The Case for Prevention-based, Host-resident Defenses in the Modern PCS Network

    Abstract

    The process control system (PCS) owner can no longer rely on a physical air gap and custom hardware to protect her network from attack. Demand for greater visibility into PCS operations, coupled with greater use of commodity hardware, now exposes the PCS network to the same threats facing other networks. To address these threats, we argue for the deployment of prevention-based, host-resident, network layer devices, coupled with scalable, service-based management, that will not only protect PCS communications but will also support higher level reasoning about PCS trust-worthiness.  We explain why the modern PCS network is particularly well-suited for this approach, and we highlight where our own research supports this claim.

    Assets

    BibTeX