IOT World conference observations – Cyber security of process sensors still not on the radar screen

May 19, 2019
The demonstrations and presentations at IOT World demonstrated that with AI and machine learning, it appears possible to provide real time machine health and remaining equipment life which has been a long-time dream. However, the IOT data analytics are based on untrusted data and this was not questioned. It also implies the industrial clouds are based on untrusted data.

I attended IOT World in Santa Clara, CA May 14-16, 2019 which also included the SiliconValley AgTech Conference May 13th. The demonstrations and presentations of IOT and big data analytics were incredible. Between AI and machine learning, it appears possible to provide real time machine health and remaining equipment life which has been a long-time dream. These prognostications also extend to sensors by monitoring Ethernet IP sensor packets. However, there was effectively no discussions of sensor data before they became Ethernet packets. As there is no cyber security or authentication in legacy process sensors, IOT data analytics are based on untrusted data and this was not questioned. It also implies the industrial clouds are based on untrusted data.

 A related issue were the discussions by CISOs on cyber security. The "I" in CISO is for "Information". Therefore, CISOs will be aware of network considerations, but may not be cognizant about control system issues at the field device level and may not be interacting with Operations and Maintenance management. There is a need to train people that report to the CISO about control system-specific issues in addition to OT network issues. Without this training, the CISO is at risk from missing key information (malicious scenarios that aren't OT network-related) and systems interaction issues (unintentional consequences caused by network security tools and policies) that could be critical to any industrial/manufacturing organization. 

Joe Weiss

Sponsored Recommendations

Make Effortless HMI and PLC Modifications from Anywhere

The tiny EZminiWiFi is a godsend for the plant maintenance engineers who need to make a minor modification to the HMI program or, for that matter, the PLC program. It's very easy...

The Benefits of Using American-Made Automation Products

Discover the benefits of American-made automation products, including stable pricing, faster delivery, and innovative features tailored to real-world applications. With superior...

50 Years of Automation Innovation and What to Expect Next

Over the past 50 years, the automation technology landscape has changed dramatically, but many of the underlying industry needs remain unchanged. To learn more about what’s changed...

Manufacturing Marvels Highlights Why EZAutomation Is a Force to Be Reckoned With

Watch EZAutomation's recent feature on the popular FOX Network series "Manufacturing Marvels" and discover what makes them a force to be reckoned with in industrial automation...