Control Design – May 2019

(Sean Pound) #1
ControlDesign.com / May 2019 / 9

HOW SECURE IS your sensitive data? As the benefits of the Industrial Internet of Things (IIoT)
become more apparent, data-sharing practices continue on a path toward Borg-like ubiquity.
Resistance may be futile, but it’s important to understand and manage the risks of
assimilation.
The 2018 Global State of Information Security Survey (GSISS) from PwC (www.pwc.com)
indicates two-thirds of organizations have an IoT strategy either in place or currently
being implemented. But only around one-third have uniform cybersecurity standards
and policies for IoT devices and systems; new data collection, retention and destruction
policies; or assessment practices for device and system interconnecticity and vulnerabil-
ity across the business ecosystem. That would seem to identify a significant gap between
understanding and managing cybersecurity risks.
A new study from Varonis (www.
varonis.com) reveals the manufac-
turing industry still has a long way
to go locking down sensitive data.
The study, Data Gets Personal: 2019
Global Data Risk Report, includes
results from data-risk assessments
performed on more than 700 com-
panies in 3 0+ industries. It shines
a spotlight on data breaches, insider threats and crippling malware attacks. The report
reveals manufacturing organizations had more than 2 0% of sensitive files and folders ex-
posed. Additionally, manufacturing companies had an average of 2 ,264 exposed, sensitive
files and 3 2,146 exposed folders per terabyte of data.

Some noteworthy findings include:


  • 3 8% of users had passwords that never expire, up from 1 0% the previous year

  • 2 2% of a company’s folders are accessible, on average, to every employee

  • 5 3% of companies made more than 1 ,000 sensitive files accessible to every employee

  • 50 % of accounts are stale “ghost” users that allow former employees to log in and
    access information.


That’s the scariest finding of all—half of user accounts are no longer employees. We’re
constantly worrying about threats from disgruntled or careless internal employees, but
what about those who’ve already left the company?
It’s time to stop resisting the IIoT and start resisting the risks that come with indiffer-
ent data-security policies. One way or another, you will be assimilated.

How risk-resistant are you?


editorial team
editor in chief
Mike Bacidore
[email protected]
technical editor
Dave Perkon
[email protected]
digital managing editor
Christopher Palafox
[email protected]
contributing editor
Rick Rice
[email protected]
contributing editor
Tom Stevic
[email protected]
editorial assistant
Lori Goldberg
[email protected]
columnist
Jeremy Pollard
[email protected]

design/production
senior production manager
Anetta Gauthier
senior art director
Derek Chamberlain

subscriptions
customer service
800-553-
circulation
Air & Gas Compressors 553
Engineering & Systems
Integration Services 11 ,
Engines & Turbines 1, 025
Food Products Machinery 1,56 9
Industrial Fans, Blowers
& Air Purification Equipment 526
Industrial Heating, Refrigeration
& Air Conditioning Equipment 1, 139
Industrial Process Furnaces & Ovens 472
Machine Tools 2, 110
Materials Handling, Conveyors
& Conveying Equipment 1, 507
Metalworking Machinery 2, 600
Mining Machinery & Equipment 510
Oil & Gas Field Machinery & Equipment 1, 187
Packaging Machinery 906
Paper Industries Machinery 312
Printing Trades Machinery & Equipment 441
Pumps & Pumping Equipment 891
Rolling Mill Machinery & Equipment 157
Semiconductor Manufacturing
Machinery 817
Textile Machinery 172
Woodworking Machinery 274
Other Industries & Special Industrial
Machinery & Equipment NEC 11 ,
TOTAL 4 0,

1501 E. Woodfield Rd., Suite 4 00N
Schaumburg, Illinois 60173
630 /467-
Fax : 63 0/4 67-

In Memory of Julie Cappelletti-Lange, Vice
President 19 84-
Mike Bacidore
editor in chief
[email protected]

editor’s page


We’re constantly worrying about
threats from disgruntled or careless
internal employees.

CD1905_09_Edit.indd 9 4/29/19 9:40 AM

Free download pdf