IT in Manufacturing


A false sense of cybersecurity in industrial control systems

October 2017 IT in Manufacturing

“It won’t happen to us. What would anyone gain from attacking us?” this is all too often the message from companies, who have the mistaken impression that they are safe from cyber criminals and the huge damage that they can cause from cyberattacks. “I have an endpoint security solution and a firewall, so I’m safe.” Unfortunately, in the industries of today’s modern world there is no such thing as total and complete cybersecurity, as the most secure computer, the most secure HMI and the most secure industrial control system (ICS) switch, are those still sealed in boxes.

Although companies think that they are doing a better job at protecting and securing their data and operations on their ICS, cyber-attacks are becoming more sophisticated and they are increasingly targeting control systems. While some companies have made considerable security improvements, they have not kept up to date with today's well funded and determined cyber criminals. As much as companies have done to improve their ICS security posture, the cyber-criminal gangs have done better. ICS security incidents are up and technologies like cloud, Big Data, IIoT and Bluetooth are being embraced before the potential risks have been identified and addressed.

Cybersecurity is also no longer just a technology or an ‘IT issue’; it has become a fundamental business issue. Business needs to understand that they have to start incorporating cybersecurity into their future plans and strategy. With the business driving the industry towards the cyber-physical realm with more interconnected systems, the risks are increasing exponentially. The positives for these interconnected systems far outweigh the negatives, and companies are adopting these ‘new technologies’ in order to gain a competitive edge in the market by helping to improve productivity and enhance system controls. But failure to incorporate an adequate cybersecurity strategy, failure to have a resilient back-up plan, will result in your company becoming increasingly vulnerable to a growing number of cyber threats.

To put this into perspective, if your company is a victim of a cyberattack, how would you and your colleagues respond to that attack? Are you confident that the critical assets in your control systems have been backed up, and more importantly, are you sure that all of the critical assets have been correctly identified? Do you trust that your business continuity plan will have your company up and running again in a predefined space of time, in order to continue production? These are some of the questions that need to be tabled at both board and at senior management level.

Though technology plays a critical role in ICS cybersecurity, it does not help to think that by implementing a cybersecurity solution you will no longer be at risk. Anyone who tells you that they have a silver bullet solution regarding ICS cybersecurity is trying to sell you magic beans. The cybersecurity risks come from both external parties (cybercriminal) and internal entities (from staff), and attacks can be deliberate, targeted, technology issues or just simple carelessness. Therefore, the cybersecurity approach in ICS environments needs to be holistic and layered. It is a combination of technology, adequate training to both your security team members and general staff, designing a secure ICS network and enforcing policies and procedures.

Cybercrime is nothing new, but incidents specifically targeted at operational technology (scada systems for instance), is making the headlines like never before with companies across the globe suffering high profile and damaging breaches. Locally within South Africa (and Africa), we have been fortunate so far, as cyberattacks launched locally against manufacturing, mining and critical infrastructure, have been minimal with only a few reported incidents, but the scary stat is that these attacks are increasing.

For more information contact Tommy Thompson, Nclose, +27 (0)11 463 0096, [email protected], www.nclose.com





Share this article:
Share via emailShare via LinkedInPrint this page

Further reading:

Platform for integrated digital mine management
IT in Manufacturing
Becker Mining launches platform for integrated digital mine management

Read more...
The reimagined building of today and tomorrow
Schneider Electric South Africa IT in Manufacturing
Retrofitting a building is a truly practical way of achieving energy efficiency, compliance and long-term competitiveness.

Read more...
The Konecranes portal, a benchmark in data supply
IT in Manufacturing
The newly launched Konecranes Portal takes online communications to the next level through its single point of access to its digital customer platforms.

Read more...
End-to-end security across IT and OT environments
IT in Manufacturing
Siemens is collaborating with Accenture to offer 24/7 managed IT/OT security operations centre services, providing end-to-end security across IT and OT environments.

Read more...
Mitigating cybersecurity threats
IT in Manufacturing
Wesco is a world leader in electrical, communications and utility distribution and supply chain services and a member of the Rockwell Automation PartnerNetwork programme. To build their cybersecurity portfolio, Wesco turned to two Rockwell Automation offerings, a security posture survey and threat detection services.

Read more...
MRO inventory optimisation
RS South Africa IT in Manufacturing
Maintenance, repair and operations inventory optimisation is not just a technical concern, it is a strategic priority for industries that depend on operational reliability and efficiency.

Read more...
Liquid cooling solutions for hyperscale data centre environments
Schneider Electric South Africa IT in Manufacturing
Schneider Electric has unveiled its world-leading portfolio of end-to-end liquid cooling solutions for hyperscale, colocation and high-density data centre environments, engineered to enable the AI factories of the future.

Read more...
Corrosion in data centre cooling systems
IT in Manufacturing
Taking proactive steps to fight corrosion is critical to maintaining healthy cooling towers alongside data centres.

Read more...
Smart assistant supports troubleshooting and analyser maintenance
IT in Manufacturing
The Siemens Industrial Copilot for process analyser technology is a smart, offline assistant that supports technicians in troubleshooting and maintaining analysers.

Read more...
AI and the smart factory
Schneider Electric South Africa IT in Manufacturing
Imagine walking into a factory where machines can think ahead, predict problems before they happen, and automatically make adjustments to realise peak performance. This isn’t science fiction; it’s happening right now as AI transforms how we run industrial operations.

Read more...









While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd | All Rights Reserved