Chapter 4: Designing the ICS Architecture with Security in Mind
In the previous chapter, we looked at the Industrial Demilitarized Zone (IDMZ) and how the proper use of it improves overall cybersecurity for the Industrial Control System (ICS) environment. In this chapter, we are going to take a step back and look at overall architectural design decisions and how they improve the overall cybersecurity posture.
In this chapter, we will discuss key concepts, techniques, tools, and methodologies around designing for security as it pertains to ICS architecture design. We will discuss the fundamental cybersecurity principle around ICS cybersecurity and discuss how to architect an ICS environment so that it allows for easy implementation of security techniques, tools, and concepts.
In this chapter, we'll cover the following topics:
- Typical industrial network architecture designs
- Designing for security
- Security monitoring