Potential risks and compensating controls

Address potential risks using these compensating controls:

Area Issue Risk Compensating control
Secure protocols ION, Modbus, DNP, IEC 61850 and some IT protocols are unsecure. Power Operation does not have the capability to transmit data encrypted using these protocols. If a malicious user gained access to your network, they could intercept communications.

For transmitting data over an internal network, physically or logically segment the network.

For transmitting data over an external network, encrypt protocol transmissions over all external connections using a Virtual Private Network (VPN) or a similar solution.

See Protected environment assumptions for information on compensating controls.

warning

data in transit is potentially unencrypted and could be altered

When transmitting data using ION, Modbus, DNP, IEC 61850 and some IT protocols:

  • Physically or logically segment the network.

  • Encrypt protocol transmissions over all external connections using a Virtual Private Network (VPN) or a similar solution.

Failure to follow these instructions can result in death, serious injury, equipment damage, or permanent loss of data.