OT/IT Convergence challenge for a Manufacturing major
A manufacturing organization was facing various challenges in managing its complex and distributed OT networks. Due to compliance regulations in certain countries they operate in they also had to have connectivity between their shop floors and different entities outside India. With such clear and present threat vectors that they were aware of, they wanted to implement security controls to minimize their threats especially at their main manufacturing plants and subsequently over a period over a couple of years in their other plants.
Challenges
The following were their major pain points to address:
Lack of visibility into its distributed OT networks
Lack of understanding on OT vulnerabilities and threats
Lack of insights to take action in case of a potential cyber attack
Multiple connection points between IT and OT, with some connectivity even with third parties (due to compliance reasons)
The Solution
Pragya’s consulting process involved site visits and audit of their physical systems before arriving at a potential recommendation. Packet captures were taken from their systems to analyse and report initial findings post site visits and meetings.
The solution proposed included implementing :
Endpoint security at plant workstations
USB access restrictions in OT systems
Complement their existing ruggedized firewall with asset and anomaly detection software for visibility and insights on their physical IT and OT assets
Outcomes
The outcome of the process defined a detailed bill and material and scope of work that was to be executed to achieve the above solutions.