Gartner is taking notice of the rise in risk to Cyber-Physical Systems (CPS) and is shining its light on Radiflow’s Risk Assessment and Management solution. In its just-published Hype Cycle for Cyber Risk Management 2023, Gartner has determined that OT Risk Management solutions have penetrated nearly half their target audience and have already begun to deliver high benefit. And Radiflow’s CIARA Risk Assessment and Management is among its featured, hype cycle solutions.
CPS – The Burgeoning Cyber Battleground
Becoming a mainstay in critical infrastructure, manufacturing, and a multitude of other industrial settings, Cyber-Physical Systems increasingly connect processes and people. The growing connections between IT and OT networks, the explosion of IIoT devices, and the sharing of real-time, mission-critical industrial and business data are producing a rapidly growing attack surface. Attackers are spotting the surge in value of industrial operations and data, and are on the hunt for the many new vulnerabilities and entry points that are becoming available.
To cope, OT operators need to boost their risk management efforts beyond traditional information risk management to include operational resilience not only because CPS cyber incidents can have profound financial impact, but they can also threaten production, safety, and even human life. Just as OT risk extends to the physical plane, operators must extend their concern to physical perimeter breaches, jamming, hacking, spoofing, tampering, command intrusion, and malware implanted in physical assets like Industrial IoT devices (IIoT), PLCs, and complex machinery.
Cyber-Physical Systems provide numerous reasons for concern:
CIARA Risk Assessment and Management
Vendors who provide comprehensive CPS security-posture risk assessment are still emerging. Among those Gartner singles out is Radiflow CIARA.
CIARA is the first-of-its-kind ROI-driven risk assessment and management platform specifically for industrial organizations. Using thousands of data points for network, asset, locale, industry, adversary capabilities and attack tactics, it calculates the per-zone likelihood of attacks and the effectiveness of corresponding risk-mitigation measures (installed and proposed). It also accounts for the impact of attacks on business processes.
CIARA determines the key indicators for risk, threat, and control levels, and delivers a comprehensive hardening plan (compliant with ISA/IEC 62443, NIST CSF, industry best practices), prioritized by each control’s contribution to achieving risk management goals. CIARA also empowers CPS owners and operators with the ability to optimize their OT security expenditure.
CIARA can be integrated with Radiflow’s Threat Detection platform, providing a complete protective shield for CPS. It can also be integrated with other types of cybersecurity systems (e.g., SIEMs).
Recommendations
Radiflow makes several important recommendations for critical infrastructure and industrial organizations:
CIARA not only helps operators follow these recommendations, but also delivers a comprehensive hardening plan (compliant with ISA/IEC 62443, NIST CSF, industry best practices), prioritized for achieving risk management goals and highest cybersecurity ROI.
Details on CIARA can be found here.
Contact Radiflow to see CIARA in your environment.
Radiflow is excited to be considered a leader in Gartner’s just-released Hype Cycle 2023 for CPS Risk Management.
Strengthening OT Resilience: Protecting Critical Systems in a Rapidly Evolving Threat Environment
Quarterly ICS Security Report 2024 Q3
Cybersecurity e Safety: le sfide della Transizione 5.0 | 15 novembre 2024