Creating Cyber Resiliency in Critical Infrastructures
摘要
Modern threat actors, also known as Advanced Persistent Threat (APT) groups, have devised complex, sophisticated ways and methods to infiltrate the IT/OT infrastructure, causing businesses to crumble and be left entirely at the mercy of these threat actors. Industries such as Water, Power, Nuclear, Energy, Health, Automobile, Banking Sector, Heavy Industries, Electricity generation, and others fall under the category of critical infrastructure. In the current year, nation-State threat actors have targeted various critical infrastructures, such as the Nuclear and Energy sectors. It is vital to note that critical infrastructure must be protected at all times, whether there is war, conflict, political unrest, or any other unforeseen circumstance. Sharing and transferring information across trusted boundaries and air-gapped systems have become essential in industries that rely on ubiquitous and interconnected systems. Such exchange of information should occur in a manner that does not expose sensitive information, critical systems, or networks and does not introduce security vulnerabilities. Organizations should not rely on a single security control but instead, adopt a solution that addresses multiple controls while working together. Secrecy, consistency, and availability of resources, systems, networks, or high-end industrial and manufacturing applications are three security demands that Cross-domain Solutions (CDS) solutions successfully fulfill.