News


From the editor's desk: Rockwell Automation stresses the importance of cybersecurity

July 2017 News

Rockwell Automation University 2017 was held at Emperors Palace from 17-18 May, just days after the massive coordinated ransomware attack that struck in about 100 countries around the world, hobbling organisations the size of England’s National Health Service. At the event press conference, we journalists were well primed then for the message from MD, Barry Elliot and business manager for control systems, Christo Buys, that cybersecurity awareness in an industrial context is no longer an optional nice-to-have – it is an absolute essential.

The root cause of the increased vulnerability is the convergence of the traditionally separate domains of information technology (IT) and operations technology (OT). While this can significantly improve operational effectiveness, each new connection brings with it a potential new threat – not just to the device, but also to the system with which it connects.

To counteract this, Rockwell Automation has devised a three-step approach for building an industrial security programme that extends from the enterprise level right down to the plant floor.

Firstly, a facility-wide security assessment must be conducted to define the risk areas and identify the potential threats. Once this is done, a multi-layered defence-in-depth (DiD) security approach should be considered, which establishes multiple tiers of protection across the plant. Thirdly, all the organisations’ automation vendors should be verified to ensure they are adhering to good security principles in the design of their products.

A DiD approach is recommended because these days, with the sophisticated hacking toolkits that are freely available, defeating a security strategy based on a single point of protection can be relatively easy for an experienced ‘black hat’. Therefore, the idea is to implement multiple layers of protection – physical, electronic and procedural – as separate instances in the facility, in order to apply the most appropriate controls for the different types of risk.

According to Buys, a good security programme is 20% technology and 80% process and procedure. “We think of industrial security as a layered model and seek to create a unified holistic infrastructure for our customers,” he explained. “Our approach takes into account the connections between network security, as well as the physical security and safety in industrial areas.”

Stuxnet was perhaps the event that catapulted the cyber threat to industrial facilities into the global spotlight back in 2010. And, while there has been nothing as sophisticated as that since, (leaving one to ponder on who could possibly benefit from the destruction of a uranium enrichment facility in Iran), there have been many other less sophisticated, but equally successful, incidents. The Night Dragon attacks, rumoured to have originated in China, which targeted the intellectual property of major oil and gas companies on a global scale is one that comes to mind.

“Now that it has started, the cybersecurity threat to industrial organisations will continue to evolve,” concluded Buys as the press conference drew to a close. “To keep pace, the response from the manufacturing sector needs to evolve even faster to stay ahead of the changing threat landscape. Following the three-step approach will assist organisations to establish a programme that can help protect intellectual property, facilities and competitive advantages as the era of interconnectedness that is Industrie 4.0 continues to unfold.”

An e-book outlining the three-step approach in more detail is available from Rockwell Automation at https://tinyurl.com/y9fe357a

Industry guide

Posted with the magazine this month is the 2017 edition of the Technews Industry Guide: Industrial Internet of Things. The Fourth Industrial Revolution, aka Industrie 4.0 or the IIoT, is the convergence of cyber and physical systems that in its entirety could impact many facets of manufacturing, operations and process management. Underneath all the marketing hyperbole that surrounds it, there are some very real benefits to be had. We trust this handbook will help you differentiate the fantasy from the reality.

Steven Meyer

Editor: SA Instrumentation & Control

[email protected]



Credit(s)



Share this article:
Share via emailShare via LinkedInPrint this page

Further reading:

Reinstatement opportunity for ECSA registration
News
In 2023 the Engineering Council of South Africa (ECSA) announced a special opportunity for engineers in South Africa to reinstate their registration status if it had been cancelled. This exclusive offer is available until the end of August 2024.

Read more...
Africa Automation Indaba 2026
News
A bold new chapter in Africa’s industrial evolution begins with the launch of the Africa Automation Indaba, set to take place from 13 to 14 May 2026 at the prestigious Radisson Collection Hotel in Cape Town.

Read more...
EtherCAT Technology Group holds another Plug Fest
News
Recently, the EtherCAT Technology Group (ETG) once again invited its members to a Plug Fest, this time specifically targeting developers and manufacturers of devices with Safety over EtherCAT (FSoE) functionality.

Read more...
BMG powers up at Nampo 2025
News
The BMG team was highly prominent at this year’s Nampo agricultural show, held near Bothaville recently. This prestigious event, which is one of the largest agricultural exhibitions in the southern hemisphere, is a highlight for manufacturers and suppliers of farming equipment, as well as for farmers, families and the entire community.

Read more...
Epiroc rocks youth development programmes
News
Epiroc is not just building equipment - it’s building futures. Through its dynamic internship and learner programmes, the mining equipment and services specialist is shaping South Africa’s next generation of skilled professionals, equipping them with real-world experience, industry knowledge and the confidence to launch successful careers.

Read more...
Schneider Electric drives innovation in Africa
Schneider Electric South Africa News
Schneider Electric has officially launched its first Innovation Hub on the African continent, coinciding with the opening of its new regional headquarters in Midrand, South Africa.

Read more...
Schneider Electric South Africa certified as 2025 Top Employer
Schneider Electric South Africa News
Schneider Electric is proud to announce its South African operation has been awarded Top Employer 2025 certification by a global authority in HR excellence, Top Employers Institute.

Read more...
100 years of safety leadership
News
DEKRA Industrial and its adult-based education and occupational skills training division, the Institute of Learning (IOL) will showcase a milestone at A-OSH 2025, as the company celebrates DEKRA Global’s 100 years of safety leadership.

Read more...
Drakenstein Municipality aces Schneider Electric’s Sustainability Impact Award
Schneider Electric South Africa News
Drakenstein Municipality in the Western Cape has won a Sustainability Impact Award for Schneider Electric’s Anglophone Africa region, shining the spotlight on its unwavering commitment to sustainable leadership and its forward-thinking approach to ensuring a sustainable future for its coming generations.

Read more...
LH Marthinusen launches new industrial fan manufacturing and services factory
News
LH Marthinusen has launched its new industrial fan manufacturing and services factory in Ekurhuleni. THis is a major milestone for South African energy infrastructure growth.

Read more...









While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd | All Rights Reserved