DCS; Industrial control system
NameDescriptionContent
NEW CENTER
Current Location:

Cybersecurity and Digitalization: A Cautionary Tale

From:automation | Author:H | Time :2024-11-28 | 282 Browse: | Share:



The University of Texas at San Antonio (UTSA) created a new college dedicated to AI, cybersecurity, computing, data science and related disciplines.

A cybersecurity scholarship program is also starting up at the College of Engineering and Computer Science at Florida Atlantic University (FAU) since it received a $2.6 million grant from the National Science Foundation (NSF).

In addition, grants worth approximately $200,000 addressing the nation’s shortage of skilled cybersecurity employees will be awarded to 18 education and community organizations in 15 states. These grants are a part of the U.S. Department of Commerce’s National Institute of Standards and Technology (NIST) program that awarded cooperative agreements of nearly $3.6 million to build the workforce needed to safeguard enterprises from cybersecurity risks.

According to the U.S. Department of Homeland Security, cybersecurity threats to critical infrastructure are one of the country’s greatest strategic risks. Grants and awards have increased due to this. The Internet Crime Report, compiled annually by the Federal Bureau of Investigation, charts growth in cybercrime, noting a record number of complaints in 2023 with $12.5 billion in reported financial losses.


Employee training

Continuous training and education for employees also plays a vital role in maintaining a strong cybersecurity posture. “A well-informed staff can recognize and respond to potential threats more effectively, reducing the likelihood of breaches caused by human error,” Chowdhury said. “As technology evolves, ongoing education ensures that employees remain up to date with the latest security practices and tools.”

Part of that ongoing education is evolving from the continuing convergence of information technology (IT) and operational technology (OT) systems and knowledge. “Applying these digital techniques to the OT world, whether to improve productivity, insights, or cybersecurity, will be more difficult than in the IT world,” Carrigan said. “The reason is there are key differences between IT and OT that will not change anytime soon.”

Carrigan indicated that these differences relate to:

  • Flexibility. IT assets are generally flexible. A single server or PC may conduct a variety of tasks or host multiple applications. OT assets have a specific mission, highly customized to deliver specific tasks to control or monitor operations.

  • Security versus availability. In general, in the IT world, security takes precedence over availability. Often, on short notice, IT can shut down an asset to install critical security updates. In OT, the opposite is true. These assets must be available 24/7 and often do not update with the most recent security capabilities to avoid unnecessary downtime.

  • New versus old. In the IT world, assets typically have a relatively short life (three to five years) before an upgrade. In OT it is common to have assets that are more than 20 years old controlling critical infrastructure. The cost to upgrade these assets—in both cash outlays and disruptions to the business—means they have an extended life.

  • Homogeneous versus heterogeneous systems. In general, IT assets use a limited number of operating systems (Microsoft, Apple OS, Linux, etc.) and protocols to communicate. OT assets end up dominated by vendor-specific operating systems, protocols, and other designs unique and proprietary to each vendor. Integration in the OT world is typically more complicated and customized compared to IT.

Those differences must be considered when applying machine learning or AI to an OT environment, Carrigan said. “As an example, technologies are available to detect and automatically intervene to stop a cyberattack,” he explained. “These capabilities are becoming common in the IT world and will be further enhanced by leveraging AI techniques. Applying these same technologies in the OT world carries much more risk—any system that automatically interrupts the actions of an OT system could lead to significant loss of production or equipment damage—the same consequences we are trying to avoid via cyberattacks.”

Carrigan added: “The key differences between IT and OT, which will remain for years, means there must be more care when considering machine learning or AI for the OT environment.”


New direction

According to the Cisco inaugural 2024 State of Industrial Networking Report, it does appear manufacturers are beginning to design and deploy their OT environments to improve security, increase efficiency, and provide a platform for innovation. The report mentioned that cybersecurity—the backbone of the digital movement—was the biggest reported challenge in running and maintaining industrial networks. Also adding to the problem are the requirements of Industry 4.0, a backlog of legacy systems and assets, an expanding attack surface and an overstretched workforce.

In the report, 89% of respondents said cybersecurity compliance is very important in their operational network. Also, the number one challenge when running industrial infrastructure is mitigating cyber threats.

With the management of enterprise and industrial networks increasingly overlapping, the report also found IT and OT teams need to become more collaborative. Executive leadership can see the benefits of a unified approach but, currently, the two functions remain siloed, impacting efficiency and threatening the overall security posture.

  • D20MIC10BASE-T 820-0756 Network card
  • WES13-3 5167-0001-0210 CPU/Auxiliary Control board
  • WES13-3 2508-21001 Embedded digital module
  • D20ME 526-2005-216943 control module
  • D20EME 0526-21170-1 Enhanced Master Communications Module for D20 Substation RTUs
  • 2400-21004 / 2010-3101-0442 – Redundant Power Supply Module for Mark VIe Turbine Control
  • PACSystems™ IC695CPE400 RX3i 64 MB
  • DS200DCFBG2BNC DC2000 DC Feedback Board
  • OLDI Ethernet interface module 56SAM-844
  • IS200BPPBH2CAA Mark VIe Power Supply Module
  • IS210MACCH2AEG Motor Control and Communication Module
  • IS210MACCH2AGG Mark VIe Speedtronic Turbine Control Module
  • IS200AEPAH1AFD Printed circuit board
  • IS200AEPAH1ACB Analog I/O Module
  • IS200WREAS1ADB AERO TRIP TB DBRD sub-board
  • IS200WETAH1AEC large board component made Mark VI system
  • IS200AEPAH1AHD A High-Precision Excitation Control Board for Turbine Systems
  • IS200WEMAH1AEA Control board
  • IS210MACCH1AGG processor card
  • IS230TNRLH1B Discrete Output Modular Assembly
  • Mark V Series DS200PCCAG1ACB PCB Power Connect Card
  • DS200SI0CG1AEA Instantaneous overcurrent card
  • DS200SHVMG1AGE Analog I/O board
  • DS200SI0CG1A6A Input/Output Module
  • DS200SHVMG1AFE SCR High Voltage Interface Board
  • DS200RT8AG3AHC Relay Output Terminal Board
  • DS200FSAAG1ABA PCB Field Supply Gate Amplifier Board
  • 531X307LTBAFG1 F31X307LTBA LAN I/O Terminal Board
  • ABB AFS670 19" Ruggedized Switch AFS670-EREEDDDSSEEEEEEEPZYX05.1.0
  • NI Controller for VXI VXIPC-871B
  • IS200EPMCH1GE Mark VIe Patch Cord Power Distribution Card
  • VMICPCI-7632-03310 IS215UCCAH3A 350-657362-003310J GE gas turbine system control processor board
  • WEA13-13 2508-21001 Control Module / I/O Board
  • WES5120 2340-21004 Controller Main Module
  • WES5120 2340-21006 Field Controller Master Unit Module
  • ​ WESDAC D20ME 18-MAR-13 Excitation Control Module
  • D20 EME 2400-21004 Ethernet communication and expansion module
  • GE DS3800XTFP1E1C Thyristor Fan Out Board Brand
  • GE SR745-W2-P1-G1-HI-A-L-R-E Feeder protection relay
  • GE IS230TNDSH2A Discrete Output Relay Module Brand
  • GE Fanuc IS200TDBSH2ACC Mark VI Terminal Board Brand
  • GE PMC-0247RC-282000 350-93750247-282000F Disk Drive
  • GE PMC-0247RC-282000 350-93750247-282000F Disk Drive
  • GE VMIVME-1150 Serial Communications Controller
  • GE VMIVME-5576 Fiber-Optic Reflective Memory with Interrupts
  • GE VMIC Isolated Digital Output VMIVME-2170A
  • GE MULTILIN 760 FEEDER MANAGEMENT RELAY 760-P5-G5-S5-HI-A20-R-E
  • GE IS200AEPAH1BKE IS215WEPAH2BB Printed circuit board
  • GE IS210BPPCH1A Mark VIe I/O Pack Processor Card
  • GE IS220PRTDH1A 336A4940CSP6 High-Performance RTD Input Module
  • GE IS220PDIAH1BE 336A5026ADP4 Discrete Input Module
  • GE IS420ESWBH3A IONET Switch Module
  • GE 516TX 336A4940DNP516TX 16-port Ethernet switch
  • GE EVMECNTM13 Embedded control module
  • GE EVPBDP0001 EVPBDP032 control module
  • GE Hydran M2-X Enhanced Monitoring with Extended Sensor Life
  • GE UR6CH Digital I/O Module
  • GE IC695CPU315-CD Central processing unit
  • GE 531X305NTBAMG1 DR Terminal Board
  • GE 531X305NTBALG1 NTB/3TB Terminal Board 531X Series
  • GE 531X305NTBAJG1 NTB/3TB Terminal Board.
  • GE 531X305NTBAHG1 NTB/3TB Terminal Board 531X
  • GE 531X305NTBAEG1 is a PCB that functions as a DR terminal board.
  • General Electric 531X305NTBACG1 NTB/3TB Terminal Board 531X
  • GE Digital Energy D20 Analog Input Module
  • GE 94-164136-001 main board Control board
  • GE 269 PLUS-D/O-100P-125V Digital motor relay
  • GALIL DMC-9940 High-performance motion controller
  • FUJI NP1BS-08 base plate
  • FUJI NP1Y32T09P1 Transistor drain type digital output module
  • FUJI NP1Y16R-08 Digital Output Module
  • FUJI NP1X3206-A High-speed digital input module
  • FUJI NP1AYH4I-MR current output module
  • FUJI NP1S-22 Power module redundancy
  • FUJI RPXD2150-1T servo drive module
  • FUJI FVR008E7S-2UX Ac frequency converter
  • FUJI Ac frequency converter FVR008E7S-2
  • FUJI FVR004G5B-2 Small general-purpose frequency converter
  • FUJI A50L-2001-0232 Industrial control module
  • FUJI A50L-001-0266#N High-performance servo amplifier
  • Honeywell FS7-2173-2RP Gas sensor
  • Honeywell 10106/2/1 Digital Input Module in Stock
  • FRCE SYS68K CPU-40 B/16 PLC core processor module
  • Foxboro FBM I/O cards PBCO-D8-009
  • Foxboro AD916AE Digital Control System (DCS) Module
  • GE SR750-P5-G5-S5-HI-A20-R-E Multilin Relay
  • FOXBORO H90 H90C9AA0117S Industrial Computer Workstation
  • FOXBORO RH928AW | I/A Series Relay Output Module
  • Foxboro N-2AX+DIO Multi-functional input/output module
  • Foxboro RH924WA FCP280 Fiber Optic Network Adapter
  • FOXBORO H92 Versatile Hardware Component In
  • Foxboro FBM218 P0922VW HART® Communication Redundant Output Interface Module
  • Foxboro E69F-TI2-J-R-S E69F Series Current-To-Pneumatic Signal Converter
  • Foxboro E69F-BI2-S Converter
  • Foxboro H92A049E0700 The host of the DCS control station
  • Foxboro H90C9AA0117S Industrial computer workstation
  • Foxboro RH101AA High-performance industrial control module
  • Foxboro P0922YU FPS400-24 I/A Series Power supply
  • FOXBORO P0973LN Chassis-based managed switch with independent power supply
  • FOXBORO P0926PA Input/output module
  • Fanuc A06B-6050-H402 3 AXIS ANALOG AC SERVO DRIVE
  • FOXBORO L0130AD L0130AE-0H Power module group
  • FOXBORO 0399085B 0303440C+0303458A Combination Control Module
  • FOXBORO SY-0399095E (SY-0303451D+SY-0303460E) Process control board
  • FOXBORO 0399071D 0303440C+0303443B Input/Output (I/O) Module
  • FOXBORO RH924UQ Redundant Controller module
  • FFOXBORO E69F-TI2-S current pneumatic converter
  • FOXBORO FBM219 RH916RH Discrete I/O Module
  • FOXBORO FBM227 P0927AC Module
  • FOXBORO 0399144 SY-0301059F SY-1025115C/SY-1025120E I/O module
  • FOXBORO SY-60399001R SY-60301001RB Industrial Control Module
  • FOXBORO 0399143 SY-0301060R SY-1025115C SY-1025120E Combined control board
  • FOXBORO 873EC-JIPFGZ electrodeless conductivity analyzer
  • FOXBORO P0916PH (High-density HART I/O Module)
  • FOXBORO 870ITEC-AYFNZ-7 Intelligent Electrochemical Transmitters
  • FOXBORO Compact FBM240. Redundant with Readback, Discrete
  • FOXBORO FBM208/b, Redundant with Readback, 0 to 20 mA I/O Module
  • FOXBORO FBM201e Analog Input (0 to 20 mA) Interface Modules
  • FOXBORO P0916WG Terminal cable
  • FOXBORO P0926MX 2-Port Splitter
  • FOXBORO AD908JQ High-Frequency Module
  • FOXBORO AD916CC Processor module
  • Foxboro DCS FBM206 Pulse Input Module
  • FOXBORO FBM216 HART® Communication Redundant Input Interface Module
  • Foxboro p0903nu 1×8 unit sub-component module
  • Foxboro P0911SM Industrial control module
  • Foxboro CM902WM I/O module
  • Foxboro CM902WL Power module