MMH    Topics 

UL announces Cybersecurity Assurance Program for industrial control systems

Criteria to help assess software vulnerabilities, address known malware, review security controls and increase security awareness.


UL, a global safety science organization, has announced its Cybersecurity Assurance Program (UL CAP) for industrial control systems.

Using the UL 2900-2-2 Standard, UL CAP for industrial control systems offers testable cybersecurity criteria to help assess software vulnerabilities and weaknesses, minimize exploitation, address known malware, review security controls and increase security awareness. UL CAP is for control system manufacturers looking for support in assessing security risks while they continue to focus on product innovation to help build safer, more secure products, as well as for OEMs, machine tool builders, system integrators, and retrofitters who want to mitigate risks by sourcing products assessed by a third party.

The UL CAP was developed with input from major stakeholders representing the U.S. Federal government, academia and industry to elevate the security measures deployed in the critical infrastructure supply chain. The White House recently released the Cybersecurity National Action Plan (CNAP), designed to enhance cybersecurity capabilities within the US government and across the country. UL’s CAP services and software security efforts were recognized within the CNAP as a way to test and certify network-connectable devices within the Internet of Things supply chain and ecosystems especially relevant in critical infrastructures.

Asset owners from critical infrastructure can see the benefits of UL CAP as a means for evaluating the security posture of their supply chain. UL CAP offers third party support, with the UL 2900-2-2 Standard focusing on both the security of network-connectable products and systems and the vendor processes for developing and maintaining products and systems with a security focus.

UL’s evaluation of the security of industrial control systems uses UL 2900-2-2 which is within the UL 2900 series of standards that outline technical criteria for testing and evaluating the security of products and systems that are network-connectable. These standards form a baseline set of technical requirements to measure, and then elevate, the security posture of products and systems. UL 2900 is designed to evolve and incorporate additional technical criteria as the security needs in the marketplace mature.

UL 2900-2-2 Standard is intended, but not limited, to apply to the following components:
Programmable Logic Controllers (PLC)
PLC and DCS programming software/operator interfaces (HMI)
Control Server
Remote Terminal Unit (RTU)
Human-Machine Interface (HMI)
Input/Output (IO) Server
Networking Equipment for ICS Systems
Distributed Control Systems (DCS)
Historian or Data Loggers
The SCADA Server
Intelligent Electronic Devices (IED)
Data Historian
Fieldbus
Access Equipment for ICS Systems

Meeting the requirements outlined in UL 2900-2-2 Standard allows industrial control systems to be certified by UL as “UL 2900-2-2 compliant”. Additionally, since security is dynamic, UL 2900-2-2 can support the evaluation of a vendor’s processes for design, development and maintenance of secure products and systems.


Article Topics

News
Automation
Controls
Cybersecurity
Education
Internet of Things
Security
Supply Chain Software
   All topics

Latest in Materials Handling

NetLogistik partners with Vuzix subsidiary Moviynt to offer mobility solutions for warehouses
Materials Handling Robotics: The new world of heterogeneous robotic integration
Lucas Watson appointed CSO for Körber’s Parcel Logistics business in North America
Hyster recognizes Dealers of Distinction for 2023
Carolina Handling names Joe Perkins as COO
C-suite Interview with Keith Moore, CEO, AutoScheduler.AI: MODEX was a meeting place for innovation
Walmart deploying autonomous lift trucks at four of its high-tech DCs
More Materials Handling

Subscribe to Materials Handling Magazine

Subscribe today!
Not a subscriber? Sign up today!
Subscribe today. It's FREE.
Find out what the world's most innovative companies are doing to improve productivity in their plants and distribution centers.
Start your FREE subscription today.

Latest Resources

Materials Handling Robotics: The new world of heterogeneous robotic integration
In this Special Digital Edition, the editorial staff of Modern curates the best robotics coverage over the past year to help track the evolution of this piping hot market.
Case study: Optimizing warehouse space, performance and sustainability
Optimize Parcel Packing to Reduce Costs
More resources

Latest Resources

2023 Automation Study: Usage & Implementation of Warehouse/DC Automation Solutions
2023 Automation Study: Usage & Implementation of Warehouse/DC Automation Solutions
This research was conducted by Peerless Research Group on behalf of Modern Materials Handling to assess usage and purchase intentions forautomation systems...
How Your Storage Practices Can Affect Your Pest Control Program
How Your Storage Practices Can Affect Your Pest Control Program
Discover how your storage practices could be affecting your pest control program and how to prevent pest infestations in your business. Join...

Warehousing Outlook 2023
Warehousing Outlook 2023
2023 is here, and so are new warehousing trends.
Extend the Life of Brownfield Warehouses
Extend the Life of Brownfield Warehouses
Today’s robotic and data-driven automation systems can minimize disruptions and improve the life and productivity of warehouse operations.
Power Supply in Overhead Cranes: Energy Chains vs. Festoons
Power Supply in Overhead Cranes: Energy Chains vs. Festoons
Download this white paper to learn more about how both systems compare.