A New Take On ICS Cybersecurity

A New Take On ICS Cybersecurity

cybersecurityIndustrial Control Systems (ICS) Cybersecurity risks have become so public that CEOs and Board members are sponsoring projects within their companies and raising visibility of the issue.

PAS Inc. CEO Eddie Habibi and General Manager of Cybersecurity and CMO David Zahn shared that news with me during a conversation this week regarding the release of a new version of PAS Cyber Integrity (5.0).

They further pointed out that this high-level visibility serves to push the long-promised IT/OT integration and cooperation into more meaningful relationships.

A final point concerned approaches to ICS cybersecurity. Most companies and consultants focus on the networking access side of the equation. PAS also looks at such automation assets as patch management, inventory management, and workflow.

The latest release of Cyber Integrity boasts enhanced support for workflows and security policies, automating a closed-loop patch management process, and provides enhanced dashboard capabilities. Says the company’s press release, “Cyber Integrity helps companies better mitigate operational risk from malicious attacks or inadvertent control system changes through automated inventory management, patch management, change management, and backup and recovery.”

“Patch management for today’s control systems lack critical capabilities required to help industrial organizations meet cybersecurity best practices and regulatory standards,” says Peter Reynolds, Senior Analyst at ARC Advisory Group. “Among other issues, plants often have poor visibility into which assets require patching; lack integrated processes that drive testing, implementation, or mitigation; and cannot easily access auditable evidence of a patch management process. ARC supports the development of solutions such as PAS Cyber Integrity that are designed to address these types of patch management issues in mission-critical industrial environments.”

Cyber Integrity works across the heterogeneous control environment found in plants providing enterprise scalability and performance. It enables industrial companies to:

  • Gather and maintain an accurate inventory of IT and OT cyber assets,
  • Automate patch processes throughout the enterprise,
  • Monitor for unauthorized change to cyber asset configurations, and
  • Implement a program for system backup and recovery.

The latest release also includes an entirely new dashboard that makes it easier for end users to process actionable information, as well as for management to quickly understand the state of ICS cybersecurity.

“The great contradiction within ICS cybersecurity is that the assets most valuable to plant operations and safety are often the most vulnerable,” says David Zahn, Chief Marketing Officer and General Manager of the Cybersecurity Business Unit at PAS. “Inventory management and change management are essential components of a cybersecurity strategy that address this contradiction. By offering patch management within Cyber Integrity, we now provide cybersecurity and operations professionals the ability to identify, address, and audit a process that had traditionally fallen short. Along with our new dashboard, workflow, and policy capabilities, companies have everything they need to harden ICS cybersecurity and streamline compliance efforts.”

Further information can be found on the PAS blog:

“Is Your House In Order?”

“The Risk of Not Knowing”

“What Happens When You Get That Call?”

Enterprise-Class Tablets for Enterprise Asset Intelligence

Enterprise-Class Tablets for Enterprise Asset Intelligence

I have written before about how Zebra Technologies Corporation has grown into an IoT supplier through some strategic acquisitions. An integral part of the overall IoT ecosystem is asset intelligence application.

The company has introduced its next-generation ET50 and ET55 tablet computers, which combine the consumer styling with the enterprise-class features necessary to increase workforce productivity. With a choice of the Microsoft Windows 8.1 or Android 5.1 (Lollipop) operating system (OS) and two different display sizes, businesses can choose the modern enterprise-grade tablet that best meets their application needs and technology strategy. This brings enterprise asset intelligence to the mobile worker.

KEY FACTS

  • Operating Flexibility to Empower Business Applications: The ET50/55 is the first Zebra tablet computer available with the Microsoft Windows 8.1 OS and is Windows 10-ready. Windows gives access to legacy ERP systems and commonality to desktop solutions. The Android version of the ET50/55 tablet computer comes standard with Zebra’s Mobility Extensions (Mx) providing enterprise-class security; device management and data capture capabilities. The Android tablets are also equipped with Zebra’s AppGallery – an Android enterprise app store providing ready-to-use apps.
  • A Business Tool with an Enterprise-Class Accessory Ecosystem: Tablets need the right accessories to make them enterprise-grade productivity tools. New vehicle mount cradles are ideal for service technicians; delivery drivers and salespeople on the road while a forklift mount can handle most warehouse environments. Advanced scanning capabilities are available that can accurately and rapidly capture photos, NFC tags, bar codes in virtually any condition and on practically any surface.   Hot-swappable batteries augment the built-in battery and deliver 24 x 7 power to field service, transportation and logistics, retail, warehouse, manufacturing and government employees.
  • Features Designed for Enterprise Mobile Workforces: The ET50 features Wi-Fi connectivity while the ET55 adds 4G LTE cellular connectivity, and both models offer an advanced capacitive touch display that enables gloved or ungloved usage and the ability to use a stylus or a finger for annotating and capturing signatures. All configurations are designed to MIL-STD specification for drops to concrete and have IP65 sealing.
  • Enterprise-Class Services: Zebra OneCare Essential Services provide device diagnostics and coverage for normal wear and tear as well as accidental damage to internal and external components, significantly reducing unforeseen repair expenses.

 

Enterprise-Class Tablets for Enterprise Asset Intelligence

Connected World Powered by the Cloud

The famous Internet of Things would be just so many useless streams of bits without a place to store them before analysis can be done. Therefore, the importance of the Cloud. Microsoft has jumped in big time with its Azure Cloud.

Early last month, Microsoft held AzureCon and announced new solutions spanning containers, security, infrastructure and the Internet of Things (IoT) that enable organizations of all sizes to transform their business in today’s mobile-first, cloud-first world.

“We live in a connected world, and the intelligent cloud is powering it all,” said Scott Guthrie, executive vice president of Microsoft’s Cloud + Enterprise Division. “As data and devices continue to proliferate, there is vast opportunity for businesses to tap into their data to make their applications more intelligent. Through our offerings across applications, data and IoT, and cloud infrastructure, we are enabling companies to innovate more easily and rapidly, using the tools and platforms they know and love.”

Innovation through choice and simplicity

Applications are at the heart of business growth and transformation, and containerization is an increasingly popular way to maximize application value. Furthering its commitment to container technology and extending customer choice, Microsoft announced a new Azure Container Service that will combine the openness of Apache Mesos and Docker with the hyper-scale of Azure for container orchestration and management. With the service, organizations using Azure will now be able to easily deploy and configure Mesos to cluster and schedule Dockerized applications across multiple virtual hosts. Unlike many other container services in market today, this offering is based on open source to enable customer choice across the ecosystem and will support Windows Server containers in the future. The service will be available for preview by the end of the year.

Internet of Things and big data

The intelligent cloud is powered by data. Microsoft announced that its Azure IoT Suite is now available for customers to purchase. The Azure IoT Suite integrates with a company’s existing processes, devices and systems to build and scale IoT projects across their business using preconfigured solutions. In addition, Microsoft announced the new Microsoft Azure Certified for IoT program, an ecosystem of partners whose offerings have been tested and certified so businesses can take their next IoT project from testing to production, more quickly. Current partners include BeagleBone, Freescale Intel Corporation, Raspberry Pi, Resin.io, Seeed Technology Inc., and Texas Instruments Inc.

Microsoft also announced the expansion of Azure Data Lake. This includes Azure Data Lake Analytics, Azure Data Lake Store, a new programming language U-SQL, and Azure HDInsight general availability on Linux.

Intelligent infrastructure

Security is often cited as a top concern when moving to the cloud. Microsoft announced Azure Security Center, a new integrated experience that gives customers visibility and control of the security of their Azure resources without impeding agility, and helps customers stay ahead of threats even as they evolve.

This service integrates with security solutions from companies such as Barracuda, Checkpoint, Cisco Systems Inc., CloudFlare, F5 Networks, Imperva, Incapsula and Trend Micro Inc. In addition to enabling integrated security, monitoring and policy management, Azure Security Center also provides recommendations. By analyzing information gathered from customers’ deployments and comparing with global threat intelligence aggregated by Microsoft, the service introduces ability to detect threats while taking the guesswork out of cloud security. Azure Security Center will be broadly available for Azure customers by the end of the year.

Finally, continuing investments to deliver industry-leading compute capacity, Microsoft is announcing the N-series, a new family of Azure Virtual Machines (VMs) powered by NVIDIA GPUs. GPUs have long been used for compute and graphics-intensive workloads. Microsoft is the first hyper-scale provider to announce VMs featuring NVIDIA Grid 2.0 technology and the industry-leading Tesla Accelerated Computing Platform for professional graphics applications, deep learning, high-performance computing and more. A preview will be available in a few months.

Microsoft announced the Azure Compute Pre-Purchase Plan, a new pricing program designed for customers with steady state, predictable workloads on Azure. With this new offer, customers who pre-purchase Azure compute for one year can realize cost savings of up to 63 percent. This plan will be available globally starting Dec. 1.

Enterprise-Class Tablets for Enterprise Asset Intelligence

Microsoft and Dell Join In Cloud Application

The Internet of Things does not exist in a vacuum. Just putting devices on the Internet with Internet Protocol will achieve nothing. That only generates data. The data must reside somewhere that is organized and easily accessible.

We have come to identify that place as the “cloud”. The cloud is a server bank that may or may not be on the premises. Examples of cloud services include Amazon Web services and Microsoft Azure.

I wrote about Dell’s introduction of a gateway device to enable Internet of Things through connection to edge devices and passing data on to the cloud. To further this, at Dell World, Dell and Microsoft Corp. announced a new cloud solution and program that enable organizations of all sizes to use the Microsoft cloud platform to transform their business. A new, Microsoft Azure-consistent, integrated system for hybrid cloud and extended program offerings will help more customers benefit from Azure and Dell to drive greater agility and increased time to value, whether they choose on-premises or public cloud solutions.

“A core part of our mission to empower every organization on the planet requires us to build world-class platforms and forge deeper partnerships that help businesses of all sizes transform with digital technology,” said Satya Nadella, CEO, Microsoft. “By expanding our longstanding partnership with Dell to offer a truly integrated hybrid cloud, we will make the cloud more accessible to organizations of all sizes with the choice and flexibility to best meet their needs.”

“Digital transformation is an imperative for business today, and we are making our customers’ journey easier and faster through adoption of hybrid cloud,” said Michael Dell, CEO, Dell. “Dell shares a vision with Microsoft that open architectures and simplified cloud management will benefit customers of all sizes, freeing them to focus on their businesses and not their technology.”

Azure-consistent integrated system for hybrid cloud

Customers are increasingly turning to hybrid cloud as a way to achieve the agility and cost-savings of the cloud while maintaining control of their assets. Extending their commitment to deliver simple yet powerful hybrid solutions, Microsoft and Dell announced Cloud Platform System Standard (CPS Standard), the newest addition to the Microsoft Cloud Platform System (CPS) family. CPS is the industry’s only integrated system with a true hybrid cloud experience, built on optimized Dell modular infrastructure with pre-configured Microsoft CPS software, including the proven Microsoft software stack and popular Azure services.

The hybrid cloud experience comes from the platform’s consistency with Azure, enabling agile deployment and operation of workloads and allowing customers to build multi-tiered, scalable applications. A fully integrated, preconfigured system, CPS Standard is purpose-built to remove many of the complexities and costs traditionally associated with hybrid cloud deployments, including the following:

Quick time to value and operational simplicity. CPS Standard arrives ready to be plugged in and can be up and running in as little as three hours, while operations, patching and updates are simplified with an automated framework.

Simplified business continuity. In case of a datacenter outage, CPS Standard features archival backup to Azure and failover to Azure that is easy-to-activate, reliable and cost-effective.

Increased flexibility. Its modular design allows customers to start smaller and incrementally scale from four to up to 16 servers based on business needs.

CPS Standard is shipping now with Windows Azure Pack, System Center 2012 R2 and Windows Server 2012 R2 and is ready to install Microsoft Azure Stack when it becomes available. Dell and Microsoft also offer CPS Premium for large enterprises and service providers requiring a higher-capacity hybrid cloud solution.

Dell joins Microsoft Cloud Solution Provider program

To help customers leverage the cloud, Dell also announced that it has joined the Microsoft Cloud Solution Provider program and will sell Microsoft cloud solutions across Azure, the Microsoft Enterprise Mobility Suite (EMS) and Office 365. This will help customers accelerate their journey through end-to-end cloud, mobility, identity and productivity solutions that drive new innovation, improve employee productivity and increase security.

The combination of Azure services and Dell’s hardware, software and consulting services will assist customers through their entire hybrid cloud journey from inception to implementation. Consultants will be trained to help customers build tailored cloud solutions to address a range of core business needs including hybrid infrastructure deployments, elastic scale and bursting, backup and disaster recovery, Web and mobile development, and data and analytics.

As a Cloud Solution Provider, Dell will also provide end-to-end enterprise mobility and identity solutions, based on EMS and Azure Active Directory, to empower employees and protect corporate data and applications. EMS, combined with Windows 10 and Office 365, provides a comprehensive platform, productivity tools and management capabilities to help secure company data without compromising mobile productivity experiences.

Enterprise-Class Tablets for Enterprise Asset Intelligence

Dell Joins Internet of Things Market

When Michael Dell turned the focus to new products and initiatives during his Dell World keynote last week, the first product mentioned was an Internet of Things (IoT) device.

Dell provides servers (for cloud storage), software, and analytics engines that provide the end point for the IoT ecosystem. This device, Edge Gateway 5000 series, takes Dell’s offering to the other side of the ecosystem—closer to the edge device.

Companies in the automation software space have talked for years about having meetings with operation technology (OT) professionals and bringing in information technology (IT) professionals—often the first time the two groups have met.

Dell is spinning the same story. It is strong on the IT side, but it is not a stranger to OT. Well, it is also trying to be the catalyzing force to bring IT and OT to the same table.

Some highlights:

• Edge Gateway 5000 Series delivers purpose-built gateway with analytics capabilities, expansive input/output (I/O) options, and ability to operate in extreme environments
• Solution designed for rigors of building and factory automation sectors; signals Dell’s deep partnerships with operational and information technology organizations, including OSIsoft
• Dell Edge Gateway adds to industry’s broadest portfolio of IoT assets, spanning newly revamped Dell Statistica advanced analytics, hardware, digital services and security and manageability software

Dell announced the launch of the new Edge Gateway 5000 Series purpose-built for the building and factory automation sectors. Composed of an industrial-grade form factor, expanded input and output interfaces, and with wide operating temperature ranges, the product, combined with data analytics capabilities, promises to give companies an edge computing solution alternative to today’s costly, proprietary IoT offerings.

Making good decisions using data generated by sensors is the central objective of IoT. Yet the rich data generated by IoT devices presents its own set of challenges. Harbor Research estimates that by 2020 smart systems will create over 194 petabytes of data. The sheer volume and complexity of managing this new decentralized, localized data can quickly overload traditional environments and analysis tools. Edge analytics, carried out with the help of versatile gateways, will help with this data overload by determining what data needs to be acted on quickly and then filtered or stored.

The Dell Edge Gateway sits at the edge of the network (near the devices and sensors) with local analytics and other middleware to receive, aggregate, analyze and relay data, then minimizes expensive bandwidth by relaying only meaningful data to the cloud or datacenter. Thanks to new Dell Statistica data analytics also announced today, Dell is expanding capabilities out to the gateway. This means companies can now extend the benefits of cloud computing to their network edge and for faster and more secure business insights while saving on the costly transfer of data to and from the cloud.

“Organizations are struggling to make the best decisions regarding the data volume and complexity created by the vast numbers of sensors, embedded systems and connected devices now on the network,” said Andy Rhodes, executive director, Commercial IoT Solutions, Dell. “As more of the data is processed in real time at the edge of the network, the gateway becomes the spam filter for IoT.”

Dell’s end-to-end portfolio

The Edge Gateway 5000 is the newest addition to Dell’s end-to-end portfolio of IoT-enabling solutions and services, which provide customers with choice and flexibility to architect IoT ecosystems with analytics at the edge, the cloud or the data center. The gateway is available for original equipment manufacturers (OEMs) to build into their solutions or for building and factory automation customers to use as part of their IoT strategy which can span data center solutions, advanced analytics and digital services. Additionally, customers’ can take advantage of Dell’s global availability, trusted security options, and Dell Support and Deployment services including ProSupport which provides end-to-end hardware support throughout the entire product lifecycle, helping customers maximize their gateway environment and minimize time spent on maintenance.

For example, ELM Energy is already using Dell gateways to make a difference in securing a more sustainable energy future. ELM’s FieldSight Controller automates decision structures that toggle between the use of distributed energy sources such as solar, wind and backup generators and traditional utility grid sources. The systems also help customers make decisions about the most effective times to broker surplus energy back to the open market.

“Through the power of technology, ELM Energy and Dell are enabling real-time decision making that is optimizing and balancing power generation and maximizing the use of renewable energy,” said James Richmond, president, ELM Energy. “For example, if the renewable energy being generated exceeds demand, our technology is able to automatically decide if the excess should be fed back to the grid or stored for later use when the renewable sources are unavailable. The new Dell Edge Gateway 5000 Series is the perfect platform for our FieldSight Edge software to perform computing functions close to the source, at a fantastic value.”

Additional Dell Edge Gateway 5000 Series benefits include:
• Ability to be mounted on the wall and to operate in locations with extreme temperatures like boiler rooms and deserts
• Expansive I/O structure designed to bridge both legacy serial connections (RS-422/485, CAN bus) and modern wireless networks (Wi-Fi, 802.15.4 mesh) to the internet with expansion capability for future options [they tell me that they are investigating a range of other connectivity]
• Operating system flexibility with choices that include Ubuntu Snappy, Wind River Linux, Windows 10 IoT Enterprise
• Security foundation including TPM, secure boot and BIOS level lockdown of I/O ports
• Manageability with Dell Command|Monitor for Linux and Dell Cloud Client Manager
• Dell is working with innovative independent software vendors and system integrators like SAP, OSIsoft, Eigen Innovations and Lucid to add domain expertise
• Standard Dell lead times allowing customers to receive hardware quickly, a rarity in the OT industry today
• Consulting, strategy and integration from Dell Services to help information-intensive enterprises like healthcare and insurance customize IoT approaches for their industry
Dell and Intel are also launching the “Connect What Matters” contest for innovative IoT solutions built on Dell Edge Gateways. The contest is open to commercial companies and solutions can be developed for any vertical. Participants will compete for the Best IoT Design, and the deadline for submissions is March 31, 2016.

Follow this blog

Get a weekly email of all new posts.