Assessing the Elements of the ICS Cybersecurity Response

Author photo: Eric Cosman
ByEric Cosman
Category:
ARC Report Abstract

Owners and operators of industrial control systems (ICS) face increasing challenges to improve the security of these systems to ensure their safe and reliable operation in the face of evolving threats. Meeting these challenges requires focus on the elements of people, process, and technology.

While available guidance, standards, and practices address each of these elements, the quantity and variety of this information presents its own challenges. Specifically, tools are required that can help end users select the correct elements of a cybersecurity program. These are available in the form of training certificates that demonstrate minimum competency of personnel, as well as product certifications that confirm compliance with the requirements defined in established industry standards.

Training and development programs are available from sources such as SANS, ISA, and the US Department of Homeland Security (DHS). The achievements and competency of those who complete them are typically validated through a combination of testing and by issuing certificates.

When selecting consultants or project experts, the end user should con-sider training certificates, such as CISSP or the SANS Global Industrial Cyber Security Professional (GICSP), as evidence that the candidate has received the requisite training in the subject matter. Additional assessment will be necessary to confirm the level of experience and the relevance of that experience to the specific situation.

ARC Advisory Group clients can view the complete report at ARC Client Portal on www.ARCweb.com or Box.com

If you would like to buy this report or obtain information about how to become a client, please Request ARC Info

 

Keywords: Cybersecurity, Certification, Certificates, ARC Advisory Group.

Engage with ARC Advisory Group

Representative End User Clients
Representative Automation Clients
Representative Software Clients