Critical National Infrastructure, and in particular the electrical sub-sector, is a high profile target for a cyber attack. The systems supporting this infrastructure need to be protected at both the organisational and technical levels.
Cyber exercises provide a framework for understanding what happens when electrical Critical National Infrastructure is attacked. They help reduce the likelihood of an attack and help mitigate the consequences of an attack.
The electrical sector is particularly at risk and real incidents, such as the Black Energy attack against Ukrainian electrical systems, have demonstrated the threat. Cyber security defences need to be able to withstand the most determined and persistent of attackers.
Cyber exercises help test how cyber defences perform in the face of a state level attacker. They help the defender understand how an advanced attacker thinks and operates, and how to defend against them.
Industrial control systems (ICS), SCADA, and other Operational Technology (OT) need to be protected from cyber attacks in different ways to standard IT systems. These specialist systems need to be well understood so that they can be protected.
Clear Cut Cyber has significant experience of working with ICS, SCADA and OT. We understand how these technologies are deployed, configured and maintained. We understand how they are attacked and how they can be protected.
The electrical sector is particularly reliant on a number of different organisations having to work closely together using interconnected IT systems. A security weakness in one of these organisations can affect the security of the wider sector. These organisations need to be able to respond collectively to a cyber incident to mitigate the impact.
Cyber exercises help build trust and mutual understanding between organisations so that coordinated action can be taken when a cyber incident happens.