13: Security Monitoring of Industrial Control Systems

Abstract

Enterprise networks have been successfully using 3 for years, but these systems are not always easy to deploy or utilize within industrial networks. Learn what systems to monitor, what information to collect, and how to best use it.

Keywords

Device monitoring; Event correlation; Event data; Information analyses; Log management; Network monitoring; Security analytics; SEM; SIEM; SIM
Information in this chapter
• Determining What to Monitor
• Successfully Monitoring Security Zones
• Information Management
• Log Storage and Retention

The first step of information analysis requires a certain degree of data collection so that there is a healthy body of data ...

Get Industrial Network Security, 3rd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.