User Manual

Overview
6 | 19
A6V11852371_en_h
2 Overview
The convergence of software, data and connected devices, commonly referred to
as the Internet of Things (IoT), brings new opportunities to the building industry by
unlocking new value like real time operations, optimization and prescriptive
analytics. Building Operator is a SaaS (Software as a Service) solution that
enables such new service opportunities for smart buildings. This technological
transformation also introduces a wide array of security threats that require a
layered defense approach to detect, respond and remedy at all levels of threat. In
addition, the connectivity to the cloud also means identifying and mitigating the
challenges that come with exposing building data from the local network to the
cloud.
Fig. 1: Overview
Cybersecurity policies must preserve three things about data: confidentiality,
integrity, and availability. Only those with the right to view data should have access
to it; those who access it need to rely on its accuracy; and it must be easily
accessed when and where needed. It is critical to recognize that Security is a
shared responsibility. Security in any IoT/cloud is not solely under the purview of
the Cloud infrastructure and Cloud application providers, but also under the
purview of on-premise IT/OT network managers and users.
Mitigating cybersecurity risks for Building Operator as a solution cuts across all the
stated entities, reflected in the yellow-green shaded area of the illustration above
where Connect Device (gateway) sits within the on-premise IT/OT network
exposing data (via the internet) to the Building Operator application running on the
cloud, and remote client device (PC or mobile device with browser) connects (via
the internet) to the cloud application.