Фон

PT Industrial Security Incident Manager

A simple, effective solution for ICS cybersecurity

Overview

The PT ISIM hardware application performs non-stop monitoring of ICS network security, helps to detect cyberattacks in their early stages, identifies negligent or malicious actions by staff, and promotes compliance with cybersecurity legislation and industry regulations.

For small businesses

For small businesses

Ease of ICS connection and self-learning technology make PT ISIM a good fit for small businesses, especially when security staff are in short supply.

For larger companies

For larger companies

PT ISIM can power a security operations center (SOC) for monitoring of ICS threats and effective security management across geographically distributed sites.

For ICS integrators

For ICS integrators

PT ISIM can be fine-tuned for diverse threat models. Deployment for provision of commercial SOC services to ICS end clients is supported.

175,000

ICS components are accessible online

0%

of industrial companies fail to protect adequately against external cyberattacks

0%

of industrial companies are unprepared for insider threats

0%

of tested companies have networks containing dictionary passwords and out-of-date software with known vulnerabilities

0%

of attack vectors for obtaining access to ICS networks require only a low level of skill

0%

of errors and misconfigurations in filtering and segmentation of ICS networks are caused by system administrators

0%

of vulnerabilities in ICS components are of critical or high risk

Quick start and scalability

A flexible mix of components makes PT ISIM easy and quick to deploy, with minimal configuration required, on infrastructures belonging to companies in any industry. Whether rapid or gradual, scaling up is always a smooth process on even the most complex networks.

Key features

Inventory of ICS network assets

Monitoring of ICS data flows

Detection of unauthorized system administration

Detection and prevention of ICS cyberattacks

Enhanced regulatory compliance

Investigation of ICS cybersecurity incidents

ОТ Cybersecurity Framework

Protect your OT environment with Positive Technologies solutions and expertise, aligned with international best practices.

Get a practical guide to designing comprehensive cybersecurity systems and developing OT security management processes based on PT Industrial Cybersecurity Suite.

Non-stop protection and uninterrupted uptime

The monitoring architecture of PT ISIM is passive-only. Unlike other popular ICS security products, PT ISIM isolates ICS components from any possible interference.

Benefits

Uninterrupted ICS operations

The monitoring architecture of PT ISIM is passive-only. Unlike other popular ICS security products, PT ISIM isolates ICS components from any possible interference.

Automatic ICS network inventory

PT ISIM continuously conducts inventory of the ICS network, monitors its integrity, and notifies of critical changes that may indicate a security concern requiring immediate response.

Pinpoint threat detection

A proprietary database of industrial system threat indicators (PT ISTI) provides insight into the most important dangers. By combining this information with signature methods and behavioral analysis, PT ISIM possesses a full range of methods for detecting cyberattacks in their earliest stages.

Ease of deployment and scalability

A flexible mix of components makes PT ISIM easy and quick to deploy on infrastructures belonging to companies in any industry. Whether rapid or gradual, scaling up is always a smooth process.

Awareness of site and business context

PT ISIM can monitor facility-specific attack vectors. Information from analysis of site ICS security is used to tailor protection to the needs of that particular site and client.

Regulatory compliance

Protection with PT ISIM helps to stay compliant with industry and national ICS cybersecurity standards, both now and in the future.

Preventing economic losses

Setting up and maintaining an ICS network often involves numerous contractors. Sometimes these contractors even perform their jobs remotely, which opens up enormous security holes. Limiting and stopping remote desktop access is one of the most difficult but important parts of ensuring ICS security. Failure to do so can result in downtime and direct financial damage. To combat this, PT ISIM quickly flags cases of improper administration, such as upload of a project to a PLC, configuration changes, and the turning on/off of a PLC or other components.

Overview and practical Guide

How to implement security requirements based on ISA/IEC 62443-3-3

Deployment options

Hardware appliance

Data diode for guaranteed one-way traffic

Dispatch interface

Central administration and SOC monitoring

Reviews

"This is the first time, anywhere in the world, that cybersecurity has been applied in practice to the microprocessor systems that control train movement. We are grateful to Russian Railways for initiating the project and helping to see it through to completion. These results will be of interest to transportation companies around the globe".

Read success story
V.A. Gross
V.A. GrossFirst Deputy CEO, Bombardier Transportation (Signal)
Signal

Thinking about the best way to protect your company?

Contact us.

During the consultation we'll propose a solution precisely tailored to your organization.

 

General questions
We're happy to answer any questions you may have.
Partnership
Join us in making the world a safer place.
Request a pilot
Test drive our solutions with a customized pilot program.