TXOne Networks presents SageOne, its new CPS protection platform

TXOne’s Portable Security Pro works towards improving security in ICS environments

TXOne Networks, vendor of cyber-physical systems (CPS) security, presented its new CPS security platform during the Hannover Messe conference. SageOne, which means Wise Man Number One. This central management console provides an overview of the CPS attack surface of the OT environment. All CPS security products now come together on the central management platform, simplifying operations and optimizing threat detection.

SageOne essentially covers three main pillars:

  • CPS Attack Surface Management: Visibility is a cornerstone for cybersecurity. A clear view of the overall security posture helps identify security focal points in an OT environment. SageOne focuses on operational security by honing in on assets and illuminating the security information of various controls.
  • Integrated Lifecycle Protection: Centralized management simplifies cybersecurity governance and achieves collaborative defense. As an abstraction layer, SageOne streamlines the contextualization and consolidation of data across various products. It offers a tailored, task-oriented console designed for executives, security personnel, and plant leaders.
  • CPS Threat Detection and Response: Properly handling known threats is absolutely crucial. Coping with unknown threats is equally important. SageOne compiles all security insights from multiple solutions and scouts for potential risks in order to enable early caution and response when needed.

All three TXOne product lines can be centrally controlled, namely Stellar for endpoint protection, Element for security inspection, and Edge for network defense. The platform offers integrated OT security across the entire lifecycle of the objects to be protected and enables reliable detection and response to threats. 

To achieve this goal, the SageOne platform includes the following key components:

  • Threat intelligence means collecting, analyzing, and applying knowledge about potential and existing threats against a CPS. The TXOne Threat Research department carries out a large number of investigations into vulnerabilities in Industrial Control Systems (ICS) devices and protocols. It analyzes malware and ransomware in connection with Operational Technology (OT) threats. This information can also come from a variety of other sources: Publicly available data, industry reports, and private sector information.
  • Behavior-based AI analytics engines use artificial intelligence to monitor and analyze the behavior of users, devices, and systems within a CPS. This advanced analytics engine learns the normal behavioral patterns of these entities and can detect unusual activity or anomalies that could indicate a security threat.
  • The Compliance Framework provides a structured approach to compliance with relevant safety standards and regulations. It includes policies, procedures, and controls to ensure that every system complies with legal requirements, industry standards, and security best practices.
  • The Data Visualiser is a tool that transforms complex safety data and metrics into an easy-to-understand visual form. Using diagrams, graphs, and network maps, security professionals can recognize patterns and trends as well as anomalies more quickly.
  • The Ecosystem Integrator helps to integrate different tools and technologies. This includes standardizing data formats, promoting the interoperability of different systems, and creating a coherent security architecture that covers the entire ecosystem. This enables security forces to obtain a standardized overview of the security situation, automate processes, and respond more effectively to threats.

SageOne focuses on the analysis of unexpected behavior and unknown threats. Suspicious events can be identified by comparing endpoint and network telemetry within the OT-native XDR (Extended Detection and Response) engine. The platform thus combines advanced technologies with a user-friendly interface to ensure the protection of critical infrastructures. To achieve reliable CPS attack surface management, SageOne also offers Asset Centric Visibility to provide full visibility of any device on the network. In addition, the analysis of the attack surface is prioritized and recommendations are made.

To enable a rapid response to threats, SageOne can issue early warnings of suspicious behavior in the network as part of CPS Threat Detection & Response Orchestration using cross-telemetry analysis.

In addition, Integrated Lifecycle Protection protects devices and systems over their entire service life. The centralized management of the security solutions and the unified defense under one roof contribute to this, resulting in high-cost efficiency. With SageOne, TXOne Networks emphasizes its commitment to the security and reliability of CPS and continuously drives the development of OT security.

Related