Applying IP network guidance has harmed control system field devices and legacy control systems

I continue to be very concerned that both private sector and public sector policy-making organizations (square peg) simply don’t have the control system cyber security technical depth to be making decisions about cybersecurity of control systems (round hole). There have been many documented cases where applying IP network mitigations has caused very significant problems to control systems and control system field devices. This is not just a US problem. Recently, Germany’s cyber security policy-making organization (square peg) conducted tabletop exercises focused on power generation without any input from the power generation engineering organizations (round hole). Control system cyber security training that includes unique issues like process sensors, system interactions, and common cause failures are needed to educate both the workforce and policymakers.

https://www.controlglobal.com/protect/cybersecurity/blog/21436469/applying-ip-network-guidance-has-harmed-control-system-field-devices-and-legacy-control-systems

http://www.realtimeacs.com

Control Systems Cybersecurity Expert, Joseph M. Weiss, is an international authority on cybersecurity, control systems and system security. Weiss weighs in on cybersecurity, science and technology, security emerging threats and more.