The ISA Security Compliance Institute announced that Honeywell’s ControlEdge Programmable Logic Controller (PLC) has received ISASecure Embedded Device Security Assurance (EDSA) Level 2 certification by exida, the ISO 17065 accredited certification body that conducted the assessment. The certification recognises the integrity of both the PLC and its development lifecycle, and includes rigorous communication robustness testing as well as functional and software development security assessments.
Additional security features
ControlEdge PLC, from Honeywell Process Solutions (HPS), is the first PLC to be awarded the ISASecure Level 2 certification, which builds on the Level 1 capabilities by providing additional security features such as: the confidentiality and integrity of data at rest and in motion; detection of unauthorised changes; and additional protection against Denial of Service attacks. The ISASecure-compliant controller has advanced features including a secure boot capability to prevent uploading of unauthorised software and a built-in firewall. PLC communication can also be secured using IPSec to prevent man-in-the-middle attacks and unauthorised access.
“In the current operational environment, a strong cyber security defense is an essential part of control system safety and availability,” said Andrew D’Amelio, vice president and general manager of HPS’ Process Measurement and Control business. “That defense starts with industrial control devices such as PLCs that are resilient to rogue communications and unauthorised access, and developed with a security mindset.”
“In the current operational environment,
Cybersecurity for industrial automation and control systems
The ISASecure program has been developed by the ISA Security Compliance Institute (ISCI) based upon the ISA/IEC 62443 series of standards, with a goal to improve cybersecurity for industrial automation and control systems.
“ISASecure EDSA is the first of three certifications offered by ISCI, and focuses upon the security of embedded devices and supplier development practices for those devices,” said Andre Ristaino, ISCI managing director. “The level 2 EDSA certification of Honeywell’s PLC is an industry first and demonstrates Honeywell’s leadership in securing control systems technology.”
Secure connectivity control applications
ControlEdge PLC is used in a variety of balance-of-plant control applications, such as water treatment, pump systems, and material handling. It is part of a next generation family of controllers offering unprecedented, secure connectivity through all levels of process and business operations.
Honeywell’s integrated Distributed Control System (DCS)/PLC approach provides a significant reduction in integration efforts and project costs. This is achieved through seamless integration of a DCS with PLC, Remote Terminal Unit (RTU), HART field device asset management, and HMI panel PC. Only Honeywell can serve as a single vendor for all these automation requirements. This combination also minimises downtime through unified support, and lowers total cost of ownership through an extended system lifecycle. In addition, ControlEdge PLC provides an Industrial Internet of Things (IIoT)-ready open platform using OPC Unified Architecture (OPC UA) as a communication protocol.