Latest SANS ICS Survey reinforces 2019 is the year for ICS Cyber Security: Organizations are advancing their efforts and making investments to rapidly deploy OT cybersecurity programs and technology
SAN FRANCISCO, June 12, 2019 — Nozomi Networks, Inc., the leader in industrial cyber security and operational visibility, today announced its contribution to the SANS 2019 State of OT/ICS Cybersecurity Report. Released today, and echoing Nozomi Networks own experiences with customers worldwide, the survey finds that ICS cyber security threats remain high and present evolving challenges. However, since the last SANS OT/ICS report released in 2017, a growing majority of organizations have significantly matured their security postures over the last two years and are adopting strategies that address OT/IT convergence.
“The findings in this latest SANS report make it clear that 2019 is the year for ICS cyber security,” said Nozomi Networks CEO Edgard Capdevielle. “We see the urgency and growing demand every day as more and more industrial companies around the world reach out to us for help in aggressively arming themselves against cyber threats rising in number, persistence and strength. ICS cyber security is a priority and organizations are strengthening their cyber security posture with innovative OT security technologies that provide deep visibility and control across OT and IT.”
ICS Cyber Security Risk Has Improved – But Remains High
Half of this year’s respondents rate their ICS security threat as high or severe. While down significantly from 2017, it is still a daunting number that reinforces the fact that even as organizations make OT cyber security a priority, cyber attacks and data breaches continue to rise and are evolving as OT and IT converge and organizations adopt mobile and wireless capabilities.
ICS Cyber Security Postures are Maturing
This year’s survey found most organizations are now taking ICS threats seriously and are making solid progress in maturing their security postures.
OT/IT Convergence is the Norm
This year’s survey found most organizations now embrace OT/IT convergence – while there’s still much to do as organizations work to align their corporate priorities and maintain their budgets.
Mobile and Wireless – the Underestimated Threat
Cyber security challenges are expanding as ICS boundaries become broader, interwoven and interdependent, exchanging information with myriad other systems and processes. Challenges in this area include mobile and wireless devices, which respondents give a low level of risk. The report points out that some mobile applications replace engineering workstation applications, and they should treat their risk at a higher level. Also, wireless communication is becoming more widely used to transfer data from sensor networks. This further increases the attack surface and opens an organization up to severe consequences if compromised.
About SANS Institute
The SANS Institute was established in 1989 as a cooperative research and education organization. SANS is the most trusted and, by far, the largest provider of training and certification to professionals at governments and commercial institutions world-wide. Renowned SANS instructors teach over 50 different courses at more than 200 live cyber security training events as well as online. GIAC, an affiliate of the SANS Institute, validates employee qualifications via 30 hands-on, technical certifications in information security. The SANS Technology Institute, a regionally accredited independent subsidiary, offers master’s degrees in cyber security. SANS offers a myriad of free resources to the InfoSec community including consensus projects, research reports, and newsletters; it also operates the Internet’s early warning system–the Internet Storm Center. At the heart of SANS are the many security practitioners, representing varied global organizations from corporations to universities, working together to help the entire information security community. (www.SANS.org)
Nozomi Networks protects the world’s critical infrastructure from cyber threats. Our platform uniquely combines network and endpoint visibility, threat detection, and AI-powered analysis for faster, more effective incident response. Customers rely on us to minimize risk and complexity while maximizing operational resilience. www.nozominetworks.com
Jill Backstrom
jil.backstrom@nozominetworks.com - 303.913.1650
Read the Nozomi Networks Blog - Follow Nozomi Networks on Twitter and LinkedIn