/IoT-Security-Verification-Standard-ISVS

OWASP IoT Security Verification Standard (ISVS)

Primary LanguageTeXOtherNOASSERTION

IoT Security Verification Standard (ISVS)

Creative Commons License Document Build Status Slack

The OWASP Internet of Things Security Verification Standard (ISVS) is a community effort to establish an open standard of security requirements for Internet of Things (IoT) applications. The requirements provided by the ISVS can be used at many stages during the product development life cycle including design, development, and testing of IoT applications.

IoT applications are often composed of many interconnected applications that together form a complex ecosystem. Securing an IoT application thus boils down to securing the ecosystem. The ISVS, therefore, specifies security requirements for embedded applications and the IoT ecosystem in which these reside while referring to existing industry-accepted standards as much as possible.

Peer Review Requested

The first version of the OWASP ISVS is ready for a peer review. "Pre-release 1.0RC" can be acquired in the following formats:

  • The releases page contains PDF, EPUB, Docx, CSV, JSON and XML versions of the standard.
  • The latest version of the main branch can be read on GitBook.

Read Individual Sections of the ISVS Below

How to Contribute

The ISVS is an open source effort and we welcome contributions and feedback. If you want to contribute additional content, improve existing content, or provide your feedback, we suggest that you do so through:

Before you start contributing, please check our contribution guide which should get you started.

Project Leads