1. Home
  2. |Insights
  3. |On the Cyber Frontier of IoT Security

On the Cyber Frontier of IoT Security

Client Alert | 1 min read | 04.11.18

In the Interagency Report on Status of International Cybersecurity Standardization for the Internet of Things (IoT), the National Institute of Standards and Technology (NIST) performed an extensive survey of current cybersecurity standards applicable or potentially applicable to IoT devices. Among the many key findings and discussions, some of the more notable are: (1) NIST elected not to define IoT due to the many varying definitions already in the field (see Annex A); (2) NIST used several functional IoT applications (connected vehicles, consumer devices, health/medical devices, smart buildings and smart manufacturing) to assess current cyber standards and gaps; (3) NIST recognized that no one-size-fits-all standards exist, as specific sectors will have differing risk scenarios and security objectives, thus requiring cyber standards to be tailored; and (4) IoT security should be built around eleven core areas of cybersecurity standardization. Also, NIST is looking for your comments on draft NISTIR 8200 by April 18. To learn more, join us at the IoT National Institute on May 9-10 in Washington, D.C.

Insights

Client Alert | 2 min read | 12.19.25

GAO Cautions Agencies—Over-Redact at Your Own Peril

Bid protest practitioners in recent years have witnessed agencies’ increasing efforts to limit the production of documents and information in response to Government Accountability Office (GAO) bid protests—often will little pushback from GAO. This practice has underscored the notable difference in the scope of bid protest records before GAO versus the Court of Federal Claims. However, in Tiger Natural Gas, Inc., B-423744, Dec. 10, 2025, 2025 CPD ¶ __, GAO made clear that there are limits to the scope of redactions, and GAO will sustain a protest where there is insufficient evidence that the agency’s actions were reasonable....