
Defending industrial automation against cyberattacks 21 Apr 2024 at 22:00
By Thomas Vasen
Cyber security
Anybus
With reports of cyberattacks on the industrial sector becoming all too familiar, Thomas Vasen, Anybus Business Development Manager Network Security at HMS Networks, outlines five strategies companies can adopt to fortify their defenses and avoid becoming the latest victim.
Rise of cybersecurity attacks
Cybersecurity is rapidly becoming a significant concern in industrial automation. The World Economic Forum highlighted in 2023 that manufacturing is the sector most targeted to cyberattacks. Furthermore, Orange Cyberdefense reports that the manufacturing sector had Common Vulnerability Scoring System (CVSS) severity scores 33% higher than the global average. The increasing number of attacks on Industrial Control Systems (ICS) is particularly worrying. Gartner predicts a bleak future: by 2025, cyberattacks are expected to harm or endanger humans.
The time for action is now. Here are five strategies companies can adopt to effectively mitigate the risk of cyberattacks.
1. Understand that OT is not just another version of IT
The first step is to adopt the correct mindset. In the 1990s, Netheads vs Bellheads debated the future of telecommunications. While Bellheads advocated for traditional methods, Netheads argued that voice should be treated like any other data and transmitted over IP. Three decades later, Netheads' vision has prevailed, with voice being transmitted over the Internet like any other type of data. Users have even come to accept deterioration in call quality due to the increase in latency and frequently dropped packets. Today every phone call feels like an intercontinental one.
However, the situation with Operational Technology (OT) is fundamentally different. Unlike Information Technology (IT), OT cannot tolerate compromised quality and increased latency, as even minor disruptions can have catastrophic consequences. Treating OT as merely another version of IT is a serious mistake, as OT operates under distinct principles and requirements. While IT prioritizes data integrity and confidentiality, OT demands deterministic data and uptime assurance. This distinction is especially critical in industries like manufacturing, where even minor disruptions can lead to significant financial losses, material wastage, and operational downtime. In IT, occasional network downtime or data loss may be manageable inconveniences. However, in OT, a similar disruption can have far more severe consequences. Imagine if an ice cream machine were to malfunction due to a network outage or data inconsistency. Not only would the production process grind to a halt, but the perishable ingredients would spoil, resulting in financial losses and wasted ice cream. And nobody wants that.
Figure 1: In OT, network downtime would lead to production processes grinding to a halt, resulting in financial losses, and wasted ingredients or materials.
So, while it's natural for OT to adopt IT technologies (there are lots of benefits of using Industrial Ethernet over traditional fieldbus networks) it must be acknowledged that out of the box IT does not satisfy OT's requirements. Hence, the rise of industrial communications protocols, and as such, the need for specialized OT security products and solutions.
2. IT and OT must work together While the Chief Information Security Officers (CISO) is under scrutiny and manages the security budget, often including that for OT, it is the operations manager who bears the responsibility of ensuring uninterrupted production in the factory. This situation creates an inherent conflict due to differing priorities. IT professionals adhere to the CIA framework, prioritizing Confidentiality first, followed by Integrity and then Availability. In contrast, operational personnel prioritize Safety, followed by Availability, Integrity, and lastly, Confidentiality - forming the (S)AIC sequence.
This dichotomy results in conflict and friction, yet the underlying shared objective remains clear: safeguarding business continuity. Recognizing this common goal, CISO (IT) and the Operations Manager (OT) must collaborate to navigate these challenges and harmonize their approaches to secure business continuity.
3. Develop a comprehensive OT security plan Securing OT environments requires a proactive and customized approach to the unique challenges of industrial operations. Companies must conduct a thorough identification and assessment of their assets, understanding the risks associated with each machine. Rapid detection of anomalies is important, but more crucial is the implementation of robust protective measures to safeguard these assets. Having a comprehensive recovery plan in place and implementing measures to minimize impact is also important and is commonly recommended by experts such as those from ISA/IEC 62334.
Currently, many companies focus on asset inventory and threat detection. While these are important, they are not sufficient to protect OT environments. Companies must also implement measures to protect their assets.
4. Protect yourself with Network Segmentation Network segmentation is an excellent way to secure OT environments. By dividing networks into zones and separating with conduits providing access controls, companies can bolster security and prevent unauthorized access. The benefits of network segmentation include:
Protection from outside traffic - Separation from IT!
Inspection of inside traffic - Downtime is often caused by internal threats, intentional, or unintentional.
Guarding remote access traffic - Allowing remote maintenance can be critical for your uptime, but it can also be a backdoor for threats to enter your network. Take granular control of the traffic flow.
Isolation of visiting workers - Know what
Most recent headlines
02/04/2025
Pedro Pascal appears in Anna Boden and Ryan Fleck's Freaky Tales, which pr...
02/04/2025
With a focus on safeguarding premium content value and authenticity, NAGRA highlighted key areas of interest in the media and entertainment industry. Of note wa...
02/04/2025
In our latest blog, gain insights into the media industry's challenges and how NAGRA Active Streaming Protection provides a framework for holistic content p...
02/04/2025
In our latest blog Tim Pearson considers Generative AI and the opportunities it presents as well as some of the challenges it can cause for media, entertainment...
02/04/2025
Learn valuable insights into strengthening your content protection strategy and discover how multi-DRM helped transform content security for leading post-produc...
02/04/2025
This year's IBC 2024 was an incredible opportunity to connect with industry leaders and innovators, and the conversations around consumer cybersecurity were...
02/04/2025
As a lifelong sports enthusiast from the U.S., I've always been captivated by how sports can unite people. From the roar of the crowd during major events to...
02/04/2025
In our latest blog, Tim Pearson caught up with Julian Williams at Anthropic to explore the science of conversations and how the increasing adoption of generativ...
02/04/2025
In our latest blog, Tim Pearson considers recent industry successes in dismantling large-scale pirate operations and what defensive steps video service provider...
02/04/2025
In our latest blog, Laura Rognoni explores OpenTV ENTera, the latest innovation from NAGRAVISION that's designed as a blueprint for today's streaming se...
02/04/2025
Scott Alexander, President of Missile Solutions, Aerojet Rocketdyne, L3Harris, writes in Breaking Defense: L3Harris is building the factories of the future that...
02/04/2025
Calrec's Argo S ramps up Raycom's output for OTT, FAST and OTA channels North Carolina's Raycom Sports has upgraded its flagship RHD1 mobile product...
02/04/2025
Calrec expands ecosystem at NAB 2025 giving broadcasters access to dynamic workflows and ultimate flexibility Helping broadcasters meet the shifting needs of me...
02/04/2025
aconnic AG (ISIN: DE000A0LBKW6), Munich, is launching a new 10 Gigabit Carrier Ethernet system for industrial application. The ACCEED 4108 DR provides full MEF ...
02/04/2025
TV Tech: What do you anticipate will be the most significant technology trends at the 2025 NAB Show?...
02/04/2025
SKY and DGO, the streaming and live TV platforms of DIRECTV Latin America and SKY Brasil, are moving forward with consolidating the highest-level experience fo...
02/04/2025
IABM is delivering a strategic transformation at NAB Show designed to fiercely champion members amidst global, industry challenges, elevating and innovating to ...
02/04/2025
Following a well-attended February 27th-28th GovSatCom in Luxembourg, Hiltron Communications promoted its wide range of satellite communication products, system...
02/04/2025
MASV, the fastest large file transfer platform for media professionals, is revolutionizing enterprise media workflows by enabling faster, more reliable, and sca...
02/04/2025
AgileTV, a leader in TV and video technology solutions, is partnering with CANAL Germany, the leading B2B TV-licensing provider in Germany, to introduce "The E...
02/04/2025
New model leverages 20Gbps USB 3.2 Gen 2x2 interface to capture 12G SDI without a driver or external power
Magewell, developer of innovative, high-performance ...
02/04/2025
MwareTV, a leading cloud-based multi-tenant TV platform provider, is set to launch a ground-breaking new toolset at NAB 2025 (booth W3457, Las Vegas Convention ...
02/04/2025
LiveU will spotlight its latest technical collaborations around efficient story-centric workflows and cloud collaboration in its expanded EcoSystem at the upcom...
02/04/2025
Live Media Group, a leader in live broadcast solutions and event production, has named Ryan Hatch as Vice President, Strategic Accounts, effective April 1st. In...
02/04/2025
New AI Innovation in Industry-Leading Adobe Premiere Pro Empowers Video Pros to ...
02/04/2025
DigitalGlue and Symply Partner to Deliver Next-Generation Storage Solutions for ...
02/04/2025
Music Therapy Students Awarded First Internship Stipend from Children's Musi...
02/04/2025
WASHINGTON The National Association of Broadcasters (NAB) will present the Television Chairman's Award to renowned magicians and television personalities, P...
02/04/2025
MINNEAPOLIS-ST. PAUL The Minnesota Twin have inked a new, multi-year partnership with Gray Media and FOX 9, KMSP, to broadcast 10 Tuesday night regular season g...
02/04/2025
SAN JOSE Adobe today announced the official launch of its Generative Extend AI tool for Premiere Pro. The feature announced at its Adobe Max conference last fa...
02/04/2025
Sally Wallington, SVP of sales at Pebble, explores the mission-critical considerations broadcasters should make when choosing a playout provider
Sponsored Cont...
02/04/2025
TVBEurope meets Tim Claman, chief product officer at Avid, to discuss the compan...
02/04/2025
Submissions will be accepted up until 23:59 PST on 2nd April
By Jenny Priestley
Published: March 24, 2025 Updated: April 2, 2025
Submissions will be acc...
02/04/2025
Leclerc will work with group members to explore and champion UK digital media distribution via broadcast, IP, mobile or hybrid delivery
By Jenny Priestley
Pu...
02/04/2025
Global media technology company Backlight will showcase new advancements in AI-driven automation, media management, and live content production at the 2025 NAB ...
02/04/2025
Radio Marca, a Spanish radio broadcaster transmitting round-the-clock sports coverage, has chosen DHD audio mixers and routing as the heart of recently expanded...
02/04/2025
As media organizations increasingly rely on IP-based media production and distribution, security remains a critical challenge. Net Insight is addressing these i...
02/04/2025
Lightware, a leader in connectivity solutions for the professional AV industry, has officially opened its new global headquarters at the HOP Technology Office P...
02/04/2025
Groundbreaking Product Integration Enables Pixotope Customers to Add ST 2110 Support to Existing or New Solutions
Matrox Video today announced that Pixotope, a...
02/04/2025
V-Nova, best known for MPEG-5 LCEVC, joins the Access Advance program to contribute its essential HEVC patents
Inaugural participation underscores V-Nova'...
02/04/2025
Amagi, a cloud-based SaaS solutions provider for broadcast and streaming TV (CTV), announced that it has been chosen by Sports Studio, Inc, a premier sports pla...
02/04/2025
Helping broadcasters meet the shifting needs of media consumption, Calrec is showcasing an expanded suite of interconnected technologies at NAB 2025, on Booth #...
02/04/2025
CYPRESS, Calif FOR-A America will showcase its new FOR-A MixBoard powered by ClassX at the 2025 NAB Show, April 6-9 in Las Vegas. The FOR-A MixBoard is a fully...
02/04/2025
As pro sports teams' engagements with TV station groups explode into a historic search for a successor to the pay-TV distribution model, they're generat...
02/04/2025
At the 2025 NAB Show, April 6-9 in Las Vegas, Cinegy will showcase its strategic partnership with Scale Logic, a provider of high-performance storage and workfl...
02/04/2025
CESSON-SEVIGNE, France Broadpeak has announced that it has launched EdgePeak, a video and data cache software engine. The new solution is designed to help opera...
02/04/2025
Camera tracking and virtual production technology provider Mo-Sys has announced it will be showcasing its new StarTracker Mini at the 2025 NAB Show between Apri...
02/04/2025
Telos Alliance and Telestream Announce Integration of Audio and Video Processin...
02/04/2025
NAB 2025 Preview: Audio To Be a Major Presence Across the Show Conferences, vendor exhibits cover a wide range of issues and products By Dan Daley, Audio Edito...
02/04/2025
NHL Inks 12-year, $7.7B Deal With Rogers Communications to Tie Up Media Rights i...