<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Cybersecurity Archives | DMC, Inc.</title>
	<atom:link href="https://static.dmcinfo.com/blog/tag/cybersecurity/feed/index.xml" rel="self" type="application/rss+xml" />
	<link></link>
	<description></description>
	<lastBuildDate>Thu, 11 Jun 2026 18:53:02 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.1.2</generator>

<image>
	<url>https://static.dmcinfo.com/wp-content/uploads/2025/04/site-icon-150x150.png</url>
	<title>Cybersecurity Archives | DMC, Inc.</title>
	<link></link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Security Considerations for Remote Access</title>
		<link>https://static.dmcinfo.com/blog/18739/security-considerations-for-remote-access/</link>
		
		<dc:creator><![CDATA[Leon Grossman]]></dc:creator>
		<pubDate>Mon, 14 Feb 2022 14:49:13 +0000</pubDate>
				<category><![CDATA[Manufacturing Automation & Intelligence]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<guid isPermaLink="false">https://static.dmcinfo.com/blog/18739/security-considerations-for-remote-access/</guid>

					<description><![CDATA[<p>Remote access has long been a great way to allow timely and cost-effective maintenance of systems. Often, a problem can be fixed in an hour of remote diagnostics versus&#160;a day of travel and an hour on-site. On one occasion, I actually hooked a 56K modem up to a machine so I could remotely diagnose it [&#8230;]</p>
<p>The post <a href="https://static.dmcinfo.com/blog/18739/security-considerations-for-remote-access/">Security Considerations for Remote Access</a> appeared first on <a href="https://static.dmcinfo.com/">DMC, Inc.</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p class="wp-block-paragraph">Remote access has long been a great way to allow timely and cost-effective maintenance of systems. Often, a problem can be fixed in an hour of remote diagnostics versus&nbsp;a day of travel and an hour on-site. On one occasion, I actually hooked a 56K modem up to a machine so I could remotely diagnose it and download a new program. I wouldn&rsquo;t recommend the modem option in this day and age, but there are now tons of options.</p>

<p class="wp-block-paragraph">Each of these options has its own considerations. That&rsquo;s why <a href="https://www.omac.org/" target="_blank">OMAC</a>&nbsp;created a working group on remote access cybersecurity for OT systems. I was pleased to be a part of this working group and the final guide has been <a href="https://ei3.com/omac-security-considerations-for-remote-access/" target="_blank">published here</a>.</p>

<p class="wp-block-paragraph">The document is broken down into four main segments.</p>

<h2 class="wp-block-heading">Threats</h2>

<p class="wp-block-paragraph">Where do threats come from? The paper discusses some of the major vectors:</p>

<ul class="wp-block-list">
 <li>Insiders</li>
 <li>Hacktivists</li>
 <li>Cybercriminals</li>
 <li>Terrorists</li>
 <li>Enthusiasts</li>
 <li>Nation-states</li>
</ul>

<p class="wp-block-paragraph">Each type of threat actor&nbsp;is discussed in the guide. While we generally think of hackers trying to steal IP or money, the threats could just as easily be accidental operations by employees. A technician accidentally causing a loopback on a switch can take a line down just as effectively as a hacker can. The types of threat and who you&rsquo;re going to be worried about is very dependent on your situation.</p>

<h2 class="wp-block-heading">External Connections&nbsp;</h2>

<p class="wp-block-paragraph">The External Connections section focuses on some of the common connection methods in use today:</p>

<ul class="wp-block-list">
 <li>Cell modems &ndash; Generally some form of direct connection into a machine over a cellular network. This could be a direct cellular gateway or a technician tethering their maintenance laptop to their cellphone.</li>
 <li>VPN &ndash; Virtual Private Network is a tunnel through the plant firewall. This requires some kind of account with the factory VPN system.</li>
 <li>Converged networks &ndash; VPN with a second secure switch that requires additional permissions to be granted to access the desired network. This is effectively a more secure version of VPN.</li>
 <li>Black boxes &ndash; Vendor/OEM provided box that provides a VPN tunnel through the factory network to the machine.</li>
 <li>External managed networks &ndash; Similar to a black box but works with the remote access device vendor&rsquo;s cloud service. An example of this is <a href="http://www.ewon.biz/" target="_blank">Ewon</a> or <a href="http://www.tosibox.com/" target="_blank">Tosibox</a>.</li>
</ul>

<p class="wp-block-paragraph">These are all viable ways to handle remote access. They vary by ease of use, cost, scalability, and security. What makes sense for you is dependent on your IT/OT infrastructure and staff&rsquo;s ability to handle the administrative and security tasks inherent to the remote access method.</p>

<h2 class="wp-block-heading">Challenges Inside the OT Network</h2>

<p class="wp-block-paragraph">Now that you&rsquo;ve opened your network for remote access, there are risks to be considered:</p>

<ul class="wp-block-list">
 <li>Can an external user accidentally introduce malware to your system?</li>
 <li>What if they access and download to the wrong equipment or, worse, download a dangerous change that could injure someone?</li>
 <li>HMI devices have been running variants of Windows for 20+ years. It is almost certain that opening your network can allow access to vulnerabilities that cannot be patched.</li>
</ul>

<p class="wp-block-paragraph">Just opening access is the first step but, once you&rsquo;ve done that&nbsp;you need to pay attention to the attendant risks and develop policies and procedures to minimize that risk.</p>

<h2 class="wp-block-heading">Policies and Procedures</h2>

<p class="wp-block-paragraph">This section covers some of the ways you can mitigate the challenges in the previous section. This covers the following concepts and more:</p>

<ul class="wp-block-list">
 <li>Zero trust &ndash; Every point of access must require authentication. There is no more leaving the barn door open as soon as you&rsquo;ve entered the one shared password that gets you into the network.</li>
 <li>Limit accessibility &ndash; The access should be for the system being maintained and not the entire OT network. This helps both with target validation but also helps limit spillover to other systems.</li>
 <li>Time-limited access &ndash; There should be no opportunity for someone to log in on Saturday night and make changes without your knowledge.</li>
 <li>Log activity &ndash; Being able to trace a problem that occurred from a remote access event involves knowing that remote access happened in the first place.</li>
 <li>Know what&rsquo;s in your facility &ndash; It&rsquo;s hard to protect a facility when you don&rsquo;t actually know what&rsquo;s on the network!</li>
</ul>

<p class="wp-block-paragraph">I pulled out a subset of key concepts from the paper but each of the items in this section should be considered to help make a workable system that is both as secure as (reasonably) possible while still being usable.</p>

<h2 class="wp-block-heading">Summary</h2>

<p class="wp-block-paragraph">There is no one right way to go about remote access, much less, cybersecurity as a whole. The methodology for your organization might be obvious to you and your team. Even obvious solutions can be difficult to implement, and <a href="https://static.dmcinfo.com/services/manufacturing-automation-and-intelligence/industrial-networking-and-cybersecurity">DMC can help</a> you improve your remote access capabilities and processes.</p>

<p class="wp-block-paragraph"><strong>Learn more about DMC&apos;s <a href="https://static.dmcinfo.com/services/manufacturing-automation-and-intelligence/industrial-networking-and-cybersecurity">cybersecurity expertise</a>.</strong></p>
<p>The post <a href="https://static.dmcinfo.com/blog/18739/security-considerations-for-remote-access/">Security Considerations for Remote Access</a> appeared first on <a href="https://static.dmcinfo.com/">DMC, Inc.</a>.</p>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Cybersecurity Guide Featured in Control Engineering</title>
		<link>https://static.dmcinfo.com/blog/18784/cybersecurity-guide-featured-in-control-engineering/</link>
		
		<dc:creator><![CDATA[Leon Grossman]]></dc:creator>
		<pubDate>Fri, 21 Jan 2022 15:22:23 +0000</pubDate>
				<category><![CDATA[Manufacturing Automation & Intelligence]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<guid isPermaLink="false">https://static.dmcinfo.com/blog/18784/cybersecurity-guide-featured-in-control-engineering/</guid>

					<description><![CDATA[<p>It&#8217;s no secret that cybersecurity&#160;is becoming an increasing part of our daily lives. I remember starting down this path and realizing that I didn&#8217;t know where to begin. To put it simply, I didn&#8217;t know what I didn&#8217;t know. Fortunately for you, it is not necessary to jump into the deepest depths of the dark [&#8230;]</p>
<p>The post <a href="https://static.dmcinfo.com/blog/18784/cybersecurity-guide-featured-in-control-engineering/">Cybersecurity Guide Featured in Control Engineering</a> appeared first on <a href="https://static.dmcinfo.com/">DMC, Inc.</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p class="wp-block-paragraph">It&rsquo;s no secret that <a href="https://en.wikipedia.org/wiki/Computer_security" target="_blank">cybersecurity</a>&nbsp;is becoming an increasing part of our daily lives. I remember starting down this path and realizing that I didn&rsquo;t know where to begin. To put it simply, I didn&rsquo;t know what I didn&rsquo;t know.</p>

<p class="wp-block-paragraph">Fortunately for you, it is not necessary to jump into the deepest depths of the dark web to get started. <a href="https://www.controleng.com/articles/securing-your-facility/" target="_blank">I wrote an article</a> for <em>Control Engineering</em> magazine that covers some basics that anyone can do to&nbsp;dramatically reduce risk before ever jumping into <a href="https://www.sciencedirect.com/topics/computer-science/network-security-monitoring" target="_blank">network security monitoring</a>,&nbsp;<a href="https://www.imperva.com/learn/application-security/honeypot-honeynet/" target="_blank">honeypots</a>, or even basic <a href="https://support.microsoft.com/en-us/topic/what-is-multifactor-authentication-e5e39437-121c-be60-d123-eda06bddf661" target="_blank">multi-factor authentication</a>.</p>

<p class="wp-block-paragraph">You can <strong><a href="https://www.controleng.com/articles/securing-your-facility/">read my full article</a></strong>, &ldquo;Securing Your Facility,&quot; on <em>Control Engineering</em>.</p>

<p class="wp-block-paragraph"><strong>Learn more about <a href="https://static.dmcinfo.com/services/manufacturing-automation-and-intelligence/industrial-networking-and-cybersecurity">DMC&apos;s cybersecurity expertise</a>.&nbsp;</strong></p>
<p>The post <a href="https://static.dmcinfo.com/blog/18784/cybersecurity-guide-featured-in-control-engineering/">Cybersecurity Guide Featured in Control Engineering</a> appeared first on <a href="https://static.dmcinfo.com/">DMC, Inc.</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
