It’s no secret that security is top priority for the federal government. It seems like every week we are hearing about a new threat, hack, or breach that has hit an agency. In just the past few weeks, we’ve heard about significant breaches that have resulted in both citizen and federal employee information being compromised.
Obviously, these kinds of attacks are putting agencies on alert. This is especially important as organizations continue to embrace new technologies and polices to improve operations and efficiency. As technology investments bring great new capabilities to government, it’s imperative that IT managers design security in from the very beginning.
I recently discussed this topic in an article published in Federal Times. The article explored how the Internet of Things (IoT) and Internet of Everything (IoE) need cybersecurity protection. In addition to a projected $4.6 trillion in value for global public sector by 2022, the enhanced connectivity offered by IoE technologies also creates an increased need for network security. For example, while BYOD programs are tremendously valuable, these initiatives also create a larger surface area for potential attacks by adding devices to the networks.
With billions of devices expected become connected over the next five years, it’s important that agencies have a plan in place to address their security needs. In general, agencies should focus their efforts on creating a cybersecurity strategy that is visibility-driven, threat-focused and platform-based. As more individuals and devices need network access, having real-time visibility becomes even more critical to gaining insight on surrounding threats and identifying system vulnerabilities. Also, presuming the network has already been breached it can help agencies be more proactive their approach. And lastly, a platform-based approach will provide scalability and flexibility required to address a variety of threats and reduce complexity through centralized management.
The number of ways IoE can make our lives better and our organizations more efficient depends mainly on our ability to think of new ways to use the technology. If we can be confident in the security of IoE, we can be confident developing more applications for it. All organizations should be in a position to ask, “Now that I am confident with my protection, what new things can I develop to save money or time and delight my users?”
Take a look at the Federal Times article for more insights around IoE and cybersecurity, and check out this white paper to learn more about IoE’s impact on public sector.
Tags: cisco government, cybersecurity, federal, government, Internet of Everything, internet of things, IoE, IoT, public sector
Today’s manufacturing industry faces an aging industrial machinery infrastructure that presents huge security challenges poised for continued growth in the coming months and years. Increasingly, manufacturers are beginning to view data security as a top barrier to realizing the value of the Internet of Everything (IoE). In fact, the steady growth of the IoE is creating efficiencies and cost savings across the entire value chain, presenting a $3.9 trillion value opportunity for manufacturers. However, this exponential growth of connections and integration between people, processes, data, and things also presents added security risks and threats that are often complex and multifaceted.
Here are a few of the implications and impacts of security breaches for manufacturers:
- Theft or Loss of proprietary or confidential information and intellectual property
- Downtime in factories and lost productivity – potentially very severe
- Violation of regulatory requirements
- Loss of public confidence and brand
- Economic loss
- Impact on national security
According to Symantec, the manufacturing business sector was the most targeted in 2013, accounting for 24% of all targeted attacks. Of those attacks, industrial networks topped the list of systems most vulnerable to cybersecurity issues. Additionally, the number of attacks on industrial supervisory control and data acquisition (SCADA) systems doubled from 2013 to 2014. Unfortunately for manufacturers, 91% of breaches took just hours or less to perpetrate, yet more than 60% of attacks took months – or even years – to detect. This considerable gap gives cyber attackers plenty of opportunities to access a manufacturer’s trade secrets and sensitive production data.
Tags: #MFG, Cisco, Cisco Connected Factory, Cisco Secure Ops, connected manufacturing, cybersecurity, Internet of Everything, Internet of Things (IoT), manufacturer, Manufacturing, thought leadership
Many of you know about the Cisco Secure Ops Solution that was announced in 2014, and that it has already been adopted by Shell to secure the company’s critical infrastructure, but may not have seen a demonstration or talked with a Cisco subject matter expert about it.
Cisco Live, San Diego, CA, USA
Well, here’s your chance. We have arranged for a booth in the industrial vertical area at the World of Solutions at Cisco Live in San Diego to show just that. We’re pleased to be accompanied by one of Cisco’s security partners to show new features and functionality that takes Secure Ops even deeper into the cybersecurity protection and surveillance arenas.
The Cybersecurity space is getting more and more alarming every day. As my colleague Peter Granger notes, we have gone from the quaint world of Sherlock Holmes…
Sherlock Holmes: I didn’t really ask, Dr. Franklyn, but what exactly do you do here?
Dr. Franklyn: Oh, Mr. Holmes, I’d love to tell you. But then of course, I’d have to kill you.
Sherlock Holmes: That would be tremendously ambitious of you.
…past the pseudo-high-tech world of James bond and closer to a more modern world reminiscent of Kiefer Sutherland’s character Jack Bauer in the TV series ’24’. Today’s Cyber attacks are not just disgruntled employees or simple mischief makers (although that’s bad enough), but can be carried out by powerful crime syndicates and hostile governments.
Now more and more attacks are becoming visible and reported (e.g. Stuxnet like ‘Havex’ malware strikes European SCADA Systems – June 2014) and whether they are a terrorist attack such as the data destruction attacks on Saudi Aramco and on Qatar’s RasGas gas company in 2012 or unintentional (the vast majority of reported cyber incidents are ‘accidental in nature’ as reported by the Repository of Industrial security incidents, 2011), billions of dollars are lost every year because of them. Night Dragon, Shamoon, Flame, and Duqu have joined Stuxnet in the past few years and more will come.
A study by Fox-IT reported that 60 percent of oil and gas companies do not have a cybersecurity incident response plan. In addition, only 11 percent are fully confident that they can address a cybersecurity breach appropriately. Twenty-three percent admitted that they are not actively monitoring their network for potential intrusions.
How can Cisco help your energy organization? You can find out more by visiting our cisco.com website, and check out the Security for Industrial Networks Overview/White Paper (don’t worry, it’s less than 3 pages!).
And, of course, you can also visit us Cisco Live: there you’ll see how the Cisco Secure Ops Solution is relevant to many industries and is helping tackle our customers’ security challenges. A combination of technology, software and services expertise, Secure Ops Solution can help you increase your security response levels significantly – before, during and after an attack, across the entire attack continuum.
Don’t forget our other presence there around the Collaborative Operations Solution, which my colleague Suresh Venkat talks about here: What does a Cisco Live Demonstration have to do with droughts, floods and fossil fuels?
We look forward to seeing you in the Process Manufacturing Secure Industrial Networks booth at the World of Solutions next week.
As always – comments are always appreciated and we respond to questions!
Tags: Cisco Secure Ops, cybersecurity, data, Digital transformation, Energy/Utilities, Internet of Everything, IoE, oil and gas, Secure Ops Solution, utilities
In the first six months of 2013, 53 percent of cybersecurity incidents were in the energy sector, according to the Department of Homeland Security. As cyber-attacks are becoming increasingly prevalent in industries that support our critical infrastructure, it’s crucial that business leaders adopt security process designed to address these new threats. Are you ready?
While I was at CERAWeek last month, former US Secretary of Energy, Daniel B. Poneman, and Under Secretary, NPPD, US Department of Homeland Security, Suzanne Spaulding had a message to attendees. Their message was clear:
Cyber Security is a “C-Suite” topic of Enterprise Risk Management.
Their recommendations are strong: Security needs to be baked it in from the beginning! Physical and Cyber Security and Secure Coding of Software!
• Implement Layered Protection; we cannot depend on just a perimeter defense
• Apply Cyber Security Framework: 1. Assess, 2. Protect, 3. Detect, 4. Respond, 5. Recover
• Attend to the nexus of Physical and Cyber Security
• Test your response, including business recovery and continuity
Digital strategy and business strategy are becoming one and the same. Forward-looking energy firms see opportunity in today’s turbulent market and seek to pull ahead by changing their operating models through the Internet of Everything (IoE). Transformative digital technologies have to potential to deliver many advantages to O&G firms, including increased business agility and risk awareness, lower cost of operations, and reduced downtime. But before the industry can embrace these new strategies, an effective, end-to-end cybersecurity approach—including alignment between IT and OT—is needed.
Security a Catalyst for Transformation
Digital transformation means that a range of new and diverse devices are connecting to industrial oil and gas networks, generating greater amounts of data. When managed effectively, this data delivers the right information to the right place, at the right time, helping create a competitive advantage. However, as the IoE proliferates, the accompanying explosion of devices and applications will lend itself to increased areas of attack that criminals will seek exploit.
Oil and gas companies must replace traditional approaches like physical segmentation and security by obscurity. They need an integrated approach where information flows in real time to enable immediate action. Cybersecurity doesn’t need to be an inhibitor. It should be the catalyst for new ways of working. It can help oil and gas companies work more safely and better protect the environment by obtaining remote visibility and control over operations, including processes in refineries. It can make processes more efficient, increase production and reduce overall costs.
Addressing the Entire Threat Continuum
Cyber-attacks occur on a continuum of before, during, and after. The same digital hyper-connectivity that oil and gas managers use to collect data and control machines and processes, can also allow cyber attackers to get into system networks and steal or alter classified information, disrupt processes and cause damage to equipment. Threats to a company’s information systems and assets could come from anywhere. State and non-state actors from around the globe are constantly working to penetrate the networks of energy providers and other critical infrastructures in the U.S.
Energy firms must address this entire continuum with a visibility-driven, threat -focused, and platform-based framework:
- Visibility-driven means having an accurate, real-time view of the network fabric, endpoints, mobile devices, applications, virtual environments, the cloud, and their interrelationships. High visibility allows you to make sense of billions of devices, applications, and their associated information, while helping you see an attack coming, control the environment, and mitigate threats.
- Threat-focused means focusing on detecting, understanding, and stopping threats. Policies and controls reduce the surface area of attack, but threats still get through. Focusing on threats can help you identify threats and indicators of compromise based on a well-honed understanding of normal and abnormal behavior. This requires continuous analysis and real-time cybersecurity intelligence across all technologies. With contextual awareness, you can identify false-positives and assess the impact of a threat.
- Platform-based means we have an integrated system of agile and open platforms that cover the network, devices and the cloud. It is a true platform of scalable, easy-to-deploy services and applications. You gain powerful end-to-end visibility with centralized management for unified policy and consistent controls
Securely Converge IT and OT
As oil and gas companies embrace the IoE, they bring together the use of information technology (IT) and operational technology (OT). Security needs to be as pervasive and applied in a unified way across the extended network. Physical and cybersecurity solutions must work intelligently together to reduce unauthorized system access – in order to protect networks, devices, applications, users and data. For example, in many oil and gas companies today, upstream and downstream domains use different solutions for common tasks such as asset performance management. In addition, OT is often managed autonomously from IT, even for critical functions such as reliability and cybersecurity.
Cisco has the broadest set of solutions covering the broadest set of attack vectors, leveraging both global and local intelligence. Cisco’s Secure Ops Solution is helping oil and gas companies secure industrial control networks by combining on-premises technology, processes, and managed services. For example, Royal Dutch Shell (Shell) was challenged with increasing its security maturity level. By implementing the Secure Ops Solution, Shell was able to improve its cyber security and risk management, lowering costs of delivery while significantly reducing its costs of securing the process control systems that keep billions of pounds of toxic material under control. Cisco Secure Ops Solution provides remote proactive monitoring and Service-Level-Agreement (SLA) driven management of security, applications and infrastructure, making it easier to:
• Manage cyber-security risk.
• Support compliance.
• Secure the perimeter between enterprise and operational networks.
• Implement and maintain layered security controls
How can Cisco help your energy organization? Read More »
Tags: Cisco, Cisco Secure Ops, cybersecurity, data, Digital transformation, Energy/Utilities, Internet of Everything, IoE, oil and gas, utilities
Cybersecurity is a company-wide initiative. It touches every line of business, the technology, the fabric of the organization, its culture, brand and reputation. Customers are telling us that their most important issues are security and assuring the integrity of the products and data in their networks. In light of the heightened potential for cyber threats, trust is more important than ever throughout the entire IT industry. A trustworthy product requires that security be integrated throughout the product lifecycle based on a transparent and open culture of the company, its policies, its processes, its supply chain, and its partners.
John Stewart, Senior Vice President and Chief Security and Trust Officer here at Cisco, drives trustworthy systems development, supply chain security, cloud security and customer data protection, as well as validation of Cisco’s cyber security practices. This week, John was presented with the RSA Conference Award for Excellence in Information Security during the conference keynote. We are excited for John and see the award as recognition of the work Cisco is doing around the world to raise security awareness and the importance of trust, accountability and transparency from IT vendors.
I was chatting with John after the award presentation and he told me what an honor it was to receive this level of recognition, because it affirms we’re on the right path. We recognize the enormity of the security task before us and it makes us all proud to work for a company that is totally committed to the security of our solutions and of our company.
You can read more about the award here.
Tags: cybersecurity, security