©2015 continental automated buildings association (caba). intelligent buildings and cybersecurity...

16
©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November 17-19, 2015 • Washington, D.C. Ronald J. Zimmer CAE President & CEO Continental Automated Buildings Association www.CABA.org LinkedIn: http://www.linkedin.com/groups? gid=2121884

Upload: anis-roberts

Post on 18-Jan-2016

221 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

©2015 Continental Automated Buildings Association (CABA).

INTELLIGENT BUILDINGSAND CYBERSECURITY

Building Control System Cyber Defense ForumNovember 17-19, 2015 • Washington, D.C.

Ronald J. Zimmer CAEPresident & CEO

Continental Automated Buildings Associationwww.CABA.org

LinkedIn: http://www.linkedin.com/groups?gid=2121884

Page 2: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

CABA Board of Directors and Vision

CABA Vision Statement

“CABA accelerates growth in the connected home and intelligent buildings sectors.”

CABA Board of Directors

2

Page 3: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

About CABA

3

• The Continental Automated Buildings Association (CABA) is an international not-for-profit industry association, founded in 1988, dedicated to the advancement of connected home and building technologies.

• The organization is supported by an international membership of over 325 organizations involved in the design, manufacture, installation and retailing of products relating to home and building automation.

• Public organizations, including utilities and government are also members. CABA's mandate includes providing its members with research, services and networking opportunities.

• CABA also encourages the development of industry standards and protocols, and leads cross-industry initiatives.

• CABA maintains the largest “connected home and intelligent buildings” research library in the world.

Page 4: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

CABA Intelligent Buildings and Cybersecurity Study

4

For more information on this research project, go to: http://www.caba.org/CABA/Research/Intelligent-Buildings-Cybersecurity.aspx

Page 5: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

What is an Intelligent Building?

Source: Compass Intelligence, 20155

Page 6: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

6

Intelligent Buildings are the Future

Source: The IET – The Institution of Engineering and Technology

“Intelligent Buildings are part of an increasingly integrated build environment.”

Smart

Grid

Smart

Cities

SmartHome

s

Intelligent

Transport

Intelligent

Buildings

Page 7: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

7

Convergence of IP-Based Infrastructure

Source: The IET – The Institution of Engineering and Technology

• Building Services

• Accommodation Services

• Business Services

Page 8: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

8

Case Study – IP Based Systems – Sports Stadium

Source: The IET – The Institution of Engineering and Technology

Page 9: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

9

Risks Arising from Compromised Systems

Source: The IET – The Institution of Engineering and Technology

Corporate IT systems

Loss ofview

Loss ofInformation

Denial ofService

FinancialIntegrity

BuildingSystems (ICS)

Safety and operational risk

Financial and reputational risk

Loss ofcontrol

Impact on systems

Page 10: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

North America Threat Profile for Intelligent Building and Market (2015)

Source: 2015 Verizon Data Breach Investigation Report10

Page 11: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

11

CABA Member Funders

Four Options:

1. Avoidance

2. Reduction

3. Sharing the Risks

4. Retention and ManageConsequences

Source: The IET – The Institution of Engineering and Technology

Page 12: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

12

Security Zones and Conduits

• Solutions developed during the design phase.

• Proposed design should be assessed for new ideas.

• BMS application needs networked segregation (firewall).

• Secure gateway protection (data diode secures BMS).

Source: The IET – The Institution of Engineering and Technology

Page 13: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

13

Cybersecurity Responsibility Paradigm

• Manage interaction between infrastructure and business systems.

• Need clear operating procedures and agreed “best practices”.

• Need to be based on recognized standards (eg., ISO 27001).

• Legal issues – lease/tenancy agreements covering data protection, human rights, etc.

• Insurance policies need to be revised and possibly updated.

Source: The IET – The Institution of Engineering and Technology

Page 14: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

Global Cybersecurity Revenues Market, 2015-2022

Source: Compass Intelligence, 201514

Global Cybersecurity Expenditures, 2015-2022

$75.8B - $160.6B

Page 15: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

Percent of Revenues by Region for the Global Cybersecurity Market, 2015

NA$33.4

Europe$17.4

APAC$15.9

MEA$5.3

LATAM$3.8 Region Revenues (B)

NA $33.4

Europe $17.4

APAC $15.9

MEA $5.3

LATAM $3.8

Source: Compass Intelligence, 201515

Page 16: ©2015 Continental Automated Buildings Association (CABA). INTELLIGENT BUILDINGS AND CYBERSECURITY Building Control System Cyber Defense Forum November

Contact Us

Continental Automated Buildings Association (CABA)1173 Cyrville Road, Suite 210

Ottawa, ON K1J 7S6613.686.1814

Toll free: 888.798.CABA (2222) Fax: 613.744.7833

[email protected]

www.twitter.com/caba_news www.linkedin.com/groups?gid=2121884

16