SlideShare a Scribd company logo
© 2017 ForgeRock. All rights reserved.
Security On The Edge
A New Way To Think About Securing the Internet of Things
Ashley Stevenson – Identity Technology Director, ForgeRock
Chris Kawalek – Product Marketing Director, ForgeRock
© 2017 ForgeRock. All rights reserved.
This technology preview contains
descriptions of planned features and
functionality, please refer to the product
documentation for full details of
included features.
© 2017 ForgeRock. All rights reserved.
2010 Founded in Norway
10 Offices worldwide with headquarters in San Francisco
420+ Employees
720+ Customers
50% Americas / 50% International commercial revenue
30+ Countries
1.2+ Billion Identities
ForgeRock
The leading, next-generation, identity security software
platform, driving digital transformation
© 2017 ForgeRock. All rights reserved.
Identity Evolution
Employees
Partners
Mobile
Customers
IoT / Edge
Relationships
Legacy Identity
Customer Identity
Relational Identity
© 2017 ForgeRock. All rights reserved.
Everyone
And
Every Thing
Identity For
Identity Relationship Management
© 2017 ForgeRock. All rights reserved.
People Cars Cloud Services
Sensors Software Infrastructure
© 2017 ForgeRock. All rights reserved.
Authorization Federation
Identity
Workflow
Self Service
Authentication
Identity
Synchronization
Adaptive Risk
Identity
Store
User-Managed
Access
Identity
Gateway
ForgeRock Identity Platform
Social
Identity
Identity
Proxy
ForgeRock
Identity Edge
Controller
ForgeRock
Identity
Message Broker
ForgeRock
Edge Security
© 2017 ForgeRock. All rights reserved.
IoT Is More Than You Think…
Smart Home Retail Smart City Health
Robotics Transportation Oil & Gas Manufacturing
© 2017 ForgeRock. All rights reserved.
The Trouble with Today’s IoT Approach
•  Security is not “by design”, it takes a back
seat to functionality
•  Transport security is not enough
•  Hard coded usernames and passwords, or
management of thousands of PKI
certificates is standard operating
procedure
•  There is no way to know if devices are
authentic, or if a bad actor is siphoning or
manipulating their data
•  No trust between decoupled IoT platforms
•  Data is used to make autonomous
decisions
Bad data = bad decisions
© 2017 ForgeRock. All rights reserved.
Introducing: ForgeRock Edge Security
•  Ensure trust in IoT devices and their communications using a
combination of strong cryptography and standards-based
Identity technologies
•  Hardware Root of Trust on supported devices and encryption
•  Secure configuration and attestation of devices and services
•  Rich, policy-based controls for securely managing IoT
interactions
•  Secure messaging support for protocols like MQTT and CoAP
© 2017 ForgeRock. All rights reserved.
How to Protect Devices
“On The Edge”
•  Establish the Root of Trust at the
edge
•  Provide a single security platform
across edge to enterprise
•  Establish trusted identities across
ecosystems
•  Share security context to enable rich
relationships
•  Enable secure and trusted
onboarding, no human intervention
© 2017 ForgeRock. All rights reserved.
ForgeRock Identity Edge Controller
•  Software for edge hardware
•  Ensures authenticity and security
•  No more hard coded usernames and passwords or
managing thousands of PKI certifications
•  Features hardware root of trust on supported
architectures for chip-to-cloud security
•  Simple on-boarding of devices with zero-
configuration device discovery
•  Manages secure credentials, data signing, data
encryption, data tagging, device attestation, and
more
© 2017 ForgeRock. All rights reserved.
ForgeRock Identity Message Broker
•  Secure message authorization and
translation, purpose-built for IoT
•  Brings authentication and authorization
policies to data streams generated by
IoT devices
•  Works as a “translator”, securely
transforming simple IoT protocols to
HTTP and WebSockets
•  Leverages the full power of the
ForgeRock Identity Platform
© 2017 ForgeRock. All rights reserved.
Providing
personalized driver
experience and
trusted vehicle
identities for
connected cars
© 2017 ForgeRock. All rights reserved.
•  Authenticates drivers,
passengers, and vehicles
•  Allows for profile management
in the cloud, personalization in
the car
•  Trusted identities for vehicles,
their sensors, software and data
with ForgeRock Identity Edge
Controller
THE CONNECTED CAR
SOLUTION FOR AGL
© 2017 ForgeRock. All rights reserved.
Access ManagementProfile Management Identity Repository Identity Gateway
FORGEROCK IDENTITY PLATFORM
AGL IN-VEHICLE OS
Application Framework
App 1 App 2 App 3
Standards-based Identity Agent
Bluetooth WiFi
Identity Edge Controller
© 2017 ForgeRock. All rights reserved.
Access
Management
Identity
Management
Directory
Services
Identity
Gateway
FORGEROCK
IDENTITY PLATFORM
FORGEROCK EDGE SECURITY UNIFIED PLATFORM
FORGEROCK IDENTITY
MESSAGE BROKER
FORGEROCK IDENTITY
EDGE CONTROLER
X
© 2017 ForgeRock. All rights reserved.
If It’s Connected, It Needs to be Secured
Cargo ContainerEnergy Substation Smartphone Wearables Animals Shopping CartVehicles Bike Computer
Smart Meter
Stoplight
Parking MeterSensorCameraOil BarrelForkliftBuildings
Wind Turbine
Gas Pump
© 2017 ForgeRock. All rights reserved.
For the latest information, join the
ForgeRock Edge Security
Early Access Program
bit.ly/FR-Edge-EAP

More Related Content

PPTX
Identity Live Sydney 2017 - Michael Dowling
PPTX
Identity Live Sydney 2017 - Daniel Raskin
PDF
The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017
PDF
T-Systems. Automating ForgeRock Full Stack Deployments to a Magenta Cloud.
PDF
Connected Car: Putting Digital Identity Behind the Wheel
PPTX
Identity Live Sydney 2017 - Ashley Stevenson
PPTX
Identity Live Sydney 2017 - Ian Sorbello
PPTX
Identity Live London 2017 | Daniel Raskin
Identity Live Sydney 2017 - Michael Dowling
Identity Live Sydney 2017 - Daniel Raskin
The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017
T-Systems. Automating ForgeRock Full Stack Deployments to a Magenta Cloud.
Connected Car: Putting Digital Identity Behind the Wheel
Identity Live Sydney 2017 - Ashley Stevenson
Identity Live Sydney 2017 - Ian Sorbello
Identity Live London 2017 | Daniel Raskin

What's hot (20)

PDF
Pimping the ForgeRock Identity Platform for a Billion Users
PDF
The Future is Now: The ForgeRock Identity Platform, Early 2017 Release
PPTX
Identity Live London 2017 | Ashley Stevenson
PDF
GDPR & Customer IAM: The Real Winners Won’t Stop At Compliance
PDF
Webinar: Three Steps to Transform Your Mobile App into a Security Factor
PPTX
IDENTITY IN THE WORLD OF IOT
PDF
ForgeRock Platform Release - Summer 2016
PPTX
Identity Objects in Mirror Are Closer Than They Appear - Identity Live 2017 -...
PPTX
Identity Gateway with the ForgeRock Identity Platform - So What’s New?
PPTX
9.35am robert humphrey
PPTX
Hermann Wimmer - ForgeRock Identity Live 2017 - Dusseldorf
PPTX
Criteria for Effective Modern IAM Strategies (Gartner IAM 2018)
PDF
IoT Wonderland: Understanding the Magic of OAuth2 Device Registration Flow
PPTX
Managing Identity without Boundaries
PPTX
Catalyst 2015: Patrick Harding
PPTX
HSBC - ForgeRock Identity Summit 2017 Dusseldorf
PDF
Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...
PPT
Identity-Defined Privacay & Security for Internet of Things
PPTX
Standard Based API Security, Access Control and AI Based Attack - API Days Pa...
PPTX
Ping Identity
Pimping the ForgeRock Identity Platform for a Billion Users
The Future is Now: The ForgeRock Identity Platform, Early 2017 Release
Identity Live London 2017 | Ashley Stevenson
GDPR & Customer IAM: The Real Winners Won’t Stop At Compliance
Webinar: Three Steps to Transform Your Mobile App into a Security Factor
IDENTITY IN THE WORLD OF IOT
ForgeRock Platform Release - Summer 2016
Identity Objects in Mirror Are Closer Than They Appear - Identity Live 2017 -...
Identity Gateway with the ForgeRock Identity Platform - So What’s New?
9.35am robert humphrey
Hermann Wimmer - ForgeRock Identity Live 2017 - Dusseldorf
Criteria for Effective Modern IAM Strategies (Gartner IAM 2018)
IoT Wonderland: Understanding the Magic of OAuth2 Device Registration Flow
Managing Identity without Boundaries
Catalyst 2015: Patrick Harding
HSBC - ForgeRock Identity Summit 2017 Dusseldorf
Hybrid IAM: Fuelling Agility in the Cloud Transformation Journey | Gartner IA...
Identity-Defined Privacay & Security for Internet of Things
Standard Based API Security, Access Control and AI Based Attack - API Days Pa...
Ping Identity
Ad

Similar to Security On The Edge - A New Way To Think About Securing the Internet of Things (20)

PPTX
Identity Live Paris 2017 | Monetising Digital Customer Relationships
PDF
How to Make Your IoT Devices Secure, Act Autonomously & Trusted Subjects
PDF
The Future is Now: What’s New in ForgeRock Access Management
PDF
The Future is Now: What’s New in ForgeRock Identity Management
PDF
The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...
PDF
The ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
PDF
Market Study on Mobile Authentication
PPTX
IoT Saturday PN 2019 - Eurotech
PDF
how to implement an IoT architecture
PPTX
Cisco on Distributed Ledgers & Blockchain
PDF
No IoT Without Identity
PDF
WISekey IoT Technologies Presentation
PPTX
Enterprise Mobility: Microsoft Cloud OS Roadshow
PDF
“Your Security, More Simple.” by utilizing FIDO Authentication
PPTX
Victor Ake and Chris Kawalek - ForgeRock Identity Live 2017 - Dusseldorf
PDF
The Future of Authentication for IoT
PPTX
Identity Live Paris 2017 | Mike Ellis
PDF
CIS14: FIDO 101 (What, Why and Wherefore of FIDO)
PDF
Beyond username and password it's continuous authorization webinar
PDF
Mobile Payment Security with CA Rapid App Security
Identity Live Paris 2017 | Monetising Digital Customer Relationships
How to Make Your IoT Devices Secure, Act Autonomously & Trusted Subjects
The Future is Now: What’s New in ForgeRock Access Management
The Future is Now: What’s New in ForgeRock Identity Management
The Value of User and Data Centricity Beyond IoT Devices: Stein Myrseth and G...
The ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
Market Study on Mobile Authentication
IoT Saturday PN 2019 - Eurotech
how to implement an IoT architecture
Cisco on Distributed Ledgers & Blockchain
No IoT Without Identity
WISekey IoT Technologies Presentation
Enterprise Mobility: Microsoft Cloud OS Roadshow
“Your Security, More Simple.” by utilizing FIDO Authentication
Victor Ake and Chris Kawalek - ForgeRock Identity Live 2017 - Dusseldorf
The Future of Authentication for IoT
Identity Live Paris 2017 | Mike Ellis
CIS14: FIDO 101 (What, Why and Wherefore of FIDO)
Beyond username and password it's continuous authorization webinar
Mobile Payment Security with CA Rapid App Security
Ad

More from ForgeRock (20)

PDF
Digital Identities in the Internet of Things - Securely Manage Devices at Scale
PPTX
Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
PDF
Identity Live Sydney: Identity Management - A Strategic Opportunity
PDF
Identity Live Singapore: Transform Your Cybersecurity Capability
PDF
Identity Live Singapore 2018 Keynote Presentation
PDF
Identity Live Sydney 2018 Keynote Presentation
PDF
Identity Live Singapore: Just Ask 'Em
PDF
Identity Live Singapore: Building Trust & Privacy in a Connected Society
PDF
Identity Live Sydney: Intelligent Authentication
PDF
Identity Live Sydney: Building Trust and Privacy in a Connected Society
PDF
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
PPTX
Get the Exact Identity Solution You Need - In the Cloud - Overview
PDF
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
PDF
Opening Keynote (Identity Live Berlin 2018)
PDF
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
PDF
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
PDF
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
PDF
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
PDF
Shift from GDPR readiness to sustained compliance to improve your business an...
PDF
Intelligent Authentication (Identity Live Berlin 2018)
Digital Identities in the Internet of Things - Securely Manage Devices at Scale
Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
Identity Live Sydney: Identity Management - A Strategic Opportunity
Identity Live Singapore: Transform Your Cybersecurity Capability
Identity Live Singapore 2018 Keynote Presentation
Identity Live Sydney 2018 Keynote Presentation
Identity Live Singapore: Just Ask 'Em
Identity Live Singapore: Building Trust & Privacy in a Connected Society
Identity Live Sydney: Intelligent Authentication
Identity Live Sydney: Building Trust and Privacy in a Connected Society
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
Get the Exact Identity Solution You Need - In the Cloud - Overview
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
Opening Keynote (Identity Live Berlin 2018)
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
Shift from GDPR readiness to sustained compliance to improve your business an...
Intelligent Authentication (Identity Live Berlin 2018)

Recently uploaded (20)

PPT
“AI and Expert System Decision Support & Business Intelligence Systems”
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PDF
Electronic commerce courselecture one. Pdf
PPTX
Big Data Technologies - Introduction.pptx
PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PPTX
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PDF
Network Security Unit 5.pdf for BCA BBA.
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PPTX
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
PPTX
20250228 LYD VKU AI Blended-Learning.pptx
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PPTX
A Presentation on Artificial Intelligence
PPTX
Cloud computing and distributed systems.
PDF
Encapsulation_ Review paper, used for researhc scholars
PDF
Encapsulation theory and applications.pdf
PDF
cuic standard and advanced reporting.pdf
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
“AI and Expert System Decision Support & Business Intelligence Systems”
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Advanced methodologies resolving dimensionality complications for autism neur...
Electronic commerce courselecture one. Pdf
Big Data Technologies - Introduction.pptx
Building Integrated photovoltaic BIPV_UPV.pdf
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
Network Security Unit 5.pdf for BCA BBA.
Digital-Transformation-Roadmap-for-Companies.pptx
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
20250228 LYD VKU AI Blended-Learning.pptx
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
A Presentation on Artificial Intelligence
Cloud computing and distributed systems.
Encapsulation_ Review paper, used for researhc scholars
Encapsulation theory and applications.pdf
cuic standard and advanced reporting.pdf
Dropbox Q2 2025 Financial Results & Investor Presentation

Security On The Edge - A New Way To Think About Securing the Internet of Things

  • 1. © 2017 ForgeRock. All rights reserved. Security On The Edge A New Way To Think About Securing the Internet of Things Ashley Stevenson – Identity Technology Director, ForgeRock Chris Kawalek – Product Marketing Director, ForgeRock
  • 2. © 2017 ForgeRock. All rights reserved. This technology preview contains descriptions of planned features and functionality, please refer to the product documentation for full details of included features.
  • 3. © 2017 ForgeRock. All rights reserved. 2010 Founded in Norway 10 Offices worldwide with headquarters in San Francisco 420+ Employees 720+ Customers 50% Americas / 50% International commercial revenue 30+ Countries 1.2+ Billion Identities ForgeRock The leading, next-generation, identity security software platform, driving digital transformation
  • 4. © 2017 ForgeRock. All rights reserved. Identity Evolution Employees Partners Mobile Customers IoT / Edge Relationships Legacy Identity Customer Identity Relational Identity
  • 5. © 2017 ForgeRock. All rights reserved. Everyone And Every Thing Identity For Identity Relationship Management
  • 6. © 2017 ForgeRock. All rights reserved. People Cars Cloud Services Sensors Software Infrastructure
  • 7. © 2017 ForgeRock. All rights reserved. Authorization Federation Identity Workflow Self Service Authentication Identity Synchronization Adaptive Risk Identity Store User-Managed Access Identity Gateway ForgeRock Identity Platform Social Identity Identity Proxy ForgeRock Identity Edge Controller ForgeRock Identity Message Broker ForgeRock Edge Security
  • 8. © 2017 ForgeRock. All rights reserved. IoT Is More Than You Think… Smart Home Retail Smart City Health Robotics Transportation Oil & Gas Manufacturing
  • 9. © 2017 ForgeRock. All rights reserved. The Trouble with Today’s IoT Approach •  Security is not “by design”, it takes a back seat to functionality •  Transport security is not enough •  Hard coded usernames and passwords, or management of thousands of PKI certificates is standard operating procedure •  There is no way to know if devices are authentic, or if a bad actor is siphoning or manipulating their data •  No trust between decoupled IoT platforms •  Data is used to make autonomous decisions Bad data = bad decisions
  • 10. © 2017 ForgeRock. All rights reserved. Introducing: ForgeRock Edge Security •  Ensure trust in IoT devices and their communications using a combination of strong cryptography and standards-based Identity technologies •  Hardware Root of Trust on supported devices and encryption •  Secure configuration and attestation of devices and services •  Rich, policy-based controls for securely managing IoT interactions •  Secure messaging support for protocols like MQTT and CoAP
  • 11. © 2017 ForgeRock. All rights reserved. How to Protect Devices “On The Edge” •  Establish the Root of Trust at the edge •  Provide a single security platform across edge to enterprise •  Establish trusted identities across ecosystems •  Share security context to enable rich relationships •  Enable secure and trusted onboarding, no human intervention
  • 12. © 2017 ForgeRock. All rights reserved. ForgeRock Identity Edge Controller •  Software for edge hardware •  Ensures authenticity and security •  No more hard coded usernames and passwords or managing thousands of PKI certifications •  Features hardware root of trust on supported architectures for chip-to-cloud security •  Simple on-boarding of devices with zero- configuration device discovery •  Manages secure credentials, data signing, data encryption, data tagging, device attestation, and more
  • 13. © 2017 ForgeRock. All rights reserved. ForgeRock Identity Message Broker •  Secure message authorization and translation, purpose-built for IoT •  Brings authentication and authorization policies to data streams generated by IoT devices •  Works as a “translator”, securely transforming simple IoT protocols to HTTP and WebSockets •  Leverages the full power of the ForgeRock Identity Platform
  • 14. © 2017 ForgeRock. All rights reserved. Providing personalized driver experience and trusted vehicle identities for connected cars
  • 15. © 2017 ForgeRock. All rights reserved. •  Authenticates drivers, passengers, and vehicles •  Allows for profile management in the cloud, personalization in the car •  Trusted identities for vehicles, their sensors, software and data with ForgeRock Identity Edge Controller THE CONNECTED CAR SOLUTION FOR AGL
  • 16. © 2017 ForgeRock. All rights reserved. Access ManagementProfile Management Identity Repository Identity Gateway FORGEROCK IDENTITY PLATFORM AGL IN-VEHICLE OS Application Framework App 1 App 2 App 3 Standards-based Identity Agent Bluetooth WiFi Identity Edge Controller
  • 17. © 2017 ForgeRock. All rights reserved. Access Management Identity Management Directory Services Identity Gateway FORGEROCK IDENTITY PLATFORM FORGEROCK EDGE SECURITY UNIFIED PLATFORM FORGEROCK IDENTITY MESSAGE BROKER FORGEROCK IDENTITY EDGE CONTROLER X
  • 18. © 2017 ForgeRock. All rights reserved. If It’s Connected, It Needs to be Secured Cargo ContainerEnergy Substation Smartphone Wearables Animals Shopping CartVehicles Bike Computer Smart Meter Stoplight Parking MeterSensorCameraOil BarrelForkliftBuildings Wind Turbine Gas Pump
  • 19. © 2017 ForgeRock. All rights reserved. For the latest information, join the ForgeRock Edge Security Early Access Program bit.ly/FR-Edge-EAP