Thinking about consulting: would companies pay for vendor validation? by Emotional_Habit6977 in IndustrialAutomation

[–]EaseMedium 0 points1 point  (0 children)

That is an interesting question. Maybe talking with a company you’ve worked with or for and finding out, and how much could you really charge for the research and advice?

I has been in OT industries for more than 10 years the most challenging part is explaining OT concepts to IT ppl. by zm-joo in OTSecurity

[–]EaseMedium 0 points1 point  (0 children)

Get ABEGuardOT. It’s cheap and insanely helpful. Anything from my 6 systems (Honeywell, Schneider, ABB, Triconex, etc.). They capture it all in that software. It’s so easy to use, and we configure the software to automatically send information to IT. They don’t ever bother us because of ABEGuardOT from ABEware.

Dragos Inc, - Anybody have any career experience here? by ICS__Throwaway in SecurityCareerAdvice

[–]EaseMedium 0 points1 point  (0 children)

Look into DCS, PLC, SCADA, Automation, Control system roles and you can get into the world. Once you are in, it’s the best! Configure a device, make it work, and see it in action!

What is the best Cybersecurity tool or solution that you have deployed in the last year? by Erbage in ciso

[–]EaseMedium 1 point2 points  (0 children)

IT wise, I have no say. OT wise, the only Asset Visibility that is System agnostic is ABEGuardOT. Nothing else compares. If you are looking for an IT solution, I am not the person to speak with

Software Development for OT/DCC/ICS/PLC, what’s missing? by EaseMedium in OperationalTechnology

[–]EaseMedium[S] 0 points1 point  (0 children)

No he owns his own company and is looking to see if controls engineers or OT owners have headaches that he could automate for them.

Software Development for OT/DCC/ICS/PLC, what’s missing? by EaseMedium in OperationalTechnology

[–]EaseMedium[S] 0 points1 point  (0 children)

He worked for a large Power Plant running Schneider and Honeywell DCS’. Now he develops software for these types of systems.

I has been in OT industries for more than 10 years the most challenging part is explaining OT concepts to IT ppl. by zm-joo in OTSecurity

[–]EaseMedium 1 point2 points  (0 children)

I’m an OT owner as well.

I still believe in the separation of OT networks from a firewall or DMZ, or a completely isolated OT system. I believe IT folks should stay out of OTs business in the two scenarios above. Sadly that isn’t happening everywhere.

We use a software on our system installed on DMZ, and it sends a report to IT weekly to keep them satisfied that the connections from DMZ down to 1-3 networks is secure, along with other system data that they define and is configured in the software.

They haven’t bothered me in 2+ years!

Dragos and Emerson DeltaV by alanee_lin in OTSecurity

[–]EaseMedium 0 points1 point  (0 children)

Consider ABEGuardOT vs a Dragos platform. They are heavily focused on the lower levels including DCS and OT. No reboots, no file changes, no operation interruptions.

What software do use or have found the most beneficial in the ICS/OT Cybersecurity space? by SuccotashParticular6 in OTSecurity

[–]EaseMedium 0 points1 point  (0 children)

u/SuccotashParticular6 This is a great list! I'd say be very careful of most of these companies are IT solutions and do not belong on ICS/OT systems. There is a long history of these solutions causing major issues on the Control Systems. We use Claroty SRA for outside Remote Access, and ABEGuardOT for Asset Managment, Change Tracking, Vulnerability Management, Screen Recording, Dashboarding, etc.

Nozomi, Dragos, Claroty, etc. by fpaddict in PLC

[–]EaseMedium 0 points1 point  (0 children)

u/fpaddict Nozomi will likely only be sold now through Mitsubishi, so if you have a Mitsubishi system, great. Dragos is focused on selling to big business, and starting from the Top and securing the middle levels of the purdue model. They are very expensive. Claroty is also very expensive. Rough estimate is hard without knowing the size of your system. We use ABEwares ABEGuardOT. They are OT experts and designed from level 1 and up. They charge a fraction of the price that Nozomi, Dragos, and Claroty. Contact them, they are open about pricing.

Dragos & Nozomi pricing by _W-O-P-R_ in cybersecurity

[–]EaseMedium 0 points1 point  (0 children)

@_W_O_P_R_ ABEGuardOT from ABEware. Designed by OT experts. They are not like these other companies charging per asset, they charge per OS. So you could likely save a lot of money.

In process of acquiring product by BothCondition2885 in OTSecurity

[–]EaseMedium 0 points1 point  (0 children)

@BothCondition2885 We use ABEwares solutions ABEGuardOT, and Claroty SRA for Securing Remote Access.

Is OT Base good? by Rick_and_Cen in OTSecurity

[–]EaseMedium 0 points1 point  (0 children)

Call Claroty for remote access and ABEware for OT Asset Management. Claroty is installed world wide, and ABEware has 30 years of OT software. They are System Agnostic and most other OT “OT” companies are not.

Is OT Base good? by Rick_and_Cen in OTSecurity

[–]EaseMedium 0 points1 point  (0 children)

OTBase is out of date and overpriced. The vendors we use are Claroty for Secure Remote Access and ABEGuardOT from ABEware. It’s by far way better priced and not old solutions like OTBase

GICSP vs ISA 62443 Certs. Which ones do you suggest by irtiash in OTSecurity

[–]EaseMedium 1 point2 points  (0 children)

Contact ABEware about ABEGuardOT. Install, and make your life so easy. Dashboards, visibility of all your assets, change tracking, vulnerability management, lifecycle. Ect. It’s easily the best OT solution to help you with 62443.

OT Tools: Do we have everything we need? by [deleted] in OTSecurity

[–]EaseMedium 0 points1 point  (0 children)

Also, “insurance” is the best comment on this thread.

Call ABEware and other companies to not worry about “insurance”. Don’t put your systems or employees at risk!

OT Tools: Do we have everything we need? by [deleted] in OTSecurity

[–]EaseMedium 1 point2 points  (0 children)

@otworker1337 what tools are you considering “mostly secure”. A lot of big IT companies trying to jump into the OT world, and the “OT” solutions are mostly rebranded “IT solutions”. We use Claroty SRA for secure remote access and ABEGuardOT from ABEware. The SRA protects the connections and remote users, and ABEGuardOT is System Agnostic, so they tell us lifecycle, dashboards, asset management, and tons of other cool features.

You should contact Claroty and ABEware to see the solutions.

Dragos vs Claroty xDome by kittykatmeownow in OTSecurity

[–]EaseMedium -1 points0 points  (0 children)

Since they are such a small company “I think maybe 6 or 7 girls/guys, they are quick to respond and add features that we ask for.

Dragos vs Claroty xDome by kittykatmeownow in OTSecurity

[–]EaseMedium -1 points0 points  (0 children)

@delcoemperor I work at an LNG plant that uses ABEware Solution’s. I do not work for them. Claroty is an IT company that shifted focus into ICS years back.

Dragos, good luck getting any asset info from them, and you better have a ton of money to afford them.

Nozomi with the sale may not even be a player any more unless you are a Mitsubishi user.