Circle
Events
Blog

Working Group

Internet of Things

This working group focuses on understanding the relevant use cases for IoT deployments and defining actionable guidance for security practitioners to secure their implementations.
Sign-Up View Current Projects
CSA IoT Security Controls Framework v2
CSA IoT Security Controls Framework v2

Download

Internet of Things
Internet of Things | Working Group Overview
This working group focuses on understanding the relevant use cases for IoT deployments and defining actionable guidance for security practitioners to secure their implementations. We welcome anyone who would like to join, even if you would like to just listen-in on your first call. 

What do we discuss? 
During these meetings we typically discuss changes in the industry and collaborate on projects the group is currently working on.

Drafts & Important Docs

Working Group Leadership

​Aaron Guzman Headshot
​Aaron Guzman

​Aaron Guzman

Aaron is a passionate information security professional specializing in IoT, embedded, and automotive security. He is co-author of the “IoT Penetration Testing Cookbook” and a technical editor for the "Practical Internet of Things Security” Packt Publishing books. Aaron is co-chair of CSA’s IoT working group as well as a leader for OWASP’s IoT and Embedded Application Security projects; providing practical guidance to address the most commo...

Read more

Brian Russell Headshot
Brian Russell

Brian Russell

Brian Russell is co-author of the book “Practical Internet of Things Security” and is a Chief Engineer focused on Cyber Security Solutions for Leidos (www.leidos.com). He oversees the design and development of security solutions and the implementation of privacy and trust controls for customers. Brian leads efforts that include security engineering for Unmanned Aerial Systems (UAS) and Connected Cars, and the development of hig...

Read more

Publications in ReviewOpen Until
The Six Pillars of DevSecOps - Pragmatic ImplementationOct 10, 2022
Security Guidance for Critical Areas of Focus in Cloud Computing v5 - OutlineDec 07, 2022
View all
Who can join?

Anyone can join a working group, whether you have years of experience or want to just participate as a fly on the wall.

What is the time commitment?

The time commitment for this group varies depending on the project. You can spend a 15 minutes helping review a publication that's nearly finished or help author a publication from start to finish.

Virtual Meetings

Attend our next meeting. You can just listen in to decide if this group is a good for you or you can choose to actively participate. During these calls we discuss current projects, and well as share ideas for new projects. This is a good way to meet the other members of the group. You can view all research meetings here.

Oct

13

Thu, October 13, 10:00am - 11:00am PDT
IoT Working Group
See details
AGENDA:
  • CSA Announcements
  • Presentation from SDP/Zero Trust Working Group
  • Open Discussion

---------------------
UPDATED DIAL-IN

Join Zoom Meeting
https://cloudsecurityalliance.zoom.us/j/98615915095?pwd=czdzcDd5Q2ZqaUlBUUZIcHVFcndpQT09

Meeting ID: 986 1591 5095
Passcode: 649991
One tap mobile
+12532158782,,98615915095# US (Tacoma)
+16699009128,,98615915095# US (San Jose)

Dial by your location
        +1 253 215 8782 US (Tacoma)
        +1 669 900 9128 US (San Jose)
        +1 346 248 7799 US (Houston)
        +1 646 558 8656 US (New York)
        +1 301 715 8592 US (Washington DC)
        +1 312 626 6799 US (Chicago)
Meeting ID: 986 1591 5095
Find your local number: https://cloudsecurityalliance.zoom.us/u/ac9Kgh0RX3

Nov

10

Thu, November 10, 10:00am - 11:00am PST
IoT Working Group
See details
AGENDA:
  • CSA Announcements
  • Presentation from SDP/Zero Trust Working Group
  • Open Discussion

---------------------
UPDATED DIAL-IN

Join Zoom Meeting
https://cloudsecurityalliance.zoom.us/j/98615915095?pwd=czdzcDd5Q2ZqaUlBUUZIcHVFcndpQT09

Meeting ID: 986 1591 5095
Passcode: 649991
One tap mobile
+12532158782,,98615915095# US (Tacoma)
+16699009128,,98615915095# US (San Jose)

Dial by your location
        +1 253 215 8782 US (Tacoma)
        +1 669 900 9128 US (San Jose)
        +1 346 248 7799 US (Houston)
        +1 646 558 8656 US (New York)
        +1 301 715 8592 US (Washington DC)
        +1 312 626 6799 US (Chicago)
Meeting ID: 986 1591 5095
Find your local number: https://cloudsecurityalliance.zoom.us/u/ac9Kgh0RX3

Open Peer Reviews

Peer reviews allow security professionals from around the world to provide feedback on CSA research before it is published.

Learn how to participate in a peer review here.

The Six Pillars of DevSecOps - Pragmatic Implementation

Open Until: 10/10/2022

This document provides a high-level overview of the various tools and processes that should be considered when building out...

Security Guidance for Critical Areas of Focus in Cloud Computing v5 - Outline

Open Until: 12/07/2022

The proposed outline for the Cloud Security Alliance Security Guidance for Critical Areas of Focus in Cloud Computing v5 is...