Network Architecture | SANS ICS Concepts
HTML-код
- Опубликовано: 10 фев 2025
- This SANS ICS concept overview covers considerations for using well-planned network architectures to improve the security of ICS environments. The design of a process control network and its connection to the business network and internet are critical considerations for ensuring the availability and resiliency of the process. Following the principles outlined by the Purdue Enterprise Reference Architecture (PERA) model, aka Purdue model, and improvements specified in ISA/IEC 62443 will help organizations with these efforts.
Script by Don C. Weber (@cutaway), Certified SANS Instructor and Cutaway Security, LLC
Don C. Weber is the Principal Consultant and Founder at Cutaway Security, LLC, an information security consulting company based in Texas. Don's previous experiences include large-scale incident response efforts for organizations with international assets and interests, the certification and accreditation of classified federal and military systems, assessment and penetration testing of worldwide commercial assets, and, as a Navy contractor, the management of a team of distributed security professionals responsible for the security of mission-critical Navy assets. Don has achieved his master's degree in network security, the Certified Information Systems Security Professional (CISSP) certification, and many GIAC certifications. Don was a founding member of the GIAC Ethics Council of which he was the GIAC EC Chair in 2009. Don regularly contributes to a wide variety of open source projects involving information security and incident response. Learn more about Don at www.sans.org/p...
References:
CISA Alerts
Alert (TA15-120A) Securing End-to-End Communications - us-cert.cisa.g...
Alert (TA17-075A) HTTPS Interception Weakens TLS Security - us-cert.cisa.g...
PERA Model - en.wikipedia.o...
ISA / IEC 62443 - en.wikipedia.o...
SANS ICS410 Posters - www.sans.org/s...
SANS ICS410 Reference Model Poster - www.sans.org/s...
SANS ICS Training:
ICS410: ICS/SCADA Security Essentials - www.sans.org/c...
ICS456: Essentials for NERC Critical Infrastructure Protection - www.sans.org/c...
ICS515: ICS Active Defense and Incident Response - www.sans.org/c...
ICS612: ICS Cybersecurity In-Depth - www.sans.org/c...