SlideShare ist ein Scribd-Unternehmen logo
1 von 4
Downloaden Sie, um offline zu lesen
Protect your control networks from cyberattacks and
operational disruptions with SCADAguardian. It rapidly detects
cyber threats and process anomalies, providing unprecedented
operational visibility.
SCADAguardian automatically discovers the industrial network
including its components, connections and topology. It develops
security and process profiles and monitors the system in real-
time for any changes.
SCADAguardian uniquely provides:
•	 Comprehensive, hybrid ICS threat detection that combines
behavior-based, rules, signatures and artificial intelligence
analysis
•	 Superior incident capture and forensic tools
•	 Easy integration and sharing of ICS and cybersecurity
information with IT/OT environments
•	 Enterprise-class scalability when deployed with the related
Central Management Console
Find out how major customers have improved reliability, safety,
cybersecurity and operational efficiency with SCADAguardian.
Contact us today at nozominetworks.com/contact
Real-time Cybersecurity and Visibility for Industrial Control Networks
Data Sheet
SCADAguardian™
•	 Behavior-based cyber threat and process
anomaly detection
•	 Rules and signature-based threat detection
•	 Fast and accurate analysis powered by
artificial intelligence
Hybrid ICS Threat Detection
•	 Dynamic learning minimizes false alerts
•	 Smart grouping of alerts into incidents
•	 Automatic packet capture
•	 TimeMachine™ system snapshots
•	 Real-time ad hoc query tool
•	 Major installations at critical infrastructure,
process control and manufacturing
organizations
Superior Incident and Forensic Tools
Industries
Operational ICS Visibility
•	 Automated asset inventory
•	 Intuitive network visualization
•	 Real-time network monitoring
Rapidly Detect Cyber
Threats/Risks and
Process Anomalies
Significantly Reduce
Troubleshooting and
Forensic Efforts
Easily Integrate and Share
ICS Information with
IT/OT Environments
Automatically Track
Industrial Assets and Know
Their Cybersecurity Risks
Quickly Monitor ICS
Networks and Processes
with Real-time Insight
Readily Implement a
Tailored Solution Using
Multiple Appliance Models
Sample Deployment Architecture
Five Modules Deliver ICS Cybersecurity and Operational Visibility
Network Visualization and Modeling ICS Threat and Anomaly Detection
Asset Inventory
Vulnerability Assessment
Dashboards and Reporting
•	 Improve system and process awareness with a
visualization interface that shows all assets and links
•	 Rapidly detect cybersecurity threats, risks and
process anomalies
•	 Hybrid threat detection combines best-in-class
behavior-based anomaly detection with rules-based
threat detection (YaraRules, Packet Rules and
Assertions) and artificial intelligence analysis
•	 Detect intrusions: Scanning and MITM attacks ·
Complex or zero-day attacks · Known malware files
or packets and more
•	 Detect unauthorized behavior: Remote access ·
Configurations · Downloads · Controller logic
changes · Edits to PLC projects and more
•	 Detect states of concern: Misconfigurations ·
Weak passwords · Missing updates · Open ports ·
Communication failures · Malfunctions and more
•	 Auto-discovery of assets saves time and is always
up-to-date
•	 Asset views make it easy to visualize, find and drill
down on asset information
•	 Automated identification of device vulnerabilities
saves time and improves cyber resiliency
•	 Custom dashboards, detailed reports and ad hoc
querying provide real-time visibility that improves
both cybersecurity and operational efficiency
Value Delivered to Multinational Operators
A powerful
appliance for very
large, demanding
scenarios
A rack-mounted
appliance for medium
scenarios
A rack-mounted
appliance for large
scenarios
A rack-mounted
appliance for small
scenarios
1 Rack Unit 1 Rack Unit1 Rack Unit
PHYSICAL APPLIANCES
1 Rack Unit
8 54 5
Description
Form Factor
Monitoring Ports
Multiple SCADAguardian™ Appliance Formats to Meet Your Needs
Automated ICS Modeling Easy Integration with IT/OT Environments
Fast ROI
Dynamic Learning
Operational Visibility
•	 Includes built-in integration with:
·· SIEMs: HPE ArcSight, IBM QRadar, Splunk, etc.
·· Firewalls: Check Point, Fortinet, Palo Alto Networks, etc.
·· User Authentication: Active Directory, LDAP, etc.
•	 Exchanges data with other IT/ICS applications via
an Open API
•	 Includes built-in support for dozens of protocols,
extends to others via the Protocol SDK
•	 Exports data for analysis and presentation in other
applications
•	 Adapts for each installation with many customizable
components
•	 Deploys quickly, with no network changes
•	 Delivers value at numerous customer sites, with
centralized monitoring of tens of thousands of
industrial devices
•	 Switches from learning to protection mode
automatically, starting anomaly detection quickly
•	 Provides real-time network visualization,
including topology
•	 Monitors assets, communications and processes
•	 Presents actionable information in dashboards
•	 Allows real-time querying of any aspect
of network or ICS performance, reducing
spreadsheet work
•	 Installs passively and non-intrusively by
connecting to network devices via SPAN or mirror
ports
•	 Learns and models large heterogeneous ICS
•	 Identifies all assets and triggers alerts on changes
A portable probe for
temporary analysis
of network trunks
A ruggedized,
DIN-rail mounted
appliance for small
scenarios
Portable Form FactorDIN Mountable
54
N1000 N750 P500R50NSG-L-250 NSG-L-100NEW NEW
(*) Plus other limitations
5,000 4001,000 150
43 x 426 x 356
1.7 x 16.8 x 14
44 x 438 x 300
1.7 x 17.2 x 11.8
43 x 426 x 356
1.7 x 16.8 x 14
44 x 438 x 300
1.7 x 17.2 x 11.8
1 Gbps 200 Mbps500 Mbps 100 Mbps
240 Gb 64 Gb180 Gb 64 Gb
260W 250W260W 250W
10 Kg 8 Kg10 Kg 8 Kg
110-240V AC 110-240V AC110-240V AC 110-240V AC
0 / +45º C 0 / +40º C0 / +45º C 0 / +40º C
Yes YesYes Yes
Max Protected
Nodes
HxWxL
(mm/in)
Max Throughput
Storage
Max Power
Consumption
Weight
Power Supply
Type
Temperature
Ranges
RoHS Conformity
250 (*)200
93 x 202 x 200
3.66 x 7.95 x 7.87
80 x 130 x 146
3.15 x 5.11 x 5.74
200 Mbps50 Mbps
180 Gb64 Gb
100W60W
5 Kg3 Kg
110-240V AC12-36V DC
0 / +50º C-40 / +70º C
YesYes
Broad Support for Industrial Control Systems and ICS / IT Protocols
Support for additional systems and protocols is constantly being expanded. Visit nozominetworks.com for the latest technical specifications.
Further protocols can be quickly added using the Protocol SDK.
(*) Limitation on the Number of ports can be present due to the version of the Virtual Infrastructure Firmware
V1000 V750 V250 V100
Hyper-V 2012+, KVM 1.2+, VMware ESX 5.x+, XEN 4.4+
Unlimited (*) 4 4 4
5,000 1,000 400 150
300 Mbps 300 Mbps 300 Mbps 300 Mbps
100+ Gb 100+ Gb 100+ Gb 100+ Gb
Installation Specs
Monitoring Ports
Max Protected
Nodes
Max Throughput
Storage
VIRTUAL APPLIANCES
V50
A powerful appliance for
very large, demanding
scenarios
A virtual appliance for
large scenarios
A virtual appliance for
medium scenarios
A virtual appliance for
small scenarios
Description
A virtual appliance for
very small scenarios
4
50
300 Mbps
100+ Gb
ICS Vendors
IT Protocols
ICS Protocols
ABB, Allen-Bradley/Rockwell, Bristol Babcock, Beckhoff, Emerson, General Electric, Honeywell, IBM, Mitsubishi, Motorola,
Rockwell Automation, Schneider Electric, Siemens, Yokogawa
Aspentech Cim/IO, BACNet, Beckhoff ADS, BSAP IP, CEI 79-5/2-3, COTP, DNP3, Enron Modbus, EtherCAT, EtherNet/IP - CIP,
Foundation Fieldbus, Generic MMS, GOOSE, Honeywell, IEC 60870-5-7 (IEC 62351-3 + IEC 62351-5), IEC 60870-5-104,
IEC-61850 (MMS, GOOSE, SV), IEC DLMS/COSEM, ICCP, Modbus/TCP, MQTT, OPC, PI-Connect, Profinet/DCP, Profinet/I-O CM,
Profinet/RT, Sercos III, Siemens S7, Vnet/IP
ARP, BROWSER, Bittorrent, CDP, DCE-RPC, DHCP, DNS, DRDA (IBM DB2), Dropbox, eDonkey (eMule), FTP, FTPS, GVCP, HTTP,
HTTPS, ICMP/PING, IGMP, IKE, IMAP, IMAPS, ISO-TSAP/COTP, Kerberos, KMS, LDAP, LDAPS, LLDP, LLMNR, MDNS, MS SQL Server,
MySQL, NetBIOS, NTP, OSPF, POP3, PTPv2, RDP, STP, SSDP, RTCP, RTP, SSH, SNMP, SMB, SMTP, STP, Syslog, Telnet, VNC
SCADAguardian is a physical or virtual appliance that provides real-time cybersecurity
and operational visibility of industrial control networks. The Central Management
Console (CMC) aggregates data from multiple sites, providing centralized and remote
cybersecurity management.
Together they deliver comprehensive ICS cyber resilience and reliability.
Nozomi Networks Products
About Nozomi Networks
© 2017 Nozomi Networks, Inc.
All Rights Reserved.
DS-SG-8.5x11-004
www.nozominetworks.com
@nozominetworks
Nozomi Networks is revolutionizing Industrial Control System (ICS) cybersecurity with the most comprehensive platform
to deliver real-time cybersecurity and operational visibility. Since 2013 the company has innovated the use of machine
learning and artificial intelligence to secure critical infrastructure operations. Amid escalating threats targeting ICS, Nozomi
Networks delivers one solution with real-time ICS monitoring, hybrid threat detection, process anomaly detection, industrial
network visualization, asset inventory, and vulnerability assessment. Deployed in the world’s largest industrial installations,
customers benefit from advanced cybersecurity, improved operational reliability and enhanced IT/OT integration. Nozomi
Networks is headquartered in San Francisco, California. Visit www.nozominetworks.com

Weitere ähnliche Inhalte

Was ist angesagt?

Microsoft Zero Trust
Microsoft Zero TrustMicrosoft Zero Trust
Microsoft Zero Trust
David J Rosenthal
 

Was ist angesagt? (20)

Strategies for Managing OT Cybersecurity Risk
Strategies for Managing OT Cybersecurity RiskStrategies for Managing OT Cybersecurity Risk
Strategies for Managing OT Cybersecurity Risk
 
Togaf 9 template architecture repository
Togaf 9 template   architecture repositoryTogaf 9 template   architecture repository
Togaf 9 template architecture repository
 
Cybersecurity Skills in Industry 4.0
Cybersecurity Skills in Industry 4.0Cybersecurity Skills in Industry 4.0
Cybersecurity Skills in Industry 4.0
 
Enterprise Security Architecture Design
Enterprise Security Architecture DesignEnterprise Security Architecture Design
Enterprise Security Architecture Design
 
IT and OT Convergence
IT and OT ConvergenceIT and OT Convergence
IT and OT Convergence
 
OT Security Architecture & Resilience: Designing for Security Success
OT Security Architecture & Resilience:  Designing for Security SuccessOT Security Architecture & Resilience:  Designing for Security Success
OT Security Architecture & Resilience: Designing for Security Success
 
Enterprise Security Architecture
Enterprise Security ArchitectureEnterprise Security Architecture
Enterprise Security Architecture
 
How to leverage Enterprise Architecture in a regulated environment
How to leverage Enterprise Architecture in a regulated environmentHow to leverage Enterprise Architecture in a regulated environment
How to leverage Enterprise Architecture in a regulated environment
 
Enterprise Security Architecture for Cyber Security
Enterprise Security Architecture for Cyber SecurityEnterprise Security Architecture for Cyber Security
Enterprise Security Architecture for Cyber Security
 
Microsoft-CISO-Workshop-Security-Strategy-and-Program (1).pdf
Microsoft-CISO-Workshop-Security-Strategy-and-Program (1).pdfMicrosoft-CISO-Workshop-Security-Strategy-and-Program (1).pdf
Microsoft-CISO-Workshop-Security-Strategy-and-Program (1).pdf
 
Building a Cyber Security Operations Center for SCADA/ICS Environments
Building a Cyber Security Operations Center for SCADA/ICS EnvironmentsBuilding a Cyber Security Operations Center for SCADA/ICS Environments
Building a Cyber Security Operations Center for SCADA/ICS Environments
 
Next-Gen security operation center
Next-Gen security operation centerNext-Gen security operation center
Next-Gen security operation center
 
Rothke secure360 building a security operations center (soc)
Rothke   secure360 building a security operations center (soc)Rothke   secure360 building a security operations center (soc)
Rothke secure360 building a security operations center (soc)
 
Security of IOT,OT And IT.pptx
Security of IOT,OT And IT.pptxSecurity of IOT,OT And IT.pptx
Security of IOT,OT And IT.pptx
 
Making Decisions - From Software Architecture Theory to Practice
Making Decisions - From Software Architecture Theory to PracticeMaking Decisions - From Software Architecture Theory to Practice
Making Decisions - From Software Architecture Theory to Practice
 
Securing Industrial Control System
Securing Industrial Control SystemSecuring Industrial Control System
Securing Industrial Control System
 
SOC Architecture Workshop - Part 1
SOC Architecture Workshop - Part 1SOC Architecture Workshop - Part 1
SOC Architecture Workshop - Part 1
 
An introduction to SOC (Security Operation Center)
An introduction to SOC (Security Operation Center)An introduction to SOC (Security Operation Center)
An introduction to SOC (Security Operation Center)
 
5 Steps to a Zero Trust Network - From Theory to Practice
5 Steps to a Zero Trust Network - From Theory to Practice5 Steps to a Zero Trust Network - From Theory to Practice
5 Steps to a Zero Trust Network - From Theory to Practice
 
Microsoft Zero Trust
Microsoft Zero TrustMicrosoft Zero Trust
Microsoft Zero Trust
 

Ähnlich wie Nozomi Networks SCADAguardian - Data-Sheet

Data center webinar_v2_1
Data center webinar_v2_1Data center webinar_v2_1
Data center webinar_v2_1
Lancope, Inc.
 
PT-DTS SCADA Security using MaxPatrol
PT-DTS SCADA Security using MaxPatrolPT-DTS SCADA Security using MaxPatrol
PT-DTS SCADA Security using MaxPatrol
Shah Sheikh
 
Acceleration_and_Security_draft_v2
Acceleration_and_Security_draft_v2Acceleration_and_Security_draft_v2
Acceleration_and_Security_draft_v2
Srinivasa Addepalli
 

Ähnlich wie Nozomi Networks SCADAguardian - Data-Sheet (20)

CyberSecurity Best Practices for the IIoT
CyberSecurity Best Practices for the IIoTCyberSecurity Best Practices for the IIoT
CyberSecurity Best Practices for the IIoT
 
Data center webinar_v2_1
Data center webinar_v2_1Data center webinar_v2_1
Data center webinar_v2_1
 
Secure IOT Gateway
Secure IOT GatewaySecure IOT Gateway
Secure IOT Gateway
 
Cisco connect winnipeg 2018 a look at network assurance in dna center
Cisco connect winnipeg 2018   a look at network assurance in dna centerCisco connect winnipeg 2018   a look at network assurance in dna center
Cisco connect winnipeg 2018 a look at network assurance in dna center
 
ICS Security 101 by Sandeep Singh
ICS Security 101 by Sandeep SinghICS Security 101 by Sandeep Singh
ICS Security 101 by Sandeep Singh
 
Stop Wasting Energy on M2M
Stop Wasting Energy on M2MStop Wasting Energy on M2M
Stop Wasting Energy on M2M
 
Java in the Air: A Case Study for Java-based Environment Monitoring Stations
Java in the Air: A Case Study for Java-based Environment Monitoring StationsJava in the Air: A Case Study for Java-based Environment Monitoring Stations
Java in the Air: A Case Study for Java-based Environment Monitoring Stations
 
VMworld 2013: VMware Compliance Reference Architecture Framework Overview
VMworld 2013: VMware Compliance Reference Architecture Framework Overview VMworld 2013: VMware Compliance Reference Architecture Framework Overview
VMworld 2013: VMware Compliance Reference Architecture Framework Overview
 
People Counting: Internet of Things in Motion at JavaOne 2013
People Counting: Internet of Things in Motion at JavaOne 2013People Counting: Internet of Things in Motion at JavaOne 2013
People Counting: Internet of Things in Motion at JavaOne 2013
 
APT iTest and Velocity 7.3 Use Cases.pptx
APT iTest and Velocity 7.3 Use Cases.pptxAPT iTest and Velocity 7.3 Use Cases.pptx
APT iTest and Velocity 7.3 Use Cases.pptx
 
ADAM-3600 Sales kit_WATER.pptx
ADAM-3600 Sales kit_WATER.pptxADAM-3600 Sales kit_WATER.pptx
ADAM-3600 Sales kit_WATER.pptx
 
PT-DTS SCADA Security using MaxPatrol
PT-DTS SCADA Security using MaxPatrolPT-DTS SCADA Security using MaxPatrol
PT-DTS SCADA Security using MaxPatrol
 
Smart Networks for the Industrial Internet of Things
Smart Networks for the Industrial Internet of ThingsSmart Networks for the Industrial Internet of Things
Smart Networks for the Industrial Internet of Things
 
Training manual on scada
Training manual on scadaTraining manual on scada
Training manual on scada
 
Industrial Control Systems Security - A Perspective on Product Design (Sequi,...
Industrial Control Systems Security - A Perspective on Product Design (Sequi,...Industrial Control Systems Security - A Perspective on Product Design (Sequi,...
Industrial Control Systems Security - A Perspective on Product Design (Sequi,...
 
Removing Security Roadblocks to IoT Deployment Success
Removing Security Roadblocks to IoT Deployment SuccessRemoving Security Roadblocks to IoT Deployment Success
Removing Security Roadblocks to IoT Deployment Success
 
Acceleration_and_Security_draft_v2
Acceleration_and_Security_draft_v2Acceleration_and_Security_draft_v2
Acceleration_and_Security_draft_v2
 
Cisco Connect 2018 Thailand - Security automation and programmability mr. kho...
Cisco Connect 2018 Thailand - Security automation and programmability mr. kho...Cisco Connect 2018 Thailand - Security automation and programmability mr. kho...
Cisco Connect 2018 Thailand - Security automation and programmability mr. kho...
 
Cisco Connect 2018 Thailand - Telco service provider network analytics
Cisco Connect 2018 Thailand - Telco service provider network analytics Cisco Connect 2018 Thailand - Telco service provider network analytics
Cisco Connect 2018 Thailand - Telco service provider network analytics
 
[Cisco Connect 2018 - Vietnam] Satit adirek hn under_the_hood_sdwan deep_dive
[Cisco Connect 2018 - Vietnam] Satit adirek hn under_the_hood_sdwan deep_dive[Cisco Connect 2018 - Vietnam] Satit adirek hn under_the_hood_sdwan deep_dive
[Cisco Connect 2018 - Vietnam] Satit adirek hn under_the_hood_sdwan deep_dive
 

Kürzlich hochgeladen

+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
Health
 
TECUNIQUE: Success Stories: IT Service provider
TECUNIQUE: Success Stories: IT Service providerTECUNIQUE: Success Stories: IT Service provider
TECUNIQUE: Success Stories: IT Service provider
mohitmore19
 
introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdfintroduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
VishalKumarJha10
 

Kürzlich hochgeladen (20)

Introducing Microsoft’s new Enterprise Work Management (EWM) Solution
Introducing Microsoft’s new Enterprise Work Management (EWM) SolutionIntroducing Microsoft’s new Enterprise Work Management (EWM) Solution
Introducing Microsoft’s new Enterprise Work Management (EWM) Solution
 
How To Use Server-Side Rendering with Nuxt.js
How To Use Server-Side Rendering with Nuxt.jsHow To Use Server-Side Rendering with Nuxt.js
How To Use Server-Side Rendering with Nuxt.js
 
Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...
Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...
Reassessing the Bedrock of Clinical Function Models: An Examination of Large ...
 
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
W01_panagenda_Navigating-the-Future-with-The-Hitchhikers-Guide-to-Notes-and-D...
 
Optimizing AI for immediate response in Smart CCTV
Optimizing AI for immediate response in Smart CCTVOptimizing AI for immediate response in Smart CCTV
Optimizing AI for immediate response in Smart CCTV
 
The Ultimate Test Automation Guide_ Best Practices and Tips.pdf
The Ultimate Test Automation Guide_ Best Practices and Tips.pdfThe Ultimate Test Automation Guide_ Best Practices and Tips.pdf
The Ultimate Test Automation Guide_ Best Practices and Tips.pdf
 
Define the academic and professional writing..pdf
Define the academic and professional writing..pdfDefine the academic and professional writing..pdf
Define the academic and professional writing..pdf
 
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
+971565801893>>SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHAB...
 
The Guide to Integrating Generative AI into Unified Continuous Testing Platfo...
The Guide to Integrating Generative AI into Unified Continuous Testing Platfo...The Guide to Integrating Generative AI into Unified Continuous Testing Platfo...
The Guide to Integrating Generative AI into Unified Continuous Testing Platfo...
 
Vip Call Girls Noida ➡️ Delhi ➡️ 9999965857 No Advance 24HRS Live
Vip Call Girls Noida ➡️ Delhi ➡️ 9999965857 No Advance 24HRS LiveVip Call Girls Noida ➡️ Delhi ➡️ 9999965857 No Advance 24HRS Live
Vip Call Girls Noida ➡️ Delhi ➡️ 9999965857 No Advance 24HRS Live
 
TECUNIQUE: Success Stories: IT Service provider
TECUNIQUE: Success Stories: IT Service providerTECUNIQUE: Success Stories: IT Service provider
TECUNIQUE: Success Stories: IT Service provider
 
5 Signs You Need a Fashion PLM Software.pdf
5 Signs You Need a Fashion PLM Software.pdf5 Signs You Need a Fashion PLM Software.pdf
5 Signs You Need a Fashion PLM Software.pdf
 
8257 interfacing 2 in microprocessor for btech students
8257 interfacing 2 in microprocessor for btech students8257 interfacing 2 in microprocessor for btech students
8257 interfacing 2 in microprocessor for btech students
 
A Secure and Reliable Document Management System is Essential.docx
A Secure and Reliable Document Management System is Essential.docxA Secure and Reliable Document Management System is Essential.docx
A Secure and Reliable Document Management System is Essential.docx
 
introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdfintroduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
introduction-to-automotive Andoid os-csimmonds-ndctechtown-2021.pdf
 
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
Tech Tuesday-Harness the Power of Effective Resource Planning with OnePlan’s ...
 
Right Money Management App For Your Financial Goals
Right Money Management App For Your Financial GoalsRight Money Management App For Your Financial Goals
Right Money Management App For Your Financial Goals
 
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdfLearn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
Learn the Fundamentals of XCUITest Framework_ A Beginner's Guide.pdf
 
AI & Machine Learning Presentation Template
AI & Machine Learning Presentation TemplateAI & Machine Learning Presentation Template
AI & Machine Learning Presentation Template
 
10 Trends Likely to Shape Enterprise Technology in 2024
10 Trends Likely to Shape Enterprise Technology in 202410 Trends Likely to Shape Enterprise Technology in 2024
10 Trends Likely to Shape Enterprise Technology in 2024
 

Nozomi Networks SCADAguardian - Data-Sheet

  • 1. Protect your control networks from cyberattacks and operational disruptions with SCADAguardian. It rapidly detects cyber threats and process anomalies, providing unprecedented operational visibility. SCADAguardian automatically discovers the industrial network including its components, connections and topology. It develops security and process profiles and monitors the system in real- time for any changes. SCADAguardian uniquely provides: • Comprehensive, hybrid ICS threat detection that combines behavior-based, rules, signatures and artificial intelligence analysis • Superior incident capture and forensic tools • Easy integration and sharing of ICS and cybersecurity information with IT/OT environments • Enterprise-class scalability when deployed with the related Central Management Console Find out how major customers have improved reliability, safety, cybersecurity and operational efficiency with SCADAguardian. Contact us today at nozominetworks.com/contact Real-time Cybersecurity and Visibility for Industrial Control Networks Data Sheet SCADAguardian™ • Behavior-based cyber threat and process anomaly detection • Rules and signature-based threat detection • Fast and accurate analysis powered by artificial intelligence Hybrid ICS Threat Detection • Dynamic learning minimizes false alerts • Smart grouping of alerts into incidents • Automatic packet capture • TimeMachine™ system snapshots • Real-time ad hoc query tool • Major installations at critical infrastructure, process control and manufacturing organizations Superior Incident and Forensic Tools Industries Operational ICS Visibility • Automated asset inventory • Intuitive network visualization • Real-time network monitoring Rapidly Detect Cyber Threats/Risks and Process Anomalies Significantly Reduce Troubleshooting and Forensic Efforts Easily Integrate and Share ICS Information with IT/OT Environments Automatically Track Industrial Assets and Know Their Cybersecurity Risks Quickly Monitor ICS Networks and Processes with Real-time Insight Readily Implement a Tailored Solution Using Multiple Appliance Models
  • 2. Sample Deployment Architecture Five Modules Deliver ICS Cybersecurity and Operational Visibility Network Visualization and Modeling ICS Threat and Anomaly Detection Asset Inventory Vulnerability Assessment Dashboards and Reporting • Improve system and process awareness with a visualization interface that shows all assets and links • Rapidly detect cybersecurity threats, risks and process anomalies • Hybrid threat detection combines best-in-class behavior-based anomaly detection with rules-based threat detection (YaraRules, Packet Rules and Assertions) and artificial intelligence analysis • Detect intrusions: Scanning and MITM attacks · Complex or zero-day attacks · Known malware files or packets and more • Detect unauthorized behavior: Remote access · Configurations · Downloads · Controller logic changes · Edits to PLC projects and more • Detect states of concern: Misconfigurations · Weak passwords · Missing updates · Open ports · Communication failures · Malfunctions and more • Auto-discovery of assets saves time and is always up-to-date • Asset views make it easy to visualize, find and drill down on asset information • Automated identification of device vulnerabilities saves time and improves cyber resiliency • Custom dashboards, detailed reports and ad hoc querying provide real-time visibility that improves both cybersecurity and operational efficiency
  • 3. Value Delivered to Multinational Operators A powerful appliance for very large, demanding scenarios A rack-mounted appliance for medium scenarios A rack-mounted appliance for large scenarios A rack-mounted appliance for small scenarios 1 Rack Unit 1 Rack Unit1 Rack Unit PHYSICAL APPLIANCES 1 Rack Unit 8 54 5 Description Form Factor Monitoring Ports Multiple SCADAguardian™ Appliance Formats to Meet Your Needs Automated ICS Modeling Easy Integration with IT/OT Environments Fast ROI Dynamic Learning Operational Visibility • Includes built-in integration with: ·· SIEMs: HPE ArcSight, IBM QRadar, Splunk, etc. ·· Firewalls: Check Point, Fortinet, Palo Alto Networks, etc. ·· User Authentication: Active Directory, LDAP, etc. • Exchanges data with other IT/ICS applications via an Open API • Includes built-in support for dozens of protocols, extends to others via the Protocol SDK • Exports data for analysis and presentation in other applications • Adapts for each installation with many customizable components • Deploys quickly, with no network changes • Delivers value at numerous customer sites, with centralized monitoring of tens of thousands of industrial devices • Switches from learning to protection mode automatically, starting anomaly detection quickly • Provides real-time network visualization, including topology • Monitors assets, communications and processes • Presents actionable information in dashboards • Allows real-time querying of any aspect of network or ICS performance, reducing spreadsheet work • Installs passively and non-intrusively by connecting to network devices via SPAN or mirror ports • Learns and models large heterogeneous ICS • Identifies all assets and triggers alerts on changes A portable probe for temporary analysis of network trunks A ruggedized, DIN-rail mounted appliance for small scenarios Portable Form FactorDIN Mountable 54 N1000 N750 P500R50NSG-L-250 NSG-L-100NEW NEW (*) Plus other limitations 5,000 4001,000 150 43 x 426 x 356 1.7 x 16.8 x 14 44 x 438 x 300 1.7 x 17.2 x 11.8 43 x 426 x 356 1.7 x 16.8 x 14 44 x 438 x 300 1.7 x 17.2 x 11.8 1 Gbps 200 Mbps500 Mbps 100 Mbps 240 Gb 64 Gb180 Gb 64 Gb 260W 250W260W 250W 10 Kg 8 Kg10 Kg 8 Kg 110-240V AC 110-240V AC110-240V AC 110-240V AC 0 / +45º C 0 / +40º C0 / +45º C 0 / +40º C Yes YesYes Yes Max Protected Nodes HxWxL (mm/in) Max Throughput Storage Max Power Consumption Weight Power Supply Type Temperature Ranges RoHS Conformity 250 (*)200 93 x 202 x 200 3.66 x 7.95 x 7.87 80 x 130 x 146 3.15 x 5.11 x 5.74 200 Mbps50 Mbps 180 Gb64 Gb 100W60W 5 Kg3 Kg 110-240V AC12-36V DC 0 / +50º C-40 / +70º C YesYes
  • 4. Broad Support for Industrial Control Systems and ICS / IT Protocols Support for additional systems and protocols is constantly being expanded. Visit nozominetworks.com for the latest technical specifications. Further protocols can be quickly added using the Protocol SDK. (*) Limitation on the Number of ports can be present due to the version of the Virtual Infrastructure Firmware V1000 V750 V250 V100 Hyper-V 2012+, KVM 1.2+, VMware ESX 5.x+, XEN 4.4+ Unlimited (*) 4 4 4 5,000 1,000 400 150 300 Mbps 300 Mbps 300 Mbps 300 Mbps 100+ Gb 100+ Gb 100+ Gb 100+ Gb Installation Specs Monitoring Ports Max Protected Nodes Max Throughput Storage VIRTUAL APPLIANCES V50 A powerful appliance for very large, demanding scenarios A virtual appliance for large scenarios A virtual appliance for medium scenarios A virtual appliance for small scenarios Description A virtual appliance for very small scenarios 4 50 300 Mbps 100+ Gb ICS Vendors IT Protocols ICS Protocols ABB, Allen-Bradley/Rockwell, Bristol Babcock, Beckhoff, Emerson, General Electric, Honeywell, IBM, Mitsubishi, Motorola, Rockwell Automation, Schneider Electric, Siemens, Yokogawa Aspentech Cim/IO, BACNet, Beckhoff ADS, BSAP IP, CEI 79-5/2-3, COTP, DNP3, Enron Modbus, EtherCAT, EtherNet/IP - CIP, Foundation Fieldbus, Generic MMS, GOOSE, Honeywell, IEC 60870-5-7 (IEC 62351-3 + IEC 62351-5), IEC 60870-5-104, IEC-61850 (MMS, GOOSE, SV), IEC DLMS/COSEM, ICCP, Modbus/TCP, MQTT, OPC, PI-Connect, Profinet/DCP, Profinet/I-O CM, Profinet/RT, Sercos III, Siemens S7, Vnet/IP ARP, BROWSER, Bittorrent, CDP, DCE-RPC, DHCP, DNS, DRDA (IBM DB2), Dropbox, eDonkey (eMule), FTP, FTPS, GVCP, HTTP, HTTPS, ICMP/PING, IGMP, IKE, IMAP, IMAPS, ISO-TSAP/COTP, Kerberos, KMS, LDAP, LDAPS, LLDP, LLMNR, MDNS, MS SQL Server, MySQL, NetBIOS, NTP, OSPF, POP3, PTPv2, RDP, STP, SSDP, RTCP, RTP, SSH, SNMP, SMB, SMTP, STP, Syslog, Telnet, VNC SCADAguardian is a physical or virtual appliance that provides real-time cybersecurity and operational visibility of industrial control networks. The Central Management Console (CMC) aggregates data from multiple sites, providing centralized and remote cybersecurity management. Together they deliver comprehensive ICS cyber resilience and reliability. Nozomi Networks Products About Nozomi Networks © 2017 Nozomi Networks, Inc. All Rights Reserved. DS-SG-8.5x11-004 www.nozominetworks.com @nozominetworks Nozomi Networks is revolutionizing Industrial Control System (ICS) cybersecurity with the most comprehensive platform to deliver real-time cybersecurity and operational visibility. Since 2013 the company has innovated the use of machine learning and artificial intelligence to secure critical infrastructure operations. Amid escalating threats targeting ICS, Nozomi Networks delivers one solution with real-time ICS monitoring, hybrid threat detection, process anomaly detection, industrial network visualization, asset inventory, and vulnerability assessment. Deployed in the world’s largest industrial installations, customers benefit from advanced cybersecurity, improved operational reliability and enhanced IT/OT integration. Nozomi Networks is headquartered in San Francisco, California. Visit www.nozominetworks.com