{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,26]],"date-time":"2026-03-26T14:53:08Z","timestamp":1774536788888,"version":"3.50.1"},"reference-count":0,"publisher":"Politechnika Wroclawska Oficyna Wydawnicza","issue":"1","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["EISEJ"],"published-print":{"date-parts":[[2020]]},"abstract":"<jats:p><jats:bold>Background:<\/jats:bold> Security has become more of a concern with the wide deployment of Internet-of-things (IoT) devices. The importance of addressing security risks early in the development lifecycle before pushing to market cannot be over emphasized.<\/jats:p>\n\t\t\t\t\t<jats:p><jats:bold>Aim:<\/jats:bold> To this end, we propose a conceptual framework to help with identifying security concerns early in the product development lifecycle for Internet-of-things, that we refer to as SIoT (Security for Internet-of-Things).<\/jats:p>\n\t\t\t\t\t<jats:p><jats:bold>Method:<\/jats:bold> The framework adopts well known security engineering approaches and best practices, and systematically builds on existing research work on IoT architecture.<\/jats:p>\n\t\t\t\t\t<jats:p><jats:bold>Results:<\/jats:bold> Practitioners at a Norwegian start-up company evaluated the framework and found it useful as a foundation for addressing critical security concerns for IoT applications early in the development lifecycle. The output from using the framework can be a checklist that can be used as input during security requirements engineering activities for IoT applications.<\/jats:p>\n\t\t\t\t\t<jats:p><jats:bold>Conclusions:<\/jats:bold> However, security is a multi-faced concept; therefore, users of the SIoT framework should not view the framework as a panacea to all security threats. The framework may need to be refined in the future, particularly to improve its completeness to cover various IoT contexts.<\/jats:p>","DOI":"10.37190\/e-inf200103","type":"journal-article","created":{"date-parts":[[2020,4,15]],"date-time":"2020-04-15T10:10:31Z","timestamp":1586945431000},"source":"Crossref","is-referenced-by-count":2,"title":["SIoT Framework: Towards an Approach for Early Identification of Security Requirements for Internet-of-things Applications"],"prefix":"10.37190","volume":"14","author":[{"given":"Ronald","family":"Jabangwe","sequence":"first","affiliation":[]},{"given":"Anh","family":"Nguyen-Duc","sequence":"additional","affiliation":[]}],"member":"23140","published-online":{"date-parts":[[2020]]},"container-title":["e-Informatica Software Engineering Journal"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/www.e-informatyka.pl\/attach\/e-Informatica_-_Volume_14\/eInformatica2020Art03.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,4,10]],"date-time":"2024-04-10T08:06:08Z","timestamp":1712736368000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.e-informatyka.pl\/index.php\/einformatica\/volumes\/volume-2020\/issue-1\/article-3\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020]]},"references-count":0,"journal-issue":{"issue":"1","published-online":{"date-parts":[[2020]]},"published-print":{"date-parts":[[2020]]}},"URL":"https:\/\/doi.org\/10.37190\/e-inf200103","relation":{},"ISSN":["2084-4840"],"issn-type":[{"value":"2084-4840","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020]]}}}