38
© 2017 WIND RIVER. ALL RIGHTS RESERVED. SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT Victor Abelairas, Senior Director Wind River Helix Device Cloud Commercial Operations

SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

  • Upload
    others

  • View
    5

  • Download
    0

Embed Size (px)

Citation preview

Page 1: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

© 2017 WIND RIVER. ALL RIGHTS RESERVED.

SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

Victor Abelairas, Senior Director

Wind River Helix Device Cloud Commercial Operations

Page 2: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

2 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

WHAT IS DEVICE LIFECYCLE MANAGEMENT?

The ability to perform common operational tasks relating to management of a device or gateway

Page 3: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

3 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Using a device management platform

leads to a faster time-to-market; ensures a

high quality, reliable, secure offering; and

enables enterprises to build competitive

advantage in their markets.

—MachNation,

2017 IoT Device Management Scorecard

Page 4: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

4 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

WHAT ARE THE KEY FEATURES NEEDED IN AN EFFECTIVE DLM SOLUTION?

Capabilities must include:

▪ Support of the initial device rollout and onboarding

▪ Software deployment and configuration functionality

▪ Ongoing operational maintenance, including diagnostics, monitoring, and alerts

▪ Ability to update devices remotely

▪ Device decommissioning

Page 5: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

5 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Deployment

▪ Nonstandard devices

▪ Legacy devices

▪ Multiple existing operating systems

Monitoring, Servicing, and Managing

▪ Network security threats

▪ Field service expenses

▪ Difficult access

Updating

▪ Future-proofing needs

▪ Failed updates

▪ Upgrade costs

Decommissioning

▪ Security threats from stolen devices

▪ Disconnected alarms

▪ Operations disruption

IOT DEVICE LIFECYCLE MANAGEMENT

Manage

Deploy

Service

Monitor

Update

Decommission

Connect – Operate – Protect

Page 6: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

6 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

▪ Remotely control device actions with an Intel-based

Smart Home Hub

▪ Gain usage insights for better decision making and

energy savings

▪ Manage devices with natural voice recognition

▪ Easily deploy new devices that seamlessly interact

with other IoT applications and the AWS Cloud

6 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

VOICE-POWERED

SMART HOMES ENRICH,

SECURE, AND SIMPLIFY

EVERYDAY LIFE

Page 7: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

7 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

▪ Personalized upsell opportunities based on

customer usage habits

▪ Real-time customer support and, when

necessary, remote management and updates

▪ Proactive consumer support in managing

appliances with accurate, up-to-date practices

IOT-ENABLED

APPLIANCES DRIVE

MORE PERSONALIZED

EXPERIENCES WITH

CONSUMERS

7 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 8: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

8 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Worldwide IoT application enablement

and device management revenue will be

USD 2 billion in 2016, growing to USD

83.4 billion by 2025 at a compound

annual growth rate (CAGR) of 59%.

—MachNation,

2017 IoT Device Management Scorecard

Page 9: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

9 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

▪ An end-to-end solution with pollution data

analytics through integrated Intel IoT

Platform and Wind River Helix Device

Cloud ingredients

▪ Cutting-edge data collection technologies

guarantee real-time, accurate data

▪ 24/7 monitoring covering 10–20x more

locations than traditional monitors

MICROCLIMATE MONITORING SYSTEM ADDRESSES INCREASING AIR POLLUTION CONCERNS

9 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 10: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

10 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Korea

Best market to invest

MARKET INVESTMENT SCENARIO:Asia Pacific is expected to emerge as the best market for

investments in the next five years

Page 11: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

11 © 2017 WIND RIVER. ALL RIGHTS RESERVED. Source: MarketsandMarkets Analysis

0

5

10

15

20

25

30

35

40

45

50

2015 2016 2017 2022

RevenueSouth Korea Device Management Market Revenue

(USD Million)

CAGR %(2017-2021): 38.5%

Page 12: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

12 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

SMART MANUFACTURING SEGMENT IS EXPECTED TO HOLD THE LARGEST MARKET SHARE DURING THE

FORECAST PERIOD

Note:*Others application areas include smart agriculture and smart education

Page 13: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

13 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Smart Manufacturing: IoT Device Management Market Size, By Region,

2015-2022 (USD MILLION)

Regions 2015 2016 2017-e 2022-pCAGR

(2017-2022)

North America 33.7 40.9 49.7 161.6 26.6%

Europe 26.0 31.9 39.3 138.4 28.6%

APAC 13.4 17.2 22.2 99.7 35.0%

MEA 8.7 11.0 14.1 58.8 33.1%

Latin America 8.3 10.5 13.3 54.0 32.4%

Total 90.0 111.5 138.5 512.5 29.9%

Page 14: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

14 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

0

1

2

3

4

5

6

7

8

9

10

2015

2022

Application

AreaSmart Retail

Connected

Health

Connected

Logistics

Smart

Utilities

Smart

Manufacturing Others Total

CAGR 38.6% 38.4% 39.1% 40.4% 37.3% 36.8% 38.5%

Mark

et S

ize (

US

D M

illio

n)

South Korea IoT Device Management Market Size, By Application Area (2015-2022)

Source: MarketsandMarkets Analysis

Page 15: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

15 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

MANAGING INDUSTRIAL DEVICES OF VARYING COMPLEXITY TO DELIVER CONSISTENT RESULTS

15 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 16: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

16 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

0.00

1.00

2.00

3.00

4.00

5.00

6.00

7.00

Real-TimeStreamingAnalytics

Security Solution DataManagement

RemoteMonitoring

NetworkBandwidth

Management

2015

2022

South Korea IoT Device Management Market Size By Solution

(2015-2022) (USD MILLION)

Source: MarketsandMarkets Analysis

Page 17: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

SECURITY THREATS ARE REALThe 2016 Mirai IoT Botnet DDOS attacks compromised 500,000 devices worldwide.

18 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 18: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

18 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

ST. REGIS

SHENZHEN HOTEL

A guest was able to use the iPad supplied with the room to gain access to thermostats, lights, TVs, and window blinds in all of the hotel’s 250 rooms.

19 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 19: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

Each node in the topology represents

one or more attack vectors. Security

depends on a comprehensive approach

that minimizes the attack surface of a

given system.

SECURE DEVICES

SECURE DEVICE INTERCONNECTIVITY

SECURE NETWORK

SECURE DATACENTER

SECURE DEVICE MANAGEMENT

SECURE SYSTEM

20 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 20: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

20 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

IN THE SOFTWARE DEFINED WORLD, SECURITY BEGINS WITH DEVICES

Whether you are implementing a single stand-

alone device or an end-to-end system, the device

is the foundational component.

Software runs on diverse hardware,all of which must be secured:

▪ Microcontroller platforms

▪ Embedded processors

▪ Ruggedized PCs

▪ Industrial servers

▪ Phones, tablets, laptops, desktops

▪ Network blades

▪ Data center servers

Page 21: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

21 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

LOOKING AT DEVICE SECURITY HOLISTICALLY

Boot Runtime UpdatesDesign

Prevent malicious code in

development

Prevent untrusted binaries from

executing

Prevent malicious attacks in operation

Keep up with changing threats

Page 22: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

22 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

IF A DEVICE CANNOT BE UPDATED,THE DEVICE IS NOT SECURE

Once a device has been hacked, assume that information will be available to others.

Potential risk to:

▪ Your business

▪ Your customers

▪ Other businesses

▪ Network infrastructure

Page 23: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

23 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

THE BUSINESS OF IOT SECURITY

CONFIDENTIALITY

Information has value

Protecting the information from disclosure to unauthorized parties

INTEGRITY

Information has value if it is correct

Protecting information from being modified by unauthorized parties

AVAILABILITY

Information has value if the right people can access it at the right times

Ensuring that authorized parties are able to access the information when needed

Page 24: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

24 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

DEVICE CLOUD

ENABLES THE

CUSTOMER TO

MEET EFFICIENCY,

COMPLIANCE, AND

CONNECTIVITY

GOALS.

PROTECTING PATIENTS FROM EXPOSURE TO INFECTIONS WHILE UNDER TREATMENT

Page 25: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

25 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

ENABLING SMART FIRE TRUCKS AND CITIES

“With the remote service capabilities of Device Cloud, we can ensure peak performance without having to send service engineers out to the customer site.”

—Jonathan Gamble, Principal Product Engineer, Waterous

Page 26: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

26 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

THE IOT DEVICE MANAGEMENT PLATFORM ADDRESSING THE CHALLENGES OF IOT

Page 27: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

27 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

CONNECT DEVICE DATA TO ENTERPRISE IT EASILY

Protect sensitive device data

▪ Designate which data to send to

Device Cloud and which to send to

internal networks

Integrate systems

▪ Automatically forward

data to customers’ third-

party cloud service

providers

Bridge existing investments

▪ Integrate with existing IoT

operating systems

Device

Operational Technology

Enterprise IT

Information TechnologyDevice Cloud

IoT

appsBig

data

IT

systems

Cloud

services

Page 28: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

28 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Deploy and connect securely

Monitor and service devices

remotely

Manage content and execute

updates easily

Decommission devices cleanly

IOT DEVICE LIFECYCLE MANAGEMENT

Connect – Operate – Protect

Manage

Deploy

Service

Monitor

Update

Decommission

Page 29: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

29 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

DEVICE CLOUD ADDRESSES LEADING IOT CHALLENGES

… and an all-in-one management platform Through a flexible device agent …

1. Managing devices remotely

2. Keeping OT and IT connected

3. Realizing IoT benefits for our customers

IoT Devices Enterprise ITDevice CloudSecure

Connectivity

IoT

AppsBig

Data

IT

Systems

Cloud

Services

Page 30: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

30 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

CONNECT CONFIDENTLY WITH ROBUST SECURITY

Confidentiality

Leverage encryption from

device to cloud

▪ Prevent network hijacking by

running devices with the “least

privileges necessary”

▪ Safe password reset

▪ Role-based access & privacy

Cut IT costs by automating

user & device compliance

▪ Mutual cert authentication

▪ Signed update packages

▪ File checking, logging, data

buffering

Integrity

Availability > 99.9% & 24/7

▪ DDOS, anti-spoofing, script &

forgery protection

▪ Server status & security

monitoring

▪ Scale & performance

Availability

IoT

AppsBig

Data

IT

Systems

Cloud

Services

Deploy

Monitor

Service

Manage

Update

Decom

Page 31: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

WHY DEVICE CLOUD?

▪ Immediate connectivity to Wind River environments and other operating systems

▪ Robust device management capabilities provided by Device Cloud, including:

- Status monitoring

- Remote services

- Software updates

▪ Reliable, scalable, and secure infrastructure

▪ Management of all the hosting operations

▪ Flexibility

31 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 32: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

Device Cloud is an IoT platform for

connecting machines and devices, managing

machine-generated data, and remotely

executing software updates.

Wind River:

The Foundation for Your Innovation

32 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 33: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

33 © 2017 WIND RIVER. ALL RIGHTS RESERVED.33 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 34: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

34 © 2017 WIND RIVER. ALL RIGHTS RESERVED.34 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

IS YOUR DEVICE

MANAGEMENT

STRATEGY IN

PLACE FOR IOT

SUCCESS?

34 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 35: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

© 2017 WIND RIVER. ALL RIGHTS RESERVED.

THANK YOU

Page 36: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

36 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

SMART BUILDINGS DELIVER OPTIMIZED PERFORMANCEAND EFFICIENCY

36 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 37: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

37 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

INCREASED SAVINGS & REVENUE

▪ Monitor, manage, and update

rigs remotely

▪ Optimize pumping stroke and uptime for

customers

▪ Sell optimization as a service

▪ Provide launchpad for other

edge-to-cloud solutions, including a

cloud-based SCADA strategy

37 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

Page 38: SECURE DEVICE MANAGEMENT: ACHIEVING SUCCESS IN IOT

38 © 2017 WIND RIVER. ALL RIGHTS RESERVED.

DELIVERING SMARTER STREETS

▪ Easy deployment of new sensors

and machines

▪ Reduced management and

maintenance costs

▪ Real-time utilization patterns

▪ Reliability, scalability, and security

▪ Multi-platform support

38 © 2017 WIND RIVER. ALL RIGHTS RESERVED.