

Industrial Defender
By INDUSTRIAL DEFENDER
The implementation process for Industrial Defender software typically involves several key steps, each designed to ensure a smooth integration into the customer's operational technology (OT) environment. The process is generally structured as follows:
Planning and Requirement Gathering: This initial phase involves understanding the customer's specific needs and objectives. Industrial Defender collaborates with the customer to establish clear goals, timelines, and expectations for the implementation process.
System Configuration and Integration: The software is configured according to the customer's requirements. This may involve integrating Industrial Defender with existing systems and ensuring compatibility with the customer's infrastructure.
Data Migration: If necessary, data from existing systems is migrated to the new platform. This step requires careful planning to ensure data integrity and security during the transition.
Training: Comprehensive training sessions are provided to the customer's team to ensure they understand the software's functionalities and can utilize it effectively. This may include training materials, videos, and interactive tutorials.
Testing: Thorough testing is conducted to identify and resolve any potential issues or bugs before the software goes live. This step is crucial to ensure the software operates as expected in the customer's environment.
Go Live: The software is deployed and made operational for the customer's use. This phase involves closely monitoring the system to ensure it functions smoothly and meets the customer's needs.
Industrial Defender can be customized to fit specific business needs. Here are several data points highlighting its customization capabilities:
Custom Features and Innovations: Industrial Defender is known for its willingness to innovate and create custom features to meet the specific needs of its clients. This flexibility is a significant advantage for organizations with unique requirements.
Integration and Compatibility: The platform supports various data collection methods, including agent, agentless, and passive, which can be tailored to the specific infrastructure and operational needs of a business. This adaptability ensures that the solution can be integrated seamlessly into existing systems.
Enhanced APIs and Data Management: Industrial Defender offers enhanced APIs and personalized risk score calculations, allowing businesses to prioritize threats based on their specific risk profiles. This customization enables organizations to better manage and secure their OT environments.
Custom Compliance Reporting: The platform allows for the creation of custom compliance reports, which can be tailored to meet the specific regulatory and compliance requirements of different industries.
Industrial Defender offers comprehensive training and support to new users to ensure they can effectively utilize their products. Here are the key elements of their training and support offerings:
Training Programs: Industrial Defender provides structured training programs, such as the ASM 101, which is a three-day introductory course designed to help users understand the basics of the Automation Systems Manager (ASM) platform. This course covers platform navigation, reporting, asset administration, system administration, event management, and rules management. It is targeted at system administrators, network administrators, and other professionals responsible for change management and compliance.
On-Site Training: The training is typically delivered on-site by experienced trainers, allowing for hands-on learning and direct interaction with the platform. This approach helps users quickly gain practical experience and apply best practices in cybersecurity, compliance, and change management.
Comprehensive Support Services: Industrial Defender offers a range of professional services, including support, engineering, analysis, and technical consulting. These services are designed to help users maximize the value of their deployment by providing ongoing support and guidance.
Customer Support Team: The support team at Industrial Defender is noted for its excellence and willingness to innovate new custom features. They provide assistance not only with product-related queries but also go the extra mile to ensure customer satisfaction.
Industrial Defender implements several security measures to protect data within operational technology (OT) environments. These measures are designed to enhance cybersecurity and ensure compliance with industry standards. Here are the key security measures:
Comprehensive Asset Management: Industrial Defender provides detailed OT asset management, which includes maintaining an inventory of hardware and software, tracking software versions, and monitoring vulnerabilities and patches. This comprehensive approach helps in identifying and mitigating potential security risks.
Configuration and Change Management: The platform ensures secure configuration management by automatically collecting, normalizing, and reporting on changes in OT systems. It establishes baseline configurations and uses a change detection engine to compare actual configurations, identifying any deviations that could pose security risks.
Vulnerability Management: Industrial Defender facilitates risk-based vulnerability management by providing insights into relevant Common Vulnerabilities and Exposures (CVEs), available patches, and mitigation actions. It partners with FoxGuard Solutions for validating and deploying vendor-approved patches, ensuring vulnerabilities are addressed promptly.
Data Collection and Monitoring: The platform utilizes both active and passive data collection methods to monitor OT and IT systems. This includes host-based agents, remote log monitoring, and passive network traffic observation, which help in analyzing and correlating events across the environment.
Automated Compliance and Reporting: Industrial Defender automates compliance reporting for various industry frameworks such as NIST, NERC CIP, and CMMC. This automation simplifies the compliance process and ensures that organizations can easily generate audit-ready reports.
Centralized Threat Detection and Response: The platform integrates with tools like Splunk for centralized threat detection and response, helping to reduce the mean time to respond (MTTR) to cyber threats in OT environments.
Industrial Defender regularly releases updates to enhance its platform's capabilities and address vulnerabilities. Here is an overview of how updates are managed:
Frequency of Updates: Industrial Defender does not specify a fixed schedule for updates, but it frequently releases new versions to introduce enhancements and address vulnerabilities. For example, the release of version 7.5 in February 2023 included new capabilities for vulnerability management and operational data enrichment.
Patch Management: The platform integrates with FoxGuard Solutions to manage patches, ensuring that vendor-approved patches are validated and deployed efficiently. This integration helps track patches from release to installation, maintaining security ratings for each patch.
Vulnerability Management: Industrial Defender provides real-time vulnerability monitoring and prioritization using a vulnerability prioritization engine. This allows organizations to make informed decisions about patching based on the severity and potential impact of vulnerabilities.
Automated Data Collection and Integration: The platform is designed to automatically collect and integrate data across OT environments, enabling seamless updates and ensuring that all systems are synchronized with the latest security measures.
Industrial Defender data ownership and portability:
Industrial Defender's policy on data ownership and portability emphasizes that customers maintain full ownership of their data. The company ensures that any data collected, managed, or analyzed using its platform remains the property of the client. In terms of portability, Industrial Defender allows for easy data export and transfer, supporting various formats and integrations that facilitate data mobility. This approach is designed to ensure that clients can efficiently move their data between systems or to other platforms as needed, without encountering vendor lock-in.
Scalability for Industrial Defender:
Scalability:
The platform is designed to be scalable, allowing organizations to expand their cybersecurity programs as they grow and mature. This scalability ensures that the platform can handle increasing amounts of data and more complex security requirements over time.
Industrial Defender supports active and passive data collection methods, which can be scaled according to the organization's specific needs. This integrated approach ensures comprehensive coverage and adaptability to different operational environments.
Integration and flexibility:
The platform's open API enables easy integration with existing technology stacks, allowing organizations to scale their cybersecurity measures without significant disruptions.
The terms and conditions for contract renewal and cancellation for Industrial Defender include the following key points:
Renewal Terms:
Contract renewal processes are often tied to predefined terms outlined during the initial agreement. It is typical to have a notification period before the contract’s expiration to either renew or modify the agreement.
Renewal terms may include adjustments in pricing based on changes in usage, feature requirements, or new product integrations
Cancellation Policies:
Cancellation terms depend on the agreement structure (e.g., subscription-based or one-time licenses).
Early termination may result in penalties or fees proportional to the remaining duration or unfulfilled obligations of the contract.
Some services may require a formal notice period for termination, ensuring a seamless transition or migration process
.
Industrial Defender software meets several key compliance standards, particularly for critical infrastructure and operational technology (OT) environments. The platform supports compliance with the following standards:
NERC CIP (North American Electric Reliability Corporation Critical Infrastructure Protection): Industrial Defender automates compliance management and reporting for NERC CIP, a critical standard for utilities in North America.
NIST (National Institute of Standards and Technology Cybersecurity Framework): The platform provides audit-ready reporting and policy templates for NIST standards, facilitating compliance with this widely adopted cybersecurity framework.
CMMC (Cybersecurity Maturity Model Certification): Industrial Defender supports compliance with CMMC, which is essential for contractors working with the U.S. Department of Defense.
IEC 62443: This international standard for industrial communication networks is also supported by Industrial Defender, helping organizations meet global cybersecurity requirements.
NIS2 (EU Network and Information Security Directive): The platform includes compliance capabilities for NIS2, which is crucial for network and information security across the European Union.