growth of the business. Technology leaders can gather instant recomm...
OpsRamp is an enterprise IT operation platform provided by US-based OpsRamp, Inc. It provides SaaS services through support for increasingly complex cloud and hybrid computing environments from system operation to service management. The OpsRamp platform is a SaaS-based, multi-tenant solution that enables enterprise IT organizations and cloud service providers like JBS the flexibility and control they need to manage and monitor today's hybrid, multi-cloud infrastructure, applications, and wor...
The Master of Science in Artificial Intelligence (MSAI) provides a comprehensive framework of theory and practice in the emerging field of AI. The program delivers the foundational knowledge needed to explore both key contextual areas and complex technical applications of AI systems. Curriculum incorporates elements of data science, robotics, and machine learning-enabling you to pursue a holistic and interdisciplinary course of study while preparing for a position in AI research, operations, ...
After years of investments and acquisitions, CloudBlue was created with the goal of building the world's only hyperscale digital platform with an increasingly infinite ecosystem and proven go-to-market services. The result? An unmatched platform that helps customers streamline cloud operations, save time and money, and revolutionize their businesses overnight. Today, the platform operates in more than 45 countries and powers more than 200 of the world's largest cloud marketplaces, managing mo...
I spend a lot of time helping organizations to “think like a data scientist.” My book “Big Data MBA: Driving Business Strategies with Data Science” has several chapters devoted to helping business leaders to embrace the power of data scientist thinking. My Big Data MBA class at the University of San Francisco School of Management focuses on teaching tomorrow’s business executives the power of analytics and data science to optimize key business processes, uncover new monetization opportunities an...
Trend Micro Incorporated, a global leader in cybersecurity solutions, helps to make the world safe for exchanging digital information. Our innovative solutions for consumers, businesses, and governments provide layered security for data centers, cloud workloads, networks, and endpoints. All our products work together to seamlessly share threat intelligence and provide a connected threat defense with centralized visibility and investigation, enabling better, faster protection. With more than 6,00...