A.) An industrial control system (ICS) is meant to manage and monitor any industrial processes going on between devices on a network. A SCADA is an ICS system that keeps track of equipment and devices involved in industrial processes. A SCADA system first gathers it’s information from the sensors. Then, the information travels from site to site till it reaches the central command center. The sites that I mentioned are usually RTUs (Remote Telemetry Units). The data can usually be read that any devices considered as hosts.

B.) Apparently, a bill was recently passed for the Department of HomeLand Security (DHS). The cyber security that works for DHS is required to report any information received by ICS. All vulnerabilities received by ICS must be provided to the Congress within 6 months. This forces the DHS to respond to cyber security disturbances in a more timely fashion.

2. Question A

Industrial control system (ICS) is a general term that encompasses several types of control systems used in industrial production.Industrial Control Systems (ICS) control and monitors industrial processes that exist in the physical world. The ICS manage the automation of large and complex processes, the process data are presented on a computer screen to operators at a central command center where they monitor and control the process at the supervisory level. SCADA (supervisory control and data acquisition) is a category of software application program for process control, the gathering of data in real time from remote locations in order to control equipment and conditions. SCADA is used in power plants as well as in oil and gas refining, telecommunications, transportation, and water and waste control. SCADA systems include hardware and software components. The hardware gathers and feeds data into a computer that has SCADA software installed. The computer then processes this data and presents it in a timely manner. SCADA also records and logs all events into a file stored on a hard disk or sends them to a printer. SCADA applications warn when conditions become hazardous by sounding alarms.

Question B

Article by Joe Weiss on March 24, 2017 –Industrial control systems-The holy grail of cyberwar

Industrial control systems (ICSs) are critical to the operation of a modern society. ICSs were designed to be reliable and safe, rather than cybersecure, and to ensure safe operations within specific known engineered states. These systems carefully manage transitions to control risk between operational states that are defined to protect against random occurring failures of a component or a few components. However, focused cyberattacks such as Stuxnet or Aurora that can push a system into known dangerous states are not commonly expected in the normal operation of ICSs. This essay identifies a number of very critical issues that threat analysts, policymakers, and critical infrastructure protection personnel need to understand and address. That is, how cyber compromise of ICSs or physical system design features can cause physical damage to hardware and/or physical processes. Hackers view exploits that can damage physical processes as the holy grail of cyberwarfare.

