Industrial control systems endpoints defence guide

Posted date 22/05/2023
Autor
INCIBE (INCIBE)
Cover image Industrial control systems endpoints defence guide

For some years now, we have been talking about Industry 4.0 and the digitalization of industrial processes. This evolution has meant that the devices responsible for controlling industrial processes have been gradually replaced by others with better capabilities and greater intelligence, in addition to being able to interconnect with each other through a network.

From the moment a device connects to a network, it must be properly protected to prevent malicious actions on it, this not only applies to devices on any network, but is also applicable to industrial devices. There are multiple protection measures that adapt to the different needs that network devices may present.

When talking about an endpoint device, we are talking about an end asset present at the network level. Among these devices we can find from engineering stations (workstations), HMI, SCADA, PLC, among others. These end systems are key security hotspots because their vulnerabilities could affect other assets within the network.

This guide aims to provide information on endpoint protection through defense-in-depth, protections that can be applied to the endpoint itself, and defenses from the outside. 
 

- Layers for defense in depth. Source -

The complete guide can be downloaded at the following link: