• Business
    • Biz Tech
  • Cloud
  • Social Media
  • Alternatives
    • Movie Streaming Sites
      • 1MoviesHD
      • Hurawatch
      • Ifvod
      • Bflix
      • Couchtuner
    • Anime Streaming Sites
      • Animesuge
      • Animekisa
      • Animedao
      • Anilinkz
    • Manga Sites
      • Asurascans
      • Comick.fun
      • Webtoon XYZ
    • Sports Streaming Sites
      • Streameast
    • Photos & Graphics
  • Software
  • Gaming

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

How to Boost Instagram Followers?

Mar 30, 2023

From Spender to Saver – Building a Healthy Savings Account

Mar 30, 2023

How to Automate Your Software Documentation Process

Mar 30, 2023
Facebook Twitter Instagram
  • Home
  • About Us
  • Privacy Policy
  • Advertise
  • Write For Us
  • Contact Us
Facebook Twitter
Digital Edge
  • Business
    • Biz Tech
  • Cloud
  • Social Media
  • Alternatives
    • Movie Streaming Sites
      • 1MoviesHD
      • Hurawatch
      • Ifvod
      • Bflix
      • Couchtuner
    • Anime Streaming Sites
      • Animesuge
      • Animekisa
      • Animedao
      • Anilinkz
    • Manga Sites
      • Asurascans
      • Comick.fun
      • Webtoon XYZ
    • Sports Streaming Sites
      • Streameast
    • Photos & Graphics
  • Software
  • Gaming
Digital Edge
Home»Uncategorized»Heating Industry Turns Up The Temperature On PLC Cybersecurity
Uncategorized

Heating Industry Turns Up The Temperature On PLC Cybersecurity

Michael JenningsBy Michael JenningsJul 20, 2018Updated:Aug 6, 2018No Comments5 Mins Read

How important is cybersecurity for PLC in today’s industrial settings? Merely a matter of national security. Consider this: in 2016, the US and NATO nations  officially recognized cyberspace as a domain of warfare.In geopolitical terms, a cyberattack is now as actionable as a naval attack. Within industrial and commercial settings, cyber malice is a frequently seen as a leading threat, and likely a permanent one.

As first brought to global attention by the Stux net attack in 2010, PLCs are a tempting target for malice. Since that event, cyber attacks on PLCs and beyond have sent alarming messages through out the heating and energy industries. The ingress point for the massive 2013 hack of retailing giant Target is believed to have been its HVAC management company.In 2016, a cyber attack in Finland crippled residential heating systems in freezing winter. In March of this year, a Saudi petrochemical plant’s system was hacked not only for its data, but as an attempt to sabotage internal systems and trigger an explosion.

Today, every industry executive understands the need for cybersecurity in PLC systems.Not all, however,are fluent with their own company’s risk profile. Many more don’t understand the methods and limits of prevention .Federal agencies have no doubts about these topics, and have strenuously advocated both risk assessment and intrusion prevention for the industrial sectors. The National Institute for Standards in Technology (NIST) has particularly active in this arena, and has assembled a Manufacturing Extension Partnership (MEP) program to help businesses of all types understand cyber threats and how to deal with them.

The NIST MEP program, created together with private enterprise, has been developing a framework for cybersecurity risk management, and guidelines to assess and mitigate cyber risk to manufacturing systems. Businesses that have not yet conducted a serious assessment of their cyber vulnerabilities would do well to start their education with the NIST overview. In addition to NIST, the Center for Internet Security (CIS) also offers a resource and security risk assessment method that helps organizations implement and assess their security posture against CIS controls.

Best practices for safeguarding are a more complex topic. As more Industrial Control Systems are connected to the Internet and the IIoT, there is predictable debate over where the security dollars are best applied. The cybersecurity services industry is flush with new vendors ready to serve the ICS markets. The threat of cyber attacks has actually created a flourishing new industry.

Quality, not quantity, is the problem when it comes to finding cyber security for PLC systems. Much of today’s talent pool is drawn from the IT world, where cybersecurity has long been an established discipline. Proprietary or legacy PLC systems are often outside their experience.Training new professionals in relevant cyber security techniques is crucial, and is being addressed by programs supervised by the International Society of Automation (ISA). Businesses seeking to build their in-house cyber security competencies can find up-to-date training and certification through these programs.

To combat the problems of not enough security and not enough security experts, some PLC manufacturers are touting built-in cyber security features. These include integrated firewalls, secure booting, and preventive measures against uploading of unauthorized software. In these new PLC designs, slots can accept authorized, non-rewritable memory, which can be securely locked as a safeguard against tampering. This simple level of physical security is more important than most CIOs give credit to. Many cyber threats don’t necessarily begin as deliberate, planned invasions; they are a product of opportunity. A careless employee or careless password maintenance can be as big a threat to the PLC system as the most relentless black hat. The insurance industry calls these risks a “moral hazard,” like a homeowner that doesn’t lock all the doors when leaving home to get groceries.Many of these security holes around the PLC are often overlooked and expedient to solve.

The U.S. Department of Homeland Security has also issued specific, emphatic cyber security messaging for companies in the HVAC spaces. According to the Department, “HVAC and fire systems have significantly increased roles in security that arise from the interdependence of process control and security.” The agency goes on to warn that computers and computerized devices used for ICS functions (such as PLC programming) should never leave the ICS area. Laptops, portable engineering workstations, and handhelds should be tightly secured and never used outside the ICS network. With these kinds of warnings in mind, it’s easy to understand how simple cures to the aforementioned “moral hazards” contribute to a more secure system.

The HVAC sectors are on the front lines of the cyber threats against industry. Climate control is a universal need for both people and machines. Understanding and accepting the differences between what should be done and what can be done are crucial to a successful cyber security strategy, for PLCs and beyond. Not every attack can be prevented, and not every component of every system can be secured. However, strategies for preventing the preventable are critically necessary. Building those strategies and executing them with tactics that can adapt over time is not just worthwhile to industry –it’s imperative.

Joseph Zulick is a writer and editor at MRO Electric and Supply, focused on providing FANUC CNC and FANUC Robotics automation parts.

Michael Jennings

Micheal wrote his first article for Digitaledge.org in 2015 and now calls himself a “tech cupid.” Proud owner of a weird collection of cocktail ingredients and rings, along with a fascination for AI and algorithms. He loves to write about devices that make our life easier and occasionally about movies. “Would love to witness the Zombie Apocalypse before I die.”- Michael

Related Posts

Everything You Need to Know About Starting a Career in the Electronics Design Industry

Mar 15, 2023

How to Reinvent Your Career at 30

Mar 13, 2023

Why English Is A Universal Language

Jun 19, 2022
Top Posts

SockShare – Is it Working? 22 Best Alternatives in 2023

Feb 14, 2023

12 Zooqle Alternative Torrent Sites That Work In 2023

Feb 20, 2023

17 Working TheWatchSeries Alternatives in 2023

Feb 6, 2023

Is TVMuse Working? 100% Working TVMuse Alternatives And Mirror Sites In 2023

Feb 18, 2023

15 Games Like Free Cities You Should Check Out

Sep 22, 2022

15 Cucirca Alternatives That Work in 2023

Feb 15, 2023

22 Rainierland Alternatives in 2023

Feb 13, 2023
About Us

Digital Edge is the freshest voice in the field of technology and digital media. Our editorial staff is really passionate in their efforts to curate the latest technological breakthroughs in new and emerging technologies from all over the world to help businesses, IT professionals and consumers to stay abreast with all the latest developments.

We pride ourselves in providing quality content from reputed authors and bloggers as well as from passionate observers like you! If you have a unique voice that you would like to unleash on the rest of the world, then please let us know! Our editors go over everything with a fine tooth comb as a result of which any proverbial cracks are paper-thin from which no inaccuracies ever seep through! However, if there is anything you do not agree with or if you want to comment on the swell job that we are doing, feel free to reach out to us as well. We love hearing from you!

Most Popular

SockShare – Is it Working? 22 Best Alternatives in 2023

Feb 14, 2023337 Views

12 Zooqle Alternative Torrent Sites That Work In 2023

Feb 20, 2023222 Views

17 Working TheWatchSeries Alternatives in 2023

Feb 6, 2023142 Views
Our Picks

How to Boost Instagram Followers?

Mar 30, 2023

From Spender to Saver – Building a Healthy Savings Account

Mar 30, 2023

How to Automate Your Software Documentation Process

Mar 30, 2023
Facebook Twitter
  • Home
  • About Us
  • Privacy Policy
  • Advertise
  • Write For Us
  • Contact Us
© 2023 ThemeSphere. Designed by ThemeSphere.

Type above and press Enter to search. Press Esc to cancel.