Cyber security tackling the risks with new solutions and co-operation Miikka Pönniö 22.9.2015



Similar documents
Protecting productivity with Plant Security Services

Honeywell Industrial Cyber Security Overview and Managed Industrial Cyber Security Services Honeywell Process Solutions (HPS) June 4, 2014

GE Measurement & Control. Cyber Security for Industrial Controls

Core Solutions of Microsoft Exchange Server 2013

COURSE OUTLINE MOC 20341: CORE SOLUTIONS OF MICROSOFT EXCHANGE SERVER 2013 MODULE 1: DEPLOYING AND MANAGING MICROSOFT EXCHANGE SERVER 2013

Ovation Security Center Data Sheet

Using Monitoring, Logging, and Alerting to Improve ICS Security ICSJWG 2015 Fall Meeting October 27, 2015

ABB s approach concerning IS Security for Automation Systems

LogRhythm and NERC CIP Compliance

IBM Cloud Security Draft for Discussion September 12, IBM Corporation

Critical Security Controls

Core Solutions of Microsoft Exchange Server 2013 MOC 20341

Ovation Security Center Data Sheet

Overcoming PCI Compliance Challenges

Full-Context Forensic Analysis Using the SecureVue Unified Situational Awareness Platform

Cyber Security Compliance (NERC CIP V5)

MS 20341B: Core Solutions of Microsoft Exchange Server 2013

SANS Top 20 Critical Controls for Effective Cyber Defense

Supporting our customers with NERC CIP compliance. James McQuiggan, CISSP

ABOUT THIS COURSE AT COURSE COMPLETION PREREQUISITES COURSE OUTLINE. Core Solutions of Microsoft Exchange Server 2013 Duration : 5 days

Cyber Security for NERC CIP Version 5 Compliance

20341 Core Solutions of Microsoft Exchange Server 2013

Industrial Security for Process Automation

Critical Controls for Cyber Security.

IIABSC Spring Conference

Introduction to Cyber Security / Information Security

IT Security Strategy and Priorities. Stefan Lager CTO Services

IBM Security QRadar SIEM & Fortinet FortiGate / FortiAnalyzer

Control System Integrity (CSI) Tools and Processes to Automate CIP Compliance for Control Systems

IBM QRadar Security Intelligence April 2013

GE Measurement & Control. Cyber Security for NERC CIP Compliance

Core Solutions of Microsoft Exchange Server 2013

Operational Continuity

Verve Security Center

NERC Cyber Security. Compliance Consulting. Services. HCL Governance, Risk & Compliance Practice

North American Electric Reliability Corporation (NERC) Cyber Security Standard

Increase insight. Reduce risk. Feel confident.

Designing and Deploying Messaging Solutions with Microsoft Exchange Server 2010 Service Pack 2 MOC 10233

EMERGING THREATS & STRATEGIES FOR DEFENSE. Stephen Coty Chief Security

External Supplier Control Requirements

Security Solutions to Meet NERC-CIP Requirements. Kevin Staggs, Honeywell Process Solutions

TRIPWIRE NERC SOLUTION SUITE

Patching & Malicious Software Prevention CIP-007 R3 & R4

TOP 10 WAYS TO ADDRESS PCI DSS COMPLIANCE. ebook Series

Security for. Industrial. Automation. Considering the PROFINET Security Guideline

Cyber Risk Mitigation via Security Monitoring. Enhanced by Managed Services

How To Secure Your System From Cyber Attacks

ForeScout CounterACT CONTINUOUS DIAGNOSTICS & MITIGATION (CDM)

Course 20341B: Core Solutions of Microsoft Exchange Server 2013 OVERVIEW

Changing the Enterprise Security Landscape

APPENDIX G ASP/SaaS SECURITY ASSESSMENT CHECKLIST

Build Your Knowledge!

8/27/2015. Brad Schuette IT Manager City of Punta Gorda (941) Don t Wait Another Day

TASK TDSP Web Portal Project Cyber Security Standards Best Practices

Lifecycle Solutions & Services. Managed Industrial Cyber Security Services

The SIEM Evaluator s Guide

Core Solutions of Microsoft Exchange Server 2013 Course 20341B; 5 days, Instructor-led

Caretower s SIEM Managed Security Services

Completed. Document Name. NERC CIP Requirements CIP-002 Critical Cyber Asset Identification R1 Critical Asset Identifaction Method

GE Oil & Gas. Cyber Security for NERC CIP Versions 5 & 6 Compliance

Securing Industrial Control Systems in the Chemical Sector. Roadmap Awareness Initiative Making the Business Case

Technology Solutions for NERC CIP Compliance June 25, 2015

Stronger than Firewalls And Cheaper Too

IBM Security QRadar Risk Manager

Core Solutions of Microsoft Exchange Server 2013

Big Data and Security: At the Edge of Prediction

Designing and Deploying Messaging Solutions with Microsoft Exchange Server 2010

SourceFireNext-Generation IPS

ABB Automation Days, Madrid, May 25 th and 26 th, Patrik Boo What do you need to know about cyber security?

NERC CIP Compliance with Security Professional Services

Core Solutions of Microsoft Exchange Server 2013 Course 20341A; 5 Days

Unified Cyber Security Monitoring and Management Framework By Vijay Bharti Happiest Minds, Security Services Practice

Course: Information Security Management in e-governance. Day 1. Session 5: Securing Data and Operating systems

Guidelines for Website Security and Security Counter Measures for e-e Governance Project

The Protection Mission a constant endeavor

Core Solutions of Microsoft Exchange Server 2013

OFFICE OF ENTERPRISE TECHNOLOGY SERVICES QUARTERLY REPORT ON

Top Five Ways to Protect Your Network. A MainNerve Whitepaper

BeyondInsight Version 5.6 New and Updated Features

Redefining Incident Response

Solutions and IT services for Oil-Gas & Energy markets

Extreme Networks Security Analytics G2 Risk Manager

SMALL BUSINESS PRESENTATION

Symphony Plus Cyber security for the power and water industries

Microsoft s cybersecurity commitment

IBM Security QRadar Risk Manager

CYBER SECURITY AND RISK MANAGEMENT. An Executive level responsibility

Prevent cyber attacks. SEE. what you are missing. Netw rk Infrastructure Security Management

Designing and Deploying Messaging Solutions with Microsoft Exchange Server 2010 Service Pack 2

Ahead of the threat with Security Intelligence

North American Electric Reliability Corporation: Critical Infrastructure Protection, Version 5 (NERC-CIP V5)

Addressing the SANS Top 20 Critical Security Controls for Effective Cyber Defense

Virtual Patching: a Proven Cost Savings Strategy

AUDIT LOGGING/LOG MANAGEMENT

Best Practices to Improve Breach Readiness

Olav Mo, Cyber Security Manager Oil, Gas & Chemicals, CASE: Implementation of Cyber Security for Yara Glomfjord

I will cover. Cyber Security and other recent performance audits. Report # 8 Why this audit? Background. Audit objective.

CYBER SECURITY. Is your Industrial Control System prepared?

Click to edit Master title style. How To Choose The Right MSSP

GE Measurement & Control. Top 10 Cyber Vulnerabilities for Control Systems

Transcription:

Siemens Osakeyhtiö Cyber security tackling the risks with new solutions and co-operation Miikka Pönniö 22.9.2015 Restricted Siemens Osakeyhtiö 2015. All Rights Reserved. siemens.fi/answers

Cyber security in Industrial Control Systems Trend Modern industrial control systems (ICS) offer new functionalities, which, if stay unused and unmanaged, can increase the risk of being affected by vulnerabilities or attacks. Assess Within industries there are a lot of innovations and developments built around connectivity. Ever-growing amounts of data is collected from different sources in order to enhance productivity and empower business decisions. This rapidly expanding data interconnectivity, coupled with the rising number and complexity of cyber-attacks targeting ICS systems, poses new challenges in securing the industrial control systems. Implement Manage Restricted Siemens Osakeyhtiö 2015. All Rights Reserved.

Siemens Plant Security Services - Secure Your Production and Intellectual Property with Siemens Services On-Demand Incident Handling Risk & Vulnerability Assessment Addresses all aspects Network Security Monitoring Managed Plant Perimeter Next-Generation Firewall Security Assessment for Plants Automation Network design and validation Quarterly Firewall Rule Review Patch & Vulnerability Management Support Managed Anti-Virus Solution Managed Application Control Solution Mitagation Risk Management Identification Mitigation Operation Risk Classification Awareness Host Security Network Security Monitoring Incident Response Operator Security Awareness Training Mitigation Implement Mitigation Design Policies, Processes, & Procedures Consulting Microsoft OS Patch Deployment Disaster Recovery Support: System Backup Network Security Monitoring Component Design & Deployment Anti-Virus Agent Deployment Anti-Virus Agent Deployment Anti-Virus Server Deployment Plant Perimeter Next-Generation FW Design & Deployment Network Security Consulting Restricted Siemens Osakeyhtiö 2015. All Rights Reserved. Automation Network implementation Clean Slate Validation AD Group Policy Design & Deployment Windows Local Policy Design & Deployment

Siemens Plant Security Services - SIEM - Security Information and Event Management service & Next Generation Firewall Technical implementation modules Industrial Security Services Customer Site CSOC Reporting Technological concept Implementation project Activation of service center Continuous monitoring & monthly reports Incident response Forensic analysis Next Generation Firewall Log Management Secured Connection Data Analytics Data Mgmt. Security Management Central management of all information Creation of events, alarms and reports Forensic analysis support Event Correlation Advanced data analysis and correlation Security Expertise Log Management Storage of raw log data Security Management Event Correlation Log Management Data acquisition from various sources Provision of normalized logs to security management Restricted / Siemens Osakeyhtiö 2015. All Rights Reserved.

Industrial Security Siemens has a comprehensive organization to handle all aspects of Industrial Security R&D Marketing Service & Support Security Network Establish a Security Network to react quickly in case of emergency drive and coordinate all security relevant topics External Partners Product Management Standardization & Regulations Anti-malware / Security companies Governmental Departments CERTs Security Network of Software OEMs Customers Restricted / Siemens Osakeyhtiö 2015. All Rights Reserved.

Thank you! Siemens Osakeyhtiö Miikka Pönniö miikka.ponnio@siemens.com +358 50 3468928 Restricted Siemens Osakeyhtiö 2015. All rights reserved Unrestricted Siemens AG 2015. All rights reserved