Exceptional Tools for Exceptional Problems
The challenges of security assessment and risk mitigation for Advanced Metering Infrastructure (AMI) and Distribution Automation (DA) Smart Grid systems differ from traditional IP-based computer networks in both scope and technique. Field Area Network (FAN) infrastructures consist of a large number of embedded devices, typically in the form of dual-band wireless nodes, signal repeaters, smart meters, SCADA Remote Terminal Units (RTUs), line sensors, and various monitors. Many of these intelligent endpoints cannot be physically protected and are thus susceptible to both physical and cyber attacks. The combination of proprietary protocols and the embedded nature of today’s FANs render traditional IT security assessment methods and tools unusable.
Applied Communication Sciences experts have developed a proven security assessment methodology which combines traditional penetration testing techniques for networks, computer systems, and applications with a detailed embedded hardware security and radio communications analysis. Our methodology focuses on four areas: Radio, Network, Software/Firmware, and Hardware.
FAN Protocol Analyzer
Visibility into FAN traffic flows and packet exchanges among nodes is critical to understanding the potential security vulnerabilities in addition to network behavior. We have designed and built the industry’s first FAN protocol analyzer which consists of a custom probe configured for multi-channel packet capture and decode on popular AMI systems. Our custom packet dissectors permit decomposition of captured traffic through several protocol layers. Our FAN Protocol Analyzer can be used as a security tool to monitor and inspect packet contents, such as security exchanges, as well as provide value as a monitor to assess network health and a diagnostic tool for field technicians and remote maintenance.
FAN Intrusion Detection System (IDS)
Designed as a scalable, probe-based system with policies and heuristics to detect signs of potential malicious traffic, our FAN IDS operates independent of FAN components and provides a security control for mitigation of supply chain cyber threats. It features a multi-channel operation with distributed intrusion detection intelligence and centralized capture storage when deployed in a FAN environment.
Our FAN protocol analyzer and intrusion detection capabilities will help augment a utility’s FAN security program and provide much needed visibility into FAN traffic flows. For more information, down load our FAN Protocol Analyzer and FAN Intrusion Detection System brochures or contact us at smartgrid@appcomsci.com for a demonstration of our tools.
FAN Visualization Tool
Today, utilities can typically detect connectivity issues when smart meter reading attempts or remote operations are unsuccessful. But, there are limited means available to diagnose the cause of the problem remotely and there is no way to gain an understanding of the topology of the FAN and evaluate it holistically. Applied Communication Sciences is at the forefront of developing tools to discover, analyze and display the topology of FANs, and monitor their performance, connectivity and latency characteristics.
Our ground breaking network visualization tool provides utilities with immediate situational awareness of their AMI FAN networks. It analyzes collected data and statistics from meters and access nodes and presents it in a variety of views. The network visualization tool is able to send alerts to operations staff, other OT systems, asset managers and planners which significantly enhances troubleshooting and analysis. Our experts are well equipped to advise utilities in the design, implementation, testing, and deployment of a network visualization tool customized to the utility’s AMI deployment that best serves the needs of its operations, engineering, and business units. For more information, down load our FAN Visualization Tool brochure or contact us at smartgrid@appcomsci.com
Applied Communication Sciences’ IP Assure is an innovative and cost effective tool to efficiently verify IP device configurations throughout an IP network in a matter of hours. Without such an automated tool, it is virtually impossible to perform the manually intensive task of network error detection and remediation. IP Assure can systematically save utilities time and money as it helps secure their IP networks which now extend into all parts of their environments. IP Assure can also help prevent security breaches, network outages and audit failures. Thousands of parameters per device config file are extracted and analyzed by IP Assure in a matter of minutes with the results provided in standard and customized detailed reports for technicians and summaries for managers.
Smart Grid FAN Managed Services:
As a cost effective solution for distribution and energy generation utilities, Applied Communication Sciences provides outsourcing of security monitoring for AMI networks and other FAN environments.
Our teams will build, install, and operate an AMI and distribution automation remote field area network intrusion detection system as a custom managed service within your service area or facility’s network environment with a defined Service Level Agreement. We will build and install wireless signal monitoring probes of different hardware configurations that will operate in fixed and mobile environments. These probes will monitor over-the-air AMI and FAN device traffic and transport captured traffic and alerts to a data center located in our remote facilities. Our team operates an Intrusion Detection System, Capture Repository, Customer Portal and other applications needed to manage the system in our data center for your company. Our Intrusion Detection System applies a series of defined rules and behaviors to the incoming traffic streams and raise alerts when conditions you define are satisfied. Alerts are logged and trigger a response designed to meet your operations needs. All captured traffic is stored in a Capture Repository and provided to you via a portal to view the traffic traces, IDS alert logs, and system health and operational status.
Our managed service offering delivers a full range of daily operations, including monitoring system health; sorting, processing, responding, and investigating alerts; examining packet captures associated with alerts; scanning packet captures for unidentified traffic; managing the customer portal and capture repository; and responding to utility requests. We prepare reports summarizing the system operation, alerts, incidents, and statistics. Our team would be pleased to discuss your specific FAN managed services needs with you. Please contact us at smartgrid@appcomsci.com.