There is a range of cyber security best practice guidelines and standards that with some adjustments are very suitable for the design and development of a cyber security strategy and protective monitoring programme. They can be modified to the IOT and ICT architectures, diverse environments and the different public and private sector parties involved. In time more specific guidelines and standards may well evolve but until they do those available today are a good start. These include:
- NIST Cyber Framework
- CIS Security Controls
- MITRE ATT&CK
- STIX
- NCSC Monitoring Guidelines
- ISO 27k
| Further reading… |
| I plan to cover this further as part of Monitoring Strategies, Design Guides and a Smart City Threat Model. |