Case study 2 – Building a successful IIoT security program
This section has been adapted from https://www.sans.org/webcasts/case-study-developing-innovative-ics-security-program-real-time-ot-monitoring-capability-oil-gas-infrastructures-103562.
In Chapter 7, Secure Processes and Governance, we discussed the various components of an IIoT security program. This case study presents how an offshore drilling company implemented a security program from the ground up, for their connected offshore platforms. The security program for their automated fleet and industrial automation control system (IACS) was operationalized to protect valuable assets and ensure the safety of rig personnel.
Background
The drilling company had an automated fleet, spread at offshore locations around the globe, with 700 million USD worth of connected assets. The senior business leadership recognized the safety and reliability risks associated with a fleet IACS, as well as the business imperative to protect customer assets...