Hardening Specialized Devices


Hardening ICS/SCADA

  • strict network segmentation to isolate systems
  • robust authentication and authorization processes
    • limit access strictly
  • unidirectional gateways
    • aka data diodes
    • ensures data only flows outward
    • protects from inbound attacks

Hardening Embedded and RTOS

  • devices typically do not support traditional security measures
  • select devices based on security capabilities and quality
  • each device requires careful tailored approach to hardening
  • leverage security standards and certifications
    • security standards define requirements, controls, and procedures relevant to RTOS and embedded systems
      • e.g., “Common Criteria” (ISO/IEC 15408), IEC 62443, MISRA-C, CERT Secure Coding Standards
    • certifications demonstrate compliance with security standards
      • e.g., ISO 27001, IEC 61508
    • help establish a framework for assessing, implementing, and validating security controls