Implement Security for measures to lower risks

Detailed consultation and planning for plant security

Implement Security refers to the implementation of protection measures to raise the security level of plants and manufacturing facilities

Your benefit:
Avoidance of security gaps and better protection against cyber threats thanks to technical and organizational measures.

Our portfolio for Implement Security

Security Awareness Training

Knowledge transfer strengthens the security awareness of personnel

  • Web-based SITRAIN trainings

  • Creation of security awareness among plant personnel: regarding to current situation and dealing with threats, risks, identification of security issues

Security Policy Consulting

Introduction of standards for plant security

  • Introduction of new and assessment of existing security-relevant standards, guidelines, and processes for plant security

  • Integration into existing cybersecurity customer guidelines

  • Implementation of recommendations, e.g. patch and backup strategy, handling removable media

Network Security Consulting

Support in the planning of secure automation networks

  • Support in the planning and segmentation of the automation network into security cells in accordance with IEC 62443 and the SIMATIC PCS 7 & WinCC security concept

  • Planning a DMZ network (perimeter)

  • Definition and review of the plant perimeter firewall rules

Perimeter Firewall Installation

First line of defense against sophisticated threats

  • Installation, configuration, and testing of the firewall and the firewall rules

  • Backup of the configuration in accordance with the automation firewall appliance

  • Consideration of customer-specific applications, e.g. adjustment of the Intrusion Detection System/Intrusion Prevention System (IDS/IPS)

Clean Slate Validation

Checking the clean security status of plant systems

  • Identification of security risks with two different virus scanners:
    McAfee Command Line Scanner and Kaspersky Rescue Disk

  • No installation necessary: use of USB sticks and command line

Anti Virus Installation

Virus protection for identifying and avoiding malware

  • Installation and configuration of virus protection software: McAfee Virusscan Enterprise

  • Installation of a central management console: McAfee ePO*
    (recommended for more than 10 anti-virus agents)

  • Compatibility review for SIMATIC PCS 7 systems

*McAfee ePolicity Orchestrator

Whitelisting Installation

Whitelisting for protection against unknown software and malware

  • Installation and configuration of whitelisting software: McAfee Application Control

  • Installation of a central management console: McAfee ePO*
    (recommended for more than 10 whitelisting agents)

  • Compatibility review for SIMATIC PCS 7 systems

*McAfee ePolicity Orchestrator

System BackUp

Creating a back-up copy of the plant data

  • Implementation of a one-time backup of critical plant systems through Symantec System Recovery software (provided by customer)

Windows® Patch Installation

Installation of Microsoft® operating system patches

  • Installation of Microsoft® operating system patches with the help of a customer-specific WSUS* server

  • Compatibility review: installation of patches recommended by manufacturers and approved by the customer

* Microsoft Windows Software Update Server

Further Plant Security Services