[フレーム]
You are viewing this page in an unauthorized frame window.

This is a potential security issue, you are being redirected to https://csrc.nist.gov.

You have JavaScript disabled. This site requires JavaScript to be enabled for complete site functionality.

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

    Publications

NIST CSWP 24

Recommended Criteria for Cybersecurity Labeling for Consumer Internet of Things (IoT) Products

Documentation Topics

Date Published: February 4, 2022

Author(s)

National Institute of Standards and Technology

Abstract

Executive Order (EO) 14028, "Improving the Nation’s Cybersecurity," tasks the National Institute of Standards and Technology (NIST), in coordination with the Federal Trade Commission (FTC) and other agencies, to initiate pilot programs for cybersecurity labeling. NIST is, among other actions, directed "... to identify IoT cybersecurity criteria for a consumer labeling program..." This document seeks to fulfill this directive by recommending consumer IoT product label criteria, label design and consumer education considerations, and conformity assessment considerations for use by a scheme owner to inform a consumer Internet of Things (IoT) product labeling program.

Executive Order (EO) 14028, "Improving the Nation’s Cybersecurity," tasks the National Institute of Standards and Technology (NIST), in coordination with the Federal Trade Commission (FTC) and other agencies, to initiate pilot programs for cybersecurity labeling. NIST is, among other actions,... See full abstract

Executive Order (EO) 14028, "Improving the Nation’s Cybersecurity," tasks the National Institute of Standards and Technology (NIST), in coordination with the Federal Trade Commission (FTC) and other agencies, to initiate pilot programs for cybersecurity labeling. NIST is, among other actions, directed "... to identify IoT cybersecurity criteria for a consumer labeling program..." This document seeks to fulfill this directive by recommending consumer IoT product label criteria, label design and consumer education considerations, and conformity assessment considerations for use by a scheme owner to inform a consumer Internet of Things (IoT) product labeling program.


Hide full abstract

Keywords

consumer IoT; criteria; cybersecurity; executive order; label
Control Families

None selected

Documentation

Publication:
https://doi.org/10.6028/NIST.CSWP.24
Download URL

Supplemental Material:
Local Download (pdf)
IoT Product Criteria page

Document History:
08/31/21: Other (Draft)
02/04/22: CSWP 24 (Final)

Topics

Security and Privacy

general security & privacy

Applications

Internet of Things

Laws and Regulations

Executive Order 14028

Sectors

retail

AltStyle によって変換されたページ (->オリジナル) /