Streamline OT Management and Fortify Security in Industrial Environments
[Music] welcome everyone to our session streamline manage and secure your operational technology assets I am P Patel technical product marketing manager and I'm super excited to be here joining me today is Mike plavin thanks PE my name is Mike plavin I am also a technical product marketing manager for service now before we get started I would like to point out our Safe Harbor notice everything we are covering today is part of our product release but the presentation may contain forward-looking statements these statements should not be relied upon in making any sort of purchasing decisions to kick this off here are three big things we want to talk about today one of the biggest challenges industrial organizations are facing today has to do with lack of visibility of their o assets 65% of Enterprise asset managers we surveyed reported that they do not have a suitable solutions to optimize maintenance schedules and address unplanned downtime additionally 60% of individuals experience frequent breaches of their industrial control systems or their scatter based systems unfortunately this is unlikely to change soon you have seen enough slides already let's dive into the demo for this demo we have simplified some of the roles and functions we will be covering today but we know that may be a completely different role in your organization in this case Joe who is our Enterprise asset manager also has access to the asset dashboard here is Joel looking at the asset dashboard to see what assets have been discovered let's talk about how we are able to get OT assets into service now when assets are brought into service now much information is collected and anything missing can be added later one key feature of service now platform is that it allows you to display the data you see here in interactive reports notice at the bottom of the screen how we can bring assets into service now by importing Excel spreadsheets service watch and thirdparty Integrations such as Microsoft Defender for iot clarot and dragos joy is also responsible for managing Enterprise assets which could be the physical OT devices operating equipment or parts and tools used to maintain these assets he has been asked to provide a cost comparation report for laser cutting machines between the newor and Santa Clara plants Joe starts with TCO dashboard notice that the data reflects many business assets such as MRI machines laser cutting and construction equipment earlier in the day Joe created a report to compare the cost of the laser cutting machine model while he's generating this report he has an options to compare actual cost but he could also select projected cost which would include TCO over the lifespan of these assets after clicking The View report he can see the cost breakdown by categories such as purchase price maintenance repair and labor cost the report also explains why it's not economically feasible to maintain and operate the ass ass based on the older model he could now use this data to raise the asset refresh date rather than wait until the end of the cycle so in just a few clicks Joe found an opportunity to maximize the value of his high value assets all from a single workspace knowing where all the assets are is important equally as important is ensuring the security posture for those assets and that's where Robert comes in meet Robert Brown he is responsible for managing the security on all the industrial devices and protecting them against threats like ransomware denial of service attacks and more Robert has a lot on his plate so being able to view everything from a single location saves him a lot of time in his workday Robert starts his day in the industrial workspace where he's able to view the state of OT security for all the locations he's responsible for now he notices that there are 10 active vulnerabilities is in the Atlanta manufacturing area and we'll come back to that in a bit the workspace comes with a lot of great dashboards out of the box and Robert can quickly see how his team's doing with managing the vulnerabilities and if he wants to customize any of them he can do so with the click of a button he also has a comprehensive view of the Enterprise level security posture of all the ooc assets in his organization this gives him a view of the important information like the open critical vulnerabilities on OT devices the vulnerable items by risk rating in state and more he can even see the risk score and open vulnerabilities at all of the different sites he manages and Robert can share this dashboard with those who also need access to this information remember how the Atlanta site has those active vulnerabilities Robert wanted to know more about how they're being managed so he reaches out to Troy an IC engineer who does the day-to-day managing and patching of the connected devices in the Atlanta site Troy logs into the industrial workspace and notes that there are 10 new OT vulnerable items at the site most of which are in the manufacturing area Troy navigates to the equipment model entity View and drills down to the area we want to focus on manufacturing work center 2 it's worth noting that because of how service now Maps the relationships between all the the different configuration items in the cmdb Troy can view the equipment model hierarchy in a visual format by looking at the OT dependency map now let's look at one of the vulnerabilities that were discovered on the OT devices in manufacturing work center 2 there's a lot of information that's pulled not only from the configuration item itself like the Purdue level but also the vulnerability scanner information like a summary of the vulnerability and whether an exploit exists for it why is this important well it gives the system relevant information to determine the overall risk for the vulnerability of the OT device and the organization and it also provides folks like Robert and Troy the information they need to quickly determine next steps speaking of next steps let's create an action item to ensure the PLC receives the patch acquires in a timely manner we'll create a remediation task which allows Troy to monitor the progress while the patches are being applied and for the purposes of this demo we'll assign the task to Troy Troy can review the details of the work item like when the remediation Target is I.E when does the work need to be completed by as well as the individual vulnerable items that need to be patched Troy then creates a change request in order to implement the patching on the OT devices using the scheduling assistant Troy gets an immediate view of the next planned downtime for the affected OT assets and can select this change request by adding to the list of work items to be completed all this without ever having to leave the workspace he's in now through the magic of the demo we'll say that that's exactly what happened the patches were successfully applied to the PLC during planed downtime and everything was brought back online in perfect working order what's more now that the patches are installed the remediation task shows that all vulnerabilities are resolved and the remediation progress has been progressed to 100% now let's switch gears a bit and talk about how service now makes work easier for General OT incidents let's say there's a PLC that hasn't been working as expected so Troy creates a new incident and starts an investigation as he starts entering the brief description of what's going on agent assist automatically suggests potential solutions for him based on the keywords he entered Troy reviews the KB article and sees that someone else had a similar issue which they were able to resolve by updating the firmware similar to other online tools Troy's able to rate and review the knowledge-based article so others will know how relevant it it may be to their work how cool is that so to recap we just learned how you can gain full asset visibility on a single platform achieve faster resolution time with scheduling assistant and nav assist and enhance your OT security posture from disc Discovery to remediation to learn more about e am and otm visit our itm site at servicenow.com thank you everyone for joining us today
https://www.youtube.com/watch?v=zgI5wNc-_Gw