How One Industry Exemplifies the Importance Of Cybersecurity In Critical Infrastructure Assurance

Based on the author's more than 25 years of experience of management in the aluminum industry, this article sets out replicable ways of dealing with and harmonizing competing priorities.
Currently within the purview of the Department of Homeland Security and its subsidiary the Critical Infrastructure Security and Resilience Agency, the designation of 16 sectors of critical infrastructure and the responsibility for assuring their security and resilience encompass nearly every vital economic activity.
Similar requirements for these organizations are in large part applicable to those levied upon my industry.
While specifically only applicable to the aluminum market, the current situation illustrates how an industry can face forces which can fundamentally impair its ability to support a vigorous sector of our critical infrastructure.
Your industry will probably face different challenges, but the principles of responding to such threats are likely to be very similar.
Without needlessly reciting history or straying far from the thrust of this article, the nub of the matter is that the American aluminum industry is currently about 1 million metric tons of processed aluminum short of the annual needs of the critical manufacturing sector.
Tariffs were originally intended to accomplish one or more of several principal purposes: protection of domestic industry, raise revenue, and modify the behavior of market participants.
They can also stifle the legitimate needs of American industry.
That is where things stand in my industry - we are hobbled by the conflict of several governmental imperatives.
Of course, there are the obvious applications of IT and OT in the aluminum industry, just as there are in the endeavors of readers of Cyber Defense Magazine.
Participants in the aluminum industry rely on Supervisory Control and Data Acquisition, IT, OT, and other computer-based systems.
Risk Management is another overlap in our activities, especially choosing which risks to retain and resolve and which ones to lay off on a third party We also must recognize that compliance with Legal and Regulatory requirements may not always be sufficient to avoid liability for our organization's acts or omissions.
We have established ourselves in the industry as both a niche player and a vertical expansion vehicle.
As we source products to deliver and support the critical infrastructure sector of manufacturing, and aluminum in particular, we conduct very detailed information and analysis of supply and demand data, our competitors, and relevant trends affecting our business.
Any organization operating in an industry subject to State and federal laws and regulations, or doing business directly with any level of government, or receiving any funding from government sources, inevitably faces requirements to comply with some form of statute or regulation.
In general, we prefer to avoid the costly and lengthy judicial process, but we do follow legal actions taken by others in our industry, including the trade associations of which we are members or supporters.
Last, but never least, we work to support and coordinate our activities with the communities where we have operations or where others in our industry can do so.
Its importance is demonstrated by the awareness of top management and directors of organizations, and further reflected in the budget and staffing provisions in this area.
The CISO does not exist in a vacuum, and the successful integration of cybersecurity into the organization's overall activities depends on navigating a broad two-way street: the CISO must keep current on the mission and values of the organization, and the leaders of the organization must assure that all employees, from top to bottom, are cognizant and duly respect the role of cybersecurity.
Brian Hesse is Co-Owner, President, and Chief Executive Officer of PerenniAL. He has 26 years of experience in the aluminum industry in a variety of executive leadership, sales and marketing positions, including President/Chief Executive Officer for the Americas at Rusal America Corporation; Vice President/Sales and Marketing for the Americas at Vedanta Resources Limited; Global Defense Sales Director and Americas Sales Director - Industrial at Aleris International, Inc.; and Director of Global Accounts at Ryerson Corporation, where he began his career in the industry.

This Cyber News was published on Publication date: Thu, 11 Apr 2024 20:43:05 +0000

Cyber News related to How One Industry Exemplifies the Importance Of Cybersecurity In Critical Infrastructure Assurance

How One Industry Exemplifies the Importance Of Cybersecurity In Critical Infrastructure Assurance - Based on the author's more than 25 years of experience of management in the aluminum industry, this article sets out replicable ways of dealing with and harmonizing competing priorities. Currently within the purview of the Department of Homeland ...
2 months ago
Jumpstart your studies for ENNA with Network Assurance Prep - It's no secret that today's networks span across a vast, decentralized web of services, where anything can-and will-happen to your data. When your network's not under your direct control, it's hard to see issues. Not knowing what's going on in and ...
1 month ago
9 Best DDoS Protection Service Providers for 2024 - eSecurity Planet content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More. One of the most powerful defenses an organization can employ against distributed ...
6 months ago
Cybersecurity Curriculum Development Tips for Schools - With the constant threat of cyber attacks, schools must prioritize the development of a robust cybersecurity curriculum to equip students with the necessary skills and knowledge. This article provides valuable insights and tips for schools aiming to ...
5 months ago
The Importance of Cybersecurity Education in Schools - Cybersecurity education equips students with the knowledge and skills needed to protect themselves and others from cyber threats. Cybersecurity education can teach students about the impact of cyberbullying, how to prevent it, and how to respond ...
6 months ago
Cybersecurity Curriculum Development Tips - In this article, we will explore essential tips for developing a comprehensive and up-to-date cybersecurity curriculum. By staying abreast of the latest industry trends, educational program developers can ensure that their curriculum remains relevant ...
6 months ago
Fortinet Contributes to World Economic Forum's Strategic Cybersecurity Talent Framework - Shining a light on the cybersecurity workforce challenge, the World Economic Forum recently published its Strategic Cybersecurity Talent Framework, which is intended to serve as a reference for public and private decision-makers concerned by the ...
1 month ago
Cybersecurity in the Healthcare Industry: Protecting Patient Data - In the rapidly advancing era of technology, the healthcare industry faces a critical challenge: protecting patient data from cyber threats. This article will emphasize the significance of cybersecurity in the healthcare industry and explore the ...
4 months ago
Strategy, Harmony & Research: Triaging Priorities for OT Cybersecurity - The mission of the Cybersecurity and Infrastructure Security Agency is to lead the national effort to understand, manage, and reduce risk to the cyber and physical infrastructure that Americans rely on every hour of every day. CISA is not responsible ...
6 months ago
Student Cybersecurity Clubs: Fostering Online Safety - Student cybersecurity clubs are playing a crucial role in promoting online safety among students. Student cybersecurity clubs play a vital role in this regard, as they provide a platform for students to learn about the latest threats, share best ...
6 months ago
What is the NIST Cybersecurity Framework? Definition from SearchSecurity - The NIST Cybersecurity Framework provides guidance on how to manage and reduce IT infrastructure security risk. NIST created the CSF to help private sector organizations in the United States develop a roadmap for critical infrastructure ...
5 months ago
OT Cybersecurity for Automotive Industry - OT systems are ubiquitous across all critical infrastructure industries, such as Oil and Gas, Automotive, Energy, Water Utilities, and Transportation. OT infrastructure is very vital to any nation's security to ensure the delivery of essential ...
6 months ago
Beyond Mere Compliance - Too often we continue to see executives whose approach to cybersecurity - compliance rather than protection - is strikingly similar to that of the ill-advised business owner whose minimal fire protection is designed only to meet the building code. ...
6 months ago
What the cybersecurity workforce can expect in 2024 - For cybersecurity professionals, 2023 was a mixed bag of opportunities and concerns. The good news is that the number of people in cybersecurity jobs has reached its highest number ever: 5.5 million, according to the 2023 ISC2 Global Workforce Study. ...
5 months ago
Growing threats outpace cybersecurity workforce - The cybersecurity skills shortage threatens the well-being and even survival of numerous businesses as cybersecurity threats grow more numerous, sophisticated, and dangerous to the point that cybersecurity groups have vowed not to pay ransom demands. ...
5 months ago
Opening Statement by CISA Director Jen Easterly - Chairman Gallagher, Ranking Member Krishnamoorthi, Members of the Committee, thank you for the opportunity to testify on CISA's efforts to protect the Nation from the preeminent cyber threat posed by the People's Republic of China. As America's ...
5 months ago
Singapore Cybersecurity Update Puts Cloud Providers on Notice - Lawmakers in Singapore updated the nation's cybersecurity regulations on May 7, giving more power to the agency responsible for enforcing the rules, adopting definitions of computer systems that include cloud infrastructure, and requiring that ...
1 month ago
How to become a cybersecurity architect - Cybersecurity architects implement and maintain a comprehensive cybersecurity framework to protect their company's digital assets. The cybersecurity architect position is a fundamental role that all organizations need, said Lester Nichols, director ...
6 days ago
Understanding the New SEC Rules for Disclosing Cybersecurity Incidents - The U.S. Securities and Exchange Commission recently announced its new rules for public companies regarding cybersecurity risk management, strategy, governance, and incident exposure. "Currently, many public companies provide cybersecurity disclosure ...
7 months ago
Cybersecurity Training for Business Leaders - This article explores the significance of cybersecurity training for business leaders and its crucial role in establishing a secure and resilient business environment. By examining the key components of effective training programs and the ...
5 months ago
Cybersecurity Competitions for Students - Cybersecurity competitions offer students a unique opportunity to develop and showcase their skills in a competitive environment. Participating in cybersecurity competitions offers students invaluable opportunities for professional growth and skill ...
6 months ago
Cybersecurity Training for Small Businesses - The importance of cybersecurity training for small businesses cannot be overstated in today's increasingly digital world. In conclusion, cybersecurity training is essential for small businesses to protect themselves against cyber threats. There are ...
4 months ago
A Plan to Protect Critical Infrastructure from 21st Century Threats - On April 30th, the White House released National Security Memorandum-22 on Critical Infrastructure Security and Resilience, which updates national policy on how the U.S. government protects and secures critical infrastructure from cyber and ...
1 month ago
How to Avoid Falling Below the Cybersecurity Poverty Line - The security poverty line broadly defines a divide between the organizations that have the means and resources to achieve and maintain mature security postures to protect data, and those that do not. It was first coined by cybersecurity expert Wendy ...
1 year ago
Digital Learning Tools for Cybersecurity Education - In the field of cybersecurity education, digital learning tools have become indispensable. This article explores various digital learning tools tailored specifically to cybersecurity education. These digital learning tools play a crucial role in ...
6 months ago

Latest Cyber News

Cyber Trends (last 7 days)

Trending Cyber News (last 7 days)