| |

SIBERprotect™ Delivers Automatic Cyber Response Solution for Industrial OT Systems

April 15, 2024

SIBERprotect™ Delivers Automatic Cyber Response Solution for Industrial OT Systems
SIBERprotect can isolate an effected area of production immediately, by engaging the actual PLC technology on machines and equipment, rather than simply alerting a Security Operations Center (SOC)

Advanced, real-time, cyber-attack response limits the impact within milliseconds at machine speed, isolates and quarantines the infected production equipment to facilitate faster resumption of normal operations

Following years of technical development and operational implementation design, Siemens introduces SIBERprotect for protection of critical infrastructure and OT systems at various industrial concerns, including power plants, water treatment facilities, all types of discrete manufacturing enterprises, military depots, data centers and control stations. SIBERprotect brings the SOAR (Security, Orchestration, Automation, Response) concept to cyber-physical systems with an OT-friendly and OT-managed methodology.

Siberprotect™ Delivers Automatic Cyber Response Solution for Industrial OT Systems
SIBERprotect activates a real-time lockdown in milliseconds

SIBERprotect can respond to and dramatically limit the impact of a cyber attack within milliseconds, resulting in the identification of the infected production equipment groups or plant networks and enabling full visibility and a fast initial response at the automation system level. This quick response leads to much easier remediation and resumption of normal operations, usually in less than a day. 

Working in conjunction with Siemens SCALANCE S industrial security appliances, SIBERprotect can securely place OT into a safe, isolated condition, after determining the credible identification of a cyber-attack through best-in-class threat detection technology, including Intrusion Detection Systems, Next Generation Firewalls, Endpoint Solutions, Threat/Risk Intelligence and other attack or intrusion detection platforms, often enhanced with AI and machine learning capabilities. 

SIBERprotect then initiates a rule-based notification, network isolation and equipment management sequence to protect the selected equipment, as well as other desired response actions. Rapid assessment and remediation can then be performed, vastly limiting the risk of additional malware contamination.  Work cells and equipment clusters can continue operation, while SIBERprotect prevents recontamination during remediation. 

SIBERprotect™ Delivers Automatic Cyber Response Solution for Industrial OT Systems
Siemens SIBERprotect system for real-time protection of OT during cyber-attack

SIBERprotect further provides detailed situational awareness, alerting operators to the exact nature of the threat, where it was detected in the network and a criticality level. This level of immediately available detail allows the response engine to simultaneously execute  emergency measures to alleviate predetermined worst-case scenarios.

Unlike a conventional system that merely sends messages to an SOC (Security Operations Center), the SIBERprotect system is linked directly to network firewalls, automation hardware and a prioritized system of alarms to facilitate isolation of equipment and jumpstart the cyber incident response. After a thorough introduction to SIBERprotect, many automation engineers label it a cyber safety system or Cyber-SIS.

Other key features of SIBERprotect include the ability to automatically activate emergency backup equipment, interface with legacy technology such as Ethernet hubs, recover one segment or “restore all” functionality, isolate from the site IT network to prevent attack and provide all the benefits of a truly industrial solution.

As Chuck Tommey, a digital connectivity executive with Siemens, explains, “SIBERprotect represents the reimagining of how to do SOAR, that is, Security, Orchestration, Automation and Response, where an alert was typically sent to an SOC, then reviewed by a security analyst and addressed 30 minutes to hours after initial detection. Meanwhile, a virus could spread throughout a line or the entire plant. What Siemens is doing with SIBERprotect is sending the alerts directly to a PLC for instant action, based upon a predetermined priority of status and threat levels.”

Tommey notes that the PLC parses the messages for its criticality level and instantly responds. (See the video below for a demonstration.) SIBERprotect is part of the overall “Defense In Depth” suite offered by Siemens in compliance with IEC 62443, the international standard for industrial cybersecurity. 

SIBERprotect™ Delivers Automatic Cyber Response Solution for Industrial OT Systems
SIBERprotect is part of the Siemens “Defense in Depth” suite, in accordance with IEC 62443, the international standard for industrial cybersecurity

Source

More Information

SIBERprotect

Related Story

Siemens: Transform the Everyday

The clock is ticking. So let’s make big changes and leverage technology to transform the everyday by combining both the real and digital worlds. It’s time to make our cities more livable, design and produce innovative solutions faster and make transportation more sustainable. Start your transformation journey now.

Related Articles


Latest Articles

  • Smarter Power System Monitoring with Moxa Easy-to-Use Protocol Gateways

    November 27, 2025 Achieve Comprehensive Monitoring Across Diverse Energy Sources In industrial settings, effective power system monitoring plays a vital role in ensuring operational efficiency. It involves the real-time tracking of power quality, energy consumption, and equipment conditions. However, due to the varied nature of power grids, often composed of multiple energy sources and communication… Read More…

  • maxon Story: Robotic Companion.

    November 20, 205 Remote offshore installations, dusty mines, dirty sewers: environments made by people for people. Yet operating them is dangerous. The solution? The robotic dog from ANYbotics, which can carry out inspections autonomously. maxon went to Zurich to visit one of the biggest robotics teams in Europe. Fall down, get up again. Over and… Read More…


Featured Article

Revolutionizing Material Movement with Autonomous Mobile Robots

Revolutionizing Material Movement with Autonomous Mobile Robots

In today’s fast-paced manufacturing and logistics industries, the need for efficient and flexible material movement solutions has never been greater. Traditional methods like conveyor systems, forklifts, and manual pushcarts have served us well, but they come with limitations.

That’s why Omron is thrilled to announce the launch of their game-changing MD Series of Autonomous Mobile Robots (AMRs). Read more


Products

  • DriveTag™ A Smarter Way to Streamline Inventory and Logistics

    November 27, 2025 SEW-EURODRIVE introduces DriveTag™, a smart barcode labeling solution that simplifies product identification and logistics. Designed for high-efficiency operations, DriveTag helps manufacturers and OEMs boost throughput, reduce errors, and enhance traceability across every stage of material flow. Connecting the Physical and Digital Worlds Each DriveTag is a custom-engineered barcode label applied directly to… Read More…

  • Rockwell Automation Introduces SecureOT Solution Suite to Strengthen Industrial Cybersecurity Resilience

    November 26, 2025 OT-designed platform and security services empower industrial organizations to reduce risk, maximize uptime and simplify compliance across the full cybersecurity lifecycle Rockwell Automation, Inc. (NYSE: ROK), one of the world’s largest companies dedicated to industrial automation and digital transformation, have announced the launch of SecureOT™ solution suite, a comprehensive industrial cybersecurity offering designed to… Read More…