Industrial Network Anomaly Detection

Jan. 8, 2015
Control system security branches out from standard IT best practices targeting specific industrial applications.

Though the Sony breach and the multiple hacks of various big box retailers got everyone’s attention on the topic of cybersecurity, there’s been a lot of working going on behind the scenes over the past few years to address specific security concerns in the industrial world.

Last month I covered Tempered Networks’ approach to industrial control system security and how its technology grew out of Boeing’s internal efforts to address cybersecurity beyond IT best practices. Now comes news of an Industrial Network Anomaly Detection (INAD) system for industry.

Released by NexDefense, a provider of cybersecurity for automation and control systems, Sophia is an INAD system is designed to give engineers, security analysts, and control system operators the ability maintain system integrity and combat sophisticated cybersecurity threats by providing real-time network information.

According to Michael Assante, NexDefense’s co-founder and chief security strategist, Sophia proactively detects anomalies in automation or control system communications that may signify an attempt to intrude or discover systems. It then alerts defenders before an adversary can have an impact.

Assante says that Sophia originated in response to the concerns of energy and defense organizations, and the recommendations of engineers assessing real-time threats and response protocols. It is the result of a collaboration between the United States Department of Energy, Battelle Energy Alliance and the cybersecurity experts of Idaho National Laboratory (INL).

NexDefense obtained the rights to Sophia in 2013 and has been beta testing it with nearly 50 organizations, spanning utilities, oil & gas, and government.

We’ll keep you posted as we hear more about Sophia as it moves into wider application following its recent release.

About the Author

David Greenfield, editor in chief | Editor in Chief

David Greenfield joined Automation World in June 2011. Bringing a wealth of industry knowledge and media experience to his position, David’s contributions can be found in AW’s print and online editions and custom projects. Earlier in his career, David was Editorial Director of Design News at UBM Electronics, and prior to joining UBM, he was Editorial Director of Control Engineering at Reed Business Information, where he also worked on Manufacturing Business Technology as Publisher. 

Sponsored Recommendations

Rock Quarry Implements Ignition to Improve Visibility, Safety & Decision-Making

George Reed, with the help of Factory Technologies, was looking to further automate the processes at its quarries and make Ignition an organization-wide standard.

Water Infrastructure Company Replaces Point-To-Point VPN With MQTT

Goodnight Midstream chose Ignition because it could fulfill several requirements: data mining and business intelligence work on the system backend; powerful Linux-based edge deployments...

The Purdue Model And Ignition

In the automation world, the Purdue Model (also known as the Purdue reference model, Purdue network model, ISA 95, or the Automation Pyramid) is a well-known architectural framework...

Creating A Digital Transformation Roadmap Using A Unified Namespace

Digital Transformation has become one of the most popular buzzwords in the automation industry, often used to describe any digital improvements to industrial technology. But what...