Hardening Specialized Devices
Hardening ICS/SCADA
- strict network segmentation to isolate systems
- robust authentication and authorization processes
- unidirectional gateways
- aka data diodes
- ensures data only flows outward
- protects from inbound attacks
Hardening Embedded and RTOS
- devices typically do not support traditional security measures
- select devices based on security capabilities and quality
- each device requires careful tailored approach to hardening
- leverage security standards and certifications
- security standards define requirements, controls, and procedures relevant to RTOS and embedded systems
- e.g., “Common Criteria” (ISO/IEC 15408), IEC 62443, MISRA-C, CERT Secure Coding Standards
- certifications demonstrate compliance with security standards
- e.g., ISO 27001, IEC 61508
- help establish a framework for assessing, implementing, and validating security controls