Nozomi Networks Inc. announced its latest round of innovations to accelerate industrial cyber threat detection, thus addressing a rapidly maturing market with:
- A safe active choice for precise ICS network visibility
- A threat feed service to support advanced threat monitoring
- A visual GUI for improved usability and alerting
- More SCADAguardian deployment options – with the addition of containers
The convergence of IT/OT has advanced the need for new security capabilities and integrations. In response to these evolving market demands, the latest enhancements in the Nozomi Networks 18.5 release include:
NEW SCADAguardian Advanced – The Safe Approach to Deep ICS Network Visibility
SCADAguardian Advanced (SGA) is a separate and distinct product. It leverages Nozomi Networks’ strengths in passive-only discovery and analysis, and safely incorporates active capabilities, giving operators the option to discover and monitor a specific and more complete set of ICS data. SGA includes Smart Polling™, a technique that uses low volume, very precise communications to actively identify and describe assets, vulnerabilities, and threats. Users can:
- Safely discover firmware, patch level and other device details
- Confirm vulnerabilities for faster, more efficient response
- Monitor a complete set of ICS data, improving threat and process anomaly detection
- Choose easy-to-use default configurations, or manually apply Smart Polling to query specific devices or selected areas of the network
NEW OT ThreatFeed – Delivering Actionable Threat Intelligence
Nozomi Networks OT ThreatFeed makes it easier for IT and OT teams to quickly find, understand and respond to anomalies and threats. With this service Nozomi Networks OT security experts curate, test and enhance ICS threat and vulnerability information gathered from their own research and that of the ICS security community. The OT ThreatFeed arms SCADAguardian customers against emerging OT threats with precise automated threat alerts and recommendations for remediation. Enhanced updates delivered through the Nozomi Networks OT ThreatFeed include:
- Identified threat signatures, indicators of compromise and zero-days discovered by Nozomi Networks
- Curated malware indicators from the ICS community, with enhanced Yara Rules & Packet Rules
- Enriched updates from the U.S. Government’s National Vulnerability Database (NVD)
NEW Container-based Delivery Model – For Embedded Deployment and Efficiency
With this latest release, SCADAguardian can be deployed via a container embedded into select switches and routers as well as within the security infrastructure of Nozomi Networks partners. Nozomi Networks’ new container-based option allows operators to manage fewer devices and deploy across a wide variety of embedded network devices and security architectures. As a result they gain improved resource efficiencies, simplified implementation, and reduced overall total cost of ownership (TCO).
The 18.5 release delivers a premium UX. New dashboards and alerts, as well as an enhanced visual interface, improve network monitoring, threat detection and productivity across OT and IT environments. It will be generally available by year-end.