Advanced controller recognized for robust cybersecurity characteristics and capabilities
Research Triangle Park, North Carolina, USA (23 August 2017) – The ISA Security Compliance Institute (ISCI) announced today that Honeywell's ControlEdge™ Programmable Logic Controller (PLC) has received ISASecure® Embedded Device Security Assurance (EDSA) Level 2 certification by exida, the ISO 17065 accredited certification body that conducted the assessment. The certification recognizes the integrity of both the PLC and its development lifecycle, and includes rigorous communication robustness testing as well as functional and software development security assessments.
ControlEdge PLC, from Honeywell (NYSE: HON) Process Solutions (HPS), is the first PLC to be awarded the ISASecure Level 2 certification, which builds on the Level 1 capabilities by providing additional security features such as: the confidentiality and integrity of data at rest and in motion; detection of unauthorized changes; and additional protection against Denial of Service attacks. The ISASecure-compliant controller has advanced features including a secure boot capability to prevent uploading of unauthorized software and a built-in firewall. PLC communication can also be secured using IPSec to prevent man-in-the-middle attacks and unauthorized access.
"In the current operational environment, a strong cyber security defense is an essential part of control system safety and availability," said Andrew D'Amelio, vice president and general manager of HPS' Process Measurement and Control business. "That defense starts with industrial control devices such as PLCs that are resilient to rogue communications and unauthorized access, and developed with a security mindset."
The ISASecure program has been developed by the ISA Security Compliance Institute (ISCI) based upon the ISA/IEC 62443 series of standards, with a goal to improve cybersecurity for industrial automation and control systems.
"ISASecure EDSA is the first of three certifications offered by ISCI, and focuses upon the security of embedded devices and supplier development practices for those devices," said Andre Ristaino, ISCI managing director. "The level 2 EDSA certification of Honeywell's PLC is an industry first and demonstrates Honeywell's leadership in securing control systems technology."
ControlEdge PLC is used in a variety of balance-of-plant control applications, such as water treatment, pump systems, and material handling. It is part of a next generation family of controllers offering unprecedented, secure connectivity through all levels of process and business operations.
Honeywell's integrated Distributed Control System (DCS)/PLC approach provides a significant reduction in integration efforts and project costs. This is achieved through seamless integration of a DCS with PLC, Remote Terminal Unit (RTU), HART field device asset management, and HMI panel PC. Only Honeywell can serve as a single vendor for all these automation requirements. This combination also minimizes downtime through unified support, and lowers total cost of ownership through an extended system lifecycle. In addition, ControlEdge PLC provides an Industrial Internet of Things (IIoT)-ready open platform using OPC Unified Architecture (OPC UA) as a communication protocol.