Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • Tripwire survey finds 93% fear cyberattacks shutting down operations

Security

Tripwire survey finds 93% fear cyberattacks shutting down operations

Tripwire has announced the results of a survey examining how organisations are addressing industrial control system (ICS) cyber threats.


Image Shutterstock

The survey was conducted by Dimensional Research last month and its respondents included 263 ICS security professionals at energy, manufacturing, chemical, dam, nuclear, water, food, automotive and transportation organisations.

According to Tripwire’s survey, 93% were concerned about cyberattacks causing operational shutdown or customer-impacting downtime. In an effort to prepare against such threats, 77% have made ICS cybersecurity investments over the past two years, but 50% still feel that current investments are not enough.

Advertisement
Marshall RT

“Cyberattacks against critical infrastructure and manufacturers pose a real threat to the safety, productivity and quality of operations,” said Kristen Poulos, vice president and general manager of industrial cybersecurity at Tripwire. “In these environments, where virtual and physical converge, cyber events can interfere with an operator’s ability to view, monitor or control their processes. Investing in industrial cybersecurity should be a priority in protecting operations from disruption.”

Of the 50% who felt current investments were not enough, 68% believe it would take a significant attack in order for their organisations to invest more. Only 12% of all respondents expressed a high level of confidence in their ability to avoid business impact from a cyber event.

In assessing industrial organisations’ current set of basic cybersecurity capabilities, the survey found the following:
•    Only 52% have more than 70% of their assets tracked in an asset inventory.
•    Almost one-third (31%) of organisations do not have a baseline of normal behavior for their operational technology (OT) devices and networks.
•    Less than half (39%) do not have a centralized log management solution in place for their OT devices.

Poulos added: “Visibility, although the first step, is commonly the biggest hurdle when it comes to protecting ICS environments from cyberattacks. Organisations can gain visibility of their OT networks without disrupting their processes by following methods that meet the unique needs and requirements of OT devices. This includes passive monitoring of network traffic to identify assets, and baselining normal activity to spot anomalies, and analyzing log data for indications of cyber events. With that visibility, organisations can effectively implement additional protective controls, such as industrial firewalls to segment critical assets and establish secure conduits.”

Additional findings include:
•    About half (49%) said that collaboration between IT and OT has improved over the past two years.
•    More indicated that IT is taking the lead on ICS security (44%) vs. OT (14%); 35% said it is evenly split between IT and OT.
•    More than three-fourths (79%) say there is a gap in training OT and IT staff on the unique needs and requirements for securing OT environments. Of those who made cybersecurity investments over two years (77%), education and training was the most common investment (82%).

Advertisement
Marshall RT

For more findings on Tripwire’s survey, click here

 

Advertisement
General Atomics LB General Atomics LB
KPMG joins drive to recruit prison leavers

Security

KPMG joins drive to recruit prison leavers

24 April 2024

Britain's biggest businesses are being urged by the government to recruit prison leavers as part of a national campaign, supported by KPMG UK, to reduce reoffending and grow the economy.

PA Consulting launches Secure Futures report

Defence Security Space

PA Consulting launches Secure Futures report

24 April 2024

PA Consulting has announced the launch of its Secure Futures report, part of its Secure Futures series providing insights and events emphasising the importance of collaboration in delivering a secure future.

UK government plan to save 38 million hours of police time

Security

UK government plan to save 38 million hours of police time

24 April 2024

Thirty-eight million hours of police time could be saved under a plan supported by the UK government, as the drive continues to free up officers’ time so they can focus on keeping our streets safe.

Mitie Care & Custody awarded contract for UK’s first all-electric ‘green’ prison

Security

Mitie Care & Custody awarded contract for UK’s first all-electric ‘green’ prison

24 April 2024

Mitie Care & Custody has been awarded the contract to operate HMP Millsike, the UK’s first all-electric prison that will provide around 1,500 places. 

Advertisement
ODU RT 2
UK Fire and Rescue Service convoy to deliver equipment to Ukraine

Security

UK Fire and Rescue Service convoy to deliver equipment to Ukraine

23 April 2024

A convoy of life saving fire and rescue service equipment, coordinated by FIRE AID, will begin its journey to Ukraine today to deliver vital equipment to Ukrainian firefighters.

NCSC appoints Richard Horne as new CEO

Security

NCSC appoints Richard Horne as new CEO

23 April 2024

Richard Horne has been appointed as the new CEO of the National Cyber Security Centre (NCSC) and GCHQ Board member.

Advertisement
ODU RT 2