IoT market is so fragmented at all levels where there is no solution like Barbara that combine the above-mentioned key characteristics, bringing together OS management and highest security standards specifically designed for light I-IoT devices together with the interoperable and open-source design.
Current technology lacks the following main aspects, which Barbara integrates:
• Non-optimised encryption algorithms/systems: Current standards in cryptography are designed to be run by traditional computing systems. Their performance in IoT systems, typically limited computing power, is neither adequate nor acceptable. Barbara is actively following NIST initiatives in the field of lightweight cryptography and their potential application in IoT in the future, incorporating these in Barbara.
• Low data transmission: The trend is moving IoT deployments to be based on LPWAN (Low-Power Wide Access Networks) protocols. These protocols are designed to optimise the necessary power to transmit, by using a low throughput rate, and therefore maximize the battery-life and Barbara supports them.
• Security still focused in the network: Security in IT has classically been oriented towards the networks, by establishing firewalls or IDS (intrusion detection systems). This approach is valid but not sufficient in the I-IoT world. New “physical” security and safety mechanisms triggered by changes, for instance, in location, temperature or any other parameter being monitored must be implemented. Barbara is built on those principles.
• Lack of standardisation: Recent initiatives such as the OWASP IoT project, GSMA’s security recommendations for IoT or the security checklist from the Online Trust Alliance try to cover existing gaps in regulation and standards for Security in IoT. However, none of them has succeeded yet in becoming a de-facto standard or having the impact that other security regulations such as the ISO 27000-1 or FIPS-140 have. Barbara is fully aligned with the emerging security standards and monitoring its evolution.
From a commercial perspective, current approaches can be mainly classified in 2 big blocks:
1. The “do-it-yourself” (DIY) approach
Many companies are directly dealing with the complexity of an IoT deployment from scratch, including hardware selection, OS configuration and maintenance, Cloud solutions integration, etc. This approach is costly (they need dedicated resources), insecure, without professional support and a burden towards scalability.
2. The Vertically Integrated Solutions approach
Other companies are using a closed solution from big industrial corporations providing hardware, software and services. These solutions imply using a very closed ecosystem of tools, are very expensive and tie companies to those specific solution, as migrating to different ones is not easy.
Barbara’s approach lies in the middle of the 2 options. It offers an open platform, that can be remotely managed and updated, curated and professionally supported by a security experts team, and with no hardware or cloud bindings.