New ISA Book Introduces an Inexpensive, Easy-to-Understand way to Protect Against Industrial Cyberattack

ISA

Aug 9, 2019

With their advanced, microprocessor-based technologies, today’s industrial automation and control systems (IACS) deliver much-improved performance and features compared to their analog counterparts. 

Unfortunately, these newer, networked systems-with their ability to be configured remotely-are more vulnerable to cyberattack.

Security PHA Review for Consequence-Based Cybersecurity, a new book published by the International Society of Automation (ISA), introduces an easy-to-follow, cost-effective methodology for safeguarding critical infrastructure and process industry facilities from cyberwarfare and other forms of cyber-risks.

The book illustrates how a Security Process Hazards Analysis (PHA) Review identifies hackable scenarios, ranks them appropriately, and pinpoints non-hackable safeguards-such as relief valves and current overload relays-that are not vulnerable to cybersecurity threats.

Written by Edward Marszal, PE, and James McGlone-two globally recognized experts in process safety, industrial cybersecurity, and the ISA/IEC 62443 series of IACS security standards-the book is designed to deliver clarity, simplicity, and confidence to those responsible for industrial cybersecurity.

“We were prompted to write this book because the industry and the cybersecurity practitioners are still unsure of what to do and why,” emphasizes McGlone. “In addition, the current approach in industrial cybersecurity focuses on network devices such as computers, Level 3 switches, and firewalls instead of on the process and machines that could be damaged or cause damage if control is lost.

“By analyzing the cause of and safeguards for cybersecurity weaknesses,” McGlone explains, “it’s possible to determine consequences that are potentially unaffected by the safeguards and those that could be caused by malicious intrusion, such as hacking. Any consequence that is not protected by existing safeguards or that can be caused by a cybersecurity attack is assigned an ISA/IEC 62443-based Security Level Target to be implemented or it is assigned an alternative safeguard or redesign to eliminate all or some of the cybersecurity risk.”

McClone points out that the book is targeted to a wide range of automation and process industry professionals, including:

  • Instrumentation and control system engineers and technicians
  • Network engineers
  • Process safety, health and safety, cybersecurity, and maintenance personnel
  • Executives focused on risk reduction

——————

To purchase a copy of Security PHA Review for Consequence-Based Cybersecurityclick here.

For more details, read the informative author interview
For greater perspective on the value and significance of the new book as well a more detailed overview of its content, read the Q&A feature with one of the book’s authors.

Source

Related Articles


Changing Scene

  • Investment in the Residential Sector Declines in January 2024

    Investment in the Residential Sector Declines in January 2024

    Investment in building construction declined 0.9% to $19.7 billion in January. The residential sector declined 1.4% to $13.6 billion, while investment in the non-residential sector edged up 0.2% to $6.1 billion. On a constant dollar basis (2017=100), investment in building construction fell 0.9% to $12.1 billion in January. Investment in residential building construction declined by $194 million (-1.4%) to $13.6 billion in January. Read More…

  • OmniCable Promotes Georgia Sipsis to National Sales Manager – Canada

    OmniCable Promotes Georgia Sipsis to National Sales Manager – Canada

    Omni Cable LLC is proud to announce the promotion of Georgia Sipsis to OmniCable’s National Sales Manager-Canada. In this role, Sipsis is responsible for overseeing all Canadian sales.  “Georgia has been a vital member of the OmniCable Canada team and has made significant contributions cultivating and creating new customer relationships across Ontario and Eastern Canada,… Read More…


Peers & Profiles

  • Taken from Graybar Canada Linkedin Post Enjoy a glimpse of the wonderful moments from Graybar Canada’s recent customer appreciation BBQs! The company was grateful for the smiles and connections made with our amazing customers and vendors. They are looking forward to the next gathering! Source Read More…

  • Article taken from Linkedin Post Electrozad is thrilled to spotlight their Chatham Branch and recognize their exceptional efforts in cleaning up their community. The team took time to coordinate a community clean-up around their branch. This is a commendable initiative that not only helps maintain the cleanliness and hygiene around the branch but also contributes… Read More…