{"id":"https://openalex.org/W4220781537","doi":"https://doi.org/10.1145/3503920","title":"Emerging Cybersecurity Capability Gaps in the Industrial Internet of Things: Overview and Research Agenda","display_name":"Emerging Cybersecurity Capability Gaps in the Industrial Internet of Things: Overview and Research Agenda","publication_year":2022,"publication_date":"2022-03-28","ids":{"openalex":"https://openalex.org/W4220781537","doi":"https://doi.org/10.1145/3503920"},"language":"en","primary_location":{"id":"doi:10.1145/3503920","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3503920","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3503920","source":{"id":"https://openalex.org/S4210235901","display_name":"Digital Threats Research and Practice","issn_l":"2576-5337","issn":["2576-5337","2692-1626"],"is_oa":true,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Digital Threats: Research and Practice","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"diamond","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3503920","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5037114496","display_name":"Louise Axon","orcid":"https://orcid.org/0000-0001-5979-7630"},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":true,"raw_author_name":"Louise Axon","raw_affiliation_strings":["University of Oxford, Oxford, UK"],"affiliations":[{"raw_affiliation_string":"University of Oxford, Oxford, UK","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5069275988","display_name":"Katherine Fletcher","orcid":"https://orcid.org/0000-0003-3256-839X"},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Katherine Fletcher","raw_affiliation_strings":["University of Oxford, Oxford, UK"],"affiliations":[{"raw_affiliation_string":"University of Oxford, Oxford, UK","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5020426640","display_name":"Arianna Schuler Scott","orcid":null},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Arianna Schuler Scott","raw_affiliation_strings":["University of Oxford, Oxford, UK"],"affiliations":[{"raw_affiliation_string":"University of Oxford, Oxford, UK","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5064161880","display_name":"Marcel Stolz","orcid":"https://orcid.org/0000-0001-7330-8688"},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Marcel Stolz","raw_affiliation_strings":["University of Oxford, Oxford, UK"],"affiliations":[{"raw_affiliation_string":"University of Oxford, Oxford, UK","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5097053553","display_name":"Robert Hannigan","orcid":null},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Robert Hannigan","raw_affiliation_strings":["University of Oxford, Oxford, UK"],"affiliations":[{"raw_affiliation_string":"University of Oxford, Oxford, UK","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5072480613","display_name":"Ali El Kaafarani","orcid":null},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Ali El Kaafarani","raw_affiliation_strings":["University of Oxford, Oxford, UK"],"affiliations":[{"raw_affiliation_string":"University of Oxford, Oxford, UK","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5071431013","display_name":"Michael Goldsmith","orcid":"https://orcid.org/0000-0001-9333-6731"},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Michael Goldsmith","raw_affiliation_strings":["University of Oxford, Oxford, UK"],"affiliations":[{"raw_affiliation_string":"University of Oxford, Oxford, UK","institution_ids":["https://openalex.org/I40120149"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5004437304","display_name":"Sadie Creese","orcid":"https://orcid.org/0000-0002-2414-9657"},"institutions":[{"id":"https://openalex.org/I40120149","display_name":"University of Oxford","ror":"https://ror.org/052gg0110","country_code":"GB","type":"education","lineage":["https://openalex.org/I40120149"]}],"countries":["GB"],"is_corresponding":false,"raw_author_name":"Sadie Creese","raw_affiliation_strings":["University of Oxford, Oxford, UK"],"affiliations":[{"raw_affiliation_string":"University of Oxford, Oxford, UK","institution_ids":["https://openalex.org/I40120149"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":8,"corresponding_author_ids":["https://openalex.org/A5037114496"],"corresponding_institution_ids":["https://openalex.org/I40120149"],"apc_list":null,"apc_paid":null,"fwci":3.3346,"has_fulltext":true,"cited_by_count":13,"citation_normalized_percentile":{"value":0.93073485,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":100},"biblio":{"volume":"3","issue":"4","first_page":"1","last_page":"27"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9958000183105469,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9958000183105469,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10917","display_name":"Smart Grid Security and Resilience","score":0.9955000281333923,"subfield":{"id":"https://openalex.org/subfields/2207","display_name":"Control and Systems Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10763","display_name":"Digital Transformation in Industry","score":0.9925000071525574,"subfield":{"id":"https://openalex.org/subfields/2209","display_name":"Industrial and Manufacturing Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6852207183837891},{"id":"https://openalex.org/keywords/harm","display_name":"Harm","score":0.6237173676490784},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.5763119459152222},{"id":"https://openalex.org/keywords/critical-infrastructure","display_name":"Critical infrastructure","score":0.551015317440033},{"id":"https://openalex.org/keywords/industrial-internet","display_name":"Industrial Internet","score":0.4993166923522949},{"id":"https://openalex.org/keywords/internet-of-things","display_name":"Internet of Things","score":0.47537150979042053},{"id":"https://openalex.org/keywords/risk-analysis","display_name":"Risk analysis (engineering)","score":0.46564826369285583},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.45579418540000916},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.44855672121047974},{"id":"https://openalex.org/keywords/emerging-technologies","display_name":"Emerging technologies","score":0.4349583685398102},{"id":"https://openalex.org/keywords/critical-infrastructure-protection","display_name":"Critical infrastructure protection","score":0.43188905715942383},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.39384686946868896},{"id":"https://openalex.org/keywords/political-science","display_name":"Political science","score":0.17243722081184387}],"concepts":[{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6852207183837891},{"id":"https://openalex.org/C2777363581","wikidata":"https://www.wikidata.org/wiki/Q15098235","display_name":"Harm","level":2,"score":0.6237173676490784},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.5763119459152222},{"id":"https://openalex.org/C29852176","wikidata":"https://www.wikidata.org/wiki/Q373338","display_name":"Critical infrastructure","level":2,"score":0.551015317440033},{"id":"https://openalex.org/C202839342","wikidata":"https://www.wikidata.org/wiki/Q60740481","display_name":"Industrial Internet","level":3,"score":0.4993166923522949},{"id":"https://openalex.org/C81860439","wikidata":"https://www.wikidata.org/wiki/Q251212","display_name":"Internet of Things","level":2,"score":0.47537150979042053},{"id":"https://openalex.org/C112930515","wikidata":"https://www.wikidata.org/wiki/Q4389547","display_name":"Risk analysis (engineering)","level":1,"score":0.46564826369285583},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.45579418540000916},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.44855672121047974},{"id":"https://openalex.org/C207267971","wikidata":"https://www.wikidata.org/wiki/Q120208","display_name":"Emerging technologies","level":2,"score":0.4349583685398102},{"id":"https://openalex.org/C2779033394","wikidata":"https://www.wikidata.org/wiki/Q5186733","display_name":"Critical infrastructure protection","level":3,"score":0.43188905715942383},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.39384686946868896},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.17243722081184387},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.0},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.1145/3503920","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3503920","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3503920","source":{"id":"https://openalex.org/S4210235901","display_name":"Digital Threats Research and Practice","issn_l":"2576-5337","issn":["2576-5337","2692-1626"],"is_oa":true,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Digital Threats: Research and Practice","raw_type":"journal-article"},{"id":"pmh:oai:ora.ox.ac.uk:uuid:b8063e1f-0a1b-4601-b72d-2af77894d5ec","is_oa":true,"landing_page_url":null,"pdf_url":"https://ora.ox.ac.uk/objects/uuid:b8063e1f-0a1b-4601-b72d-2af77894d5ec","source":{"id":"https://openalex.org/S4306402636","display_name":"Oxford University Research Archive (ORA) (University of Oxford)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I40120149","host_organization_name":"University of Oxford","host_organization_lineage":["https://openalex.org/I40120149"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Symplectic Elements","raw_type":"Journal article"},{"id":"pmh:oai:vtechworks.lib.vt.edu:10919/112284","is_oa":false,"landing_page_url":"http://hdl.handle.net/10919/112284","pdf_url":null,"source":{"id":"https://openalex.org/S4306400248","display_name":"VTechWorks (Virginia Tech)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I859038795","host_organization_name":"Virginia Tech","host_organization_lineage":["https://openalex.org/I859038795"],"host_organization_lineage_names":[],"type":"repository"},"license":"public-domain","license_id":"https://openalex.org/licenses/public-domain","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Article - Refereed"}],"best_oa_location":{"id":"doi:10.1145/3503920","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3503920","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3503920","source":{"id":"https://openalex.org/S4210235901","display_name":"Digital Threats Research and Practice","issn_l":"2576-5337","issn":["2576-5337","2692-1626"],"is_oa":true,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Digital Threats: Research and Practice","raw_type":"journal-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/9","score":0.6600000262260437,"display_name":"Industry, innovation and infrastructure"}],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4220781537.pdf","grobid_xml":"https://content.openalex.org/works/W4220781537.grobid-xml"},"referenced_works_count":70,"referenced_works":["https://openalex.org/W1586313368","https://openalex.org/W2039148409","https://openalex.org/W2065955975","https://openalex.org/W2170653128","https://openalex.org/W2244219004","https://openalex.org/W2343571917","https://openalex.org/W2407991977","https://openalex.org/W2462830067","https://openalex.org/W2516092834","https://openalex.org/W2549564909","https://openalex.org/W2590373591","https://openalex.org/W2591507999","https://openalex.org/W2615255560","https://openalex.org/W2622330081","https://openalex.org/W2623796653","https://openalex.org/W2744532080","https://openalex.org/W2766717610","https://openalex.org/W2776530550","https://openalex.org/W2777186602","https://openalex.org/W2780745724","https://openalex.org/W2791173246","https://openalex.org/W2791405606","https://openalex.org/W2792015048","https://openalex.org/W2793013392","https://openalex.org/W2796215551","https://openalex.org/W2796296808","https://openalex.org/W2799537471","https://openalex.org/W2804368608","https://openalex.org/W2805611890","https://openalex.org/W2807184217","https://openalex.org/W2810579294","https://openalex.org/W2887949427","https://openalex.org/W2891512841","https://openalex.org/W2892832361","https://openalex.org/W2894118392","https://openalex.org/W2895400994","https://openalex.org/W2897475131","https://openalex.org/W2898100591","https://openalex.org/W2914418087","https://openalex.org/W2918992226","https://openalex.org/W2921576568","https://openalex.org/W2940895343","https://openalex.org/W2948100736","https://openalex.org/W2964156143","https://openalex.org/W2966097089","https://openalex.org/W2974608163","https://openalex.org/W2981575511","https://openalex.org/W2997035848","https://openalex.org/W2999414741","https://openalex.org/W2999628001","https://openalex.org/W3003199000","https://openalex.org/W3023937626","https://openalex.org/W3028730261","https://openalex.org/W3029172965","https://openalex.org/W3032137791","https://openalex.org/W3039318158","https://openalex.org/W3044855437","https://openalex.org/W3049401039","https://openalex.org/W3097580951","https://openalex.org/W3099219106","https://openalex.org/W3110647387","https://openalex.org/W3111986485","https://openalex.org/W3118525300","https://openalex.org/W3123855322","https://openalex.org/W3189894325","https://openalex.org/W4235880276","https://openalex.org/W4236570116","https://openalex.org/W4247773991","https://openalex.org/W4389627587","https://openalex.org/W6798874277"],"related_works":["https://openalex.org/W2085358621","https://openalex.org/W3076529025","https://openalex.org/W3045199176","https://openalex.org/W4386971846","https://openalex.org/W3004302778","https://openalex.org/W2184280487","https://openalex.org/W578380379","https://openalex.org/W3047124310","https://openalex.org/W4386959929","https://openalex.org/W3128859700"],"abstract_inverted_index":{"Internet":[0],"of":[1,14,66,124,155,174,177],"Things":[2],"(IoT)-enabled":[3],"devices":[4],"are":[5,71,115,188],"becoming":[6],"integrated":[7],"into":[8],"a":[9,97,122,133,169,183],"significant":[10,170],"and":[11,32,39,46,59,88,161,195],"increasing":[12],"proportion":[13],"critical":[15],"infrastructures,":[16],"changing":[17,68],"the":[18,50,93,102,113,152,175],"cybersecurity-risk":[19],"landscape.":[20],"Risk":[21],"is":[22,168],"being":[23],"introduced":[24],"to":[25,137,140,144,189],"industry":[26,99],"sectors":[27],"such":[28],"as":[29],"transport,":[30],"energy,":[31],"manufacturing,":[33],"with":[34,96,126],"new":[35],"attack":[36],"surfaces":[37],"exposed":[38],"potential":[40],"for":[41,193],"increased":[42],"harm.":[43],"Furthermore,":[44,163],"risk":[45,69],"harm":[47],"arising":[48],"in":[49,62,92,112,172,197],"Industrial":[51],"IoT":[52],"(IIoT)":[53],"could":[54],"propagate":[55],"across":[56],"interconnected":[57],"organisations":[58],"sectors,":[60],"resulting":[61],"systemic":[63,178],"risk.":[64],"Aspects":[65],"this":[67,82,148],"landscape":[70],"not":[72],"addressed":[73],"by":[74],"current":[75,87],"cybersecurity":[76,90,100,194],"approaches,":[77],"leaving":[78],"cybersecurity-capability":[79],"gaps.":[80],"In":[81],"article,":[83],"we":[84,164,187],"show":[85],"how":[86],"emerging":[89,111],"needs":[91],"IIoT":[94,114,156,198],"align":[95],"key":[98,108,184],"standard,":[101],"NIST":[103],"Cyber":[104],"Security":[105],"Framework.":[106],"The":[107],"capability":[109],"gaps":[110],"identified":[116],"based":[117],"on":[118],"our":[119],"findings":[120],"from":[121],"series":[123],"workshops":[125],"over":[127],"100":[128],"expert":[129],"participants.":[130],"We":[131],"present":[132],"comprehensive":[134],"research":[135,142,149],"agenda":[136,150],"enable":[138],"researchers":[139],"prioritise":[141],"focus":[143],"address":[145],"these":[146],"gaps;":[147],"covers":[151],"full":[153],"lifecycle":[154],"development":[157],"(design,":[158],"implementation,":[159],"use":[160],"decommission).":[162],"conclude":[165],"that":[166],"there":[167],"gap":[171],"understanding":[173],"nature":[176],"risk,":[179],"which":[180],"should":[181],"be":[182],"priority":[185],"if":[186],"develop":[190],"effective":[191],"solutions":[192],"safety":[196],"environments.":[199]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":6},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
