Skip to content
Open access

Zero Trust Architecture for Industrial IoT Networks

Aug 2026 · International Journal of Innovative Science and Research Technology · 0 citations · 8 references

TL;DR

The study concludes that Zero Trust is most practical in IIoT when implemented incrementally, with OT safety and availability treated as first-class requirements and legacy assets protected through compensating controls rather than forced modernization.

Abstract

Industrial Internet of Things (IoT) networks connect sensors, programmable logic controllers (PLCs), supervisory control and data acquisition (SCADA) systems, enterprise platforms, and cloud services to support automation, monitoring, predictive maintenance, and data-driven decision-making. This connectivity also expands the attack surface of operational technology (OT), particularly where legacy equipment, remote access, heterogeneous protocols, and stringent availability and safety requirements coexist. This paper develops a Zero Trust Architecture (ZTA) tailored to IIoT environments. The proposed architecture combines strong device and user identity, continuous verification, least-privilege and attribute-based access control, micro-segmentation, secure gateways for legacy devices, encrypted communication, continuous monitoring, and risk-adaptive policy enforcement. A simulation-oriented evaluation framework is specified using a representative industrial network comprising field devices, PLCs, SCADA/HMI systems, an edge gateway, enterprise resources, and a remote maintenance user. The evaluation is designed to compare authorized and unauthorized access, lateral-movement attempts, malicious commands, and controller or gateway failures using security and performance metrics. The architecture is intended to contain compromise while preserving the availability and timing requirements of industrial processes. Importantly, the manuscript distinguishes the proposed evaluation framework from experimentally measured results: numerical performance values are not presented as empirical findings unless generated by an executable testbed. The study concludes that Zero Trust is most practical in IIoT when implemented incrementally, with OT safety and availability treated as first-class requirements and legacy assets protected through compensating controls rather than forced modernization.

Read PDF

Similar papers

#artificial intelligence Review Sep 2026

Trust in Edge-Enabled IoT Security: Features, Challenges and Research Directions

Providing autonomous intelligence, pervasive connectivity and usability to human life and industry has led to the emergence of the Internet of Things (IoT). To support time-sensitive and resource-constrained applications, IoT systems nowadays increasingly rely on edge computing. This brings computation and decision-mak...

Esin Ece Aydin, Şerif Bahtiyar, Gürkan Gür · 0 citations
Open access Sep 2026

CYBERSECURITY OF IoT DEVICES IN THE INTERNAL NETWORKS OF MILITARY UNITS AND ORGANIZATIONS

The digital transformation of the defense sector has expanded the use of Internet of Things devices in the internal networks of military units and organizations. These devices include IP cameras, access-control systems, biometric equipment, smart displays, multifunction printers, conferencing systems, building-manageme...

Unenbat Erdenesuvd, Nergui Bayartogtokh, Batbayar Densmaa · 0 citations

Automatic, Verifiable and Optimized Policy-based Security Enforcement for SDN-aware IoT networks

A novel methodology which leverages Maximum Satisfiability Modulo Theories (MaxSMT) to automatically compute a formally correct and optimized allocation scheme and configuration of SDN switches by refining security policies, user-defined or derived from detected attacks is proposed.

Daniele Bringhenti, Jalolliddin Yusupov, A. M. Zarca et al. · 8 citations
#federated learning Review Open access Sep 2026

Cyber Attacks in the Internet of Things (IoT) and Intelligent Defense Mechanisms

The Internet of Things (IoT) has connected billions of physical objects to the internet, enabling smarter homes, manufacturing, critical infrastructure, transportation, and healthcare. However, IoT ecosystems are increasingly vulnerable to cyberattacks due to the growing number of resource-limited devices, weak authent...

Esraa Ward, Seyed Amin Hosseini Seno · 0 citations
Open access Aug 2026

Blockchain-Assisted Authentication, Authorization, and Audit for MQTT-Based Smart-City IoT

This work evaluates blockchain and smart contracts as a complementary trust layer for MQTT-based smart-city IoT rather than as a replacement for transport-layer security, position blockchain as an audit and policy-enforcement component for MQTT-based IoT.

Rida Lkhluf, David Santo Orcero, F. J. Cañete · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.