1. Home
  2. |Insights
  3. |On the Cyber Frontier of IoT Security

On the Cyber Frontier of IoT Security

Client Alert | 1 min read | 04.11.18

In the Interagency Report on Status of International Cybersecurity Standardization for the Internet of Things (IoT), the National Institute of Standards and Technology (NIST) performed an extensive survey of current cybersecurity standards applicable or potentially applicable to IoT devices. Among the many key findings and discussions, some of the more notable are: (1) NIST elected not to define IoT due to the many varying definitions already in the field (see Annex A); (2) NIST used several functional IoT applications (connected vehicles, consumer devices, health/medical devices, smart buildings and smart manufacturing) to assess current cyber standards and gaps; (3) NIST recognized that no one-size-fits-all standards exist, as specific sectors will have differing risk scenarios and security objectives, thus requiring cyber standards to be tailored; and (4) IoT security should be built around eleven core areas of cybersecurity standardization. Also, NIST is looking for your comments on draft NISTIR 8200 by April 18. To learn more, join us at the IoT National Institute on May 9-10 in Washington, D.C.

Insights

Client Alert | 5 min read | 09.03.26

DOT Final Rule Narrows Airline Delay and Cancellation Reporting Obligation Under FAA Reauthorization Act of 2024

The U.S. Department of Transportation (DOT) published a final rule amending 14 CFR Part 234 that fundamentally changes how airlines report the causes of flight delays and cancellations. Effective October 19, 2026, the rule implements Section 511(b) of the FAA Reauthorization Act of 2024 by creating a new reporting category, the “Section 511(b) category,” for ten specific events that Congress determined are not attributable to airline control. The rule simultaneously narrows the existing "Air Carrier" reporting category by expressly excluding those same ten events....