ARIS ãæäŸãã䟡å€
åãªããã§ãã¯ãªã¹ã察å¿ã§ã¯ãªããçµå¶ã»ç£æ»ã»çŸå Žã䜿ããæ å ±ãšããŠæŽçããå®éã«åããæ¹åèšç»ãŸã§èœãšã蟌ã¿ãŸãã
åãçµãã»ãã¥ãªãã£èª²é¡
å ¬éç³»ã·ã¹ãã ãã¯ã©ãŠãèšå®ãID 管çãIT/OT å¢çãå·¥å ŽãçŸå Žç«¯æ«ãªã©ããªã¹ã¯ã¯è€æ°ã®å±€ã«ãŸããããŸãã
Web / API ã®ãªã¹ã¯
å ¬éãããã¢ããªã API ã«èªèšŒã»èªå¯äžåãæªå¯Ÿçè匱æ§ãæ®ãã䟵害ã®å ¥å£ã«ãªãã±ãŒã¹ããããŸãã
IT/OT åé¢äžè¶³
IT ãš OT ã®å¢çãææ§ãªãŸãŸã ãšãäŸµå ¥åŸã®æšªå±éãææ¥åœ±é¿ã®ãªã¹ã¯ãé«ãŸããŸãã
èšå®ã»æš©éã®äžå
ã¯ã©ãŠãèšå®ãéå°æš©éãå€ãèªèšŒæ å ±ãé²åºããã¹ãã¬ãŒãžãªã©ãèšå®èµ·å ã®ãªã¹ã¯ã¯èŠèœãšãããã¡ã§ãã
äœå¶ã»éçšã®æªæŽå
ã€ã³ã·ãã³ã察å¿èšç»ãæè²ãç£èŠã責任åçãäžååãªãŸãŸã ãšãçºèŠåŸã®ååãé ããŸãã
ã»ãã¥ãªãã£æœçãé²ã¿ã«ããçç±
æè¡ã ãã§ãªããåªå é äœã»éçšã»æ¹åãµã€ã¯ã«ã®èšèšäžè¶³ãææãåºãã«ããããŠããŸãã
蚺æã§çµãã
çºèŠäºé ãåºãŠããä¿®æ£ç¢ºèªãåãã¹ããŸã§ã€ãªãããªãããšãå€ããããŸãã
OT ã®å¶çŽãç¡èŠãã
æ¬çªåæ¢ã§ããªãçŸå Žã§ã¯ãIT ãšåãé²ãæ¹ããã®ãŸãŸé©çšã§ããŸããã
åªå é äœãææ§
æ·±å»åºŠã ãã§ãªããæ¥å圱é¿ã»ææ¥åœ±é¿ãŸã§èŠãªããšæè³å€æãé£ãããªããŸãã
ç¶ç¶æ¹åã«ãªããªã
ç£èŠãéçšãæè²ãèŠçŽããçµã¿èŸŒãŸãªããšãåãåé¡ãåçºãããããªããŸãã
é²ãæ¹
察象ãšå¶çŽãæŽçããå®å šã«è©äŸ¡ããå®è¡å¯èœãªæ¹åã«ã€ãªããŸãã
ã¹ã³ãŒãèšå®
察象ã·ã¹ãã ãç®çãçŠæ¢äºé ãOT å®å šæ¡ä»¶ãé£çµ¡äœå¶ãæç¢ºåããŸãã
çŸç¶ææ¡ã»è©äŸ¡
è³ç£ãæ§æãé²åºé¢ãèšå®ãã¢ã¯ã»ã¹ãå¢çã調ã¹ããªã¹ã¯ãæŽçããŸãã
æ¹åææ¡ã»åè©äŸ¡
åªå é äœä»ãã®æ¹åæ¡ãæç€ºããå¿ èŠã«å¿ããŠä¿®æ£ç¢ºèªã»åãã¹ããŸã§æ¯æŽããŸãã
æäŸç¯å²
IT ãš OT ã®äž¡æ¹ã察象ã«ãåçºèšºæããç¶ç¶æ¹åãŸã§å¯Ÿå¿ããŸãã
Assessment Test
- çŸç¶ã®ã»ãã¥ãªãã£äœå¶ãææ¡ãã課é¡ãå¯èŠå
- ç£æ»æºåãæ¹åããŒããããèšèšã®å段ãšããŠæå¹
Vulnerability Test
- WebãAPIãNetworkãServerãCloud ã®è匱æ§ã確èª
- ä¿®æ£ã®åªå é äœä»ãã«å¿ èŠãªæ å ±ãæŽç
Penetration Test
- å®éã«æªçšå¯èœãã©ãããæ€èšŒãã圱é¿åºŠãææ¡
- é«ãªã¹ã¯é åã®æ·±æãè©äŸ¡ã«é©ããŠããŸã
SOC / SIEM
- ãã°çµ±åãç£èŠãç°åžžæ€ç¥ã調æ»åºç€ã®æŽå
- ç¶ç¶çãªå¯èŠåãšå¯Ÿå¿ååäžãæ¯æŽ
Security Consulting
- Security GuidelineãCSIRTãIncident ResponseãSupply Chain Security
- ISO 27001ãNISTãIEC 62443 ãªã©ã®èŠ³ç¹æŽçã«ã察å¿
Security Solution Integration
- FirewallãIDS/IPSãWAFãEndpoint SecurityãSIEM ãªã©ã®å°å ¥æ¯æŽ
- éžå®ããæ§æãéçšå®çãŸã§ãµããŒã
OT / ICS Security
- IT/OT å¢çãã»ã°ã¡ã³ããŒã·ã§ã³ãçŸå Žç«¯æ«ãå·¥å Žãªã¹ã¯ã®æŽç
- å¯çšæ§ãšå®å šæ§ãåæã«ããæ¹åã¢ãããŒã
å¯Ÿå¿æšæºã»å¯Ÿè±¡é å
ç£æ»ãã³ã³ãã©ã€ã¢ã³ã¹ãå®éçšã«æ¥ç¶ããããåœ¢ã§æŽçããŸãã
æšæºã»ãã¬ãŒã ã¯ãŒã¯
察象ã·ã¹ãã
察象æ¥ç
TXOne ElementïŒOTç°å¢åã補å矀
OT endpoint ãçŸå Ž PC ã®ä¿è·ã匷åãããäŒæ¥åãã«ãTXOne Element ãåãããããæŽçããã»ã¯ã·ã§ã³ã§ãã
ç¹åŸŽ
- OT endpoint åãä¿è·
- çŸå Ž PC ã®ä¿è·åŒ·å
- USB å¶åŸ¡
- ã¢ããªã±ãŒã·ã§ã³å¶åŸ¡
補å
ãªã ARIS Vietnam ãªã®ã
IT ãš OT ãåããã«èãã蚺æåŸã®å®è¡ãŸã§èŠæ®ããŠæ¯æŽããŸãã
IT / OT ãæšªæ
äŒæ¥ IT ãš OT/ICS ããŸãšããŠæŽçã§ããŸãã
å®å šé æ ®åã®è©äŸ¡
æ¬çªåœ±é¿ãæããé²ãæ¹ãéèŠããŸãã
èŠæ Œå¯Ÿå¿ãŸã§æŽç
IEC 62443ã»NISTã»ISO 27001 芳ç¹ã«ã察å¿ã§ããŸãã
æ¹åãŸã§äŒŽèµ°
蚺æåŸã®ä¿®æ£ã»ç¢ºèªã»åè©äŸ¡ãŸã§æ¯æŽããŸãã
ããããã質å
å°å ¥æ€èšæã«ããããã ã質åããŸãšããŸããã
OTã»ãã¥ãªãã£ã¯ãå·¥å Žãå¶åŸ¡ã·ã¹ãã ãPLCãSCADAãçŸå Žç«¯æ«ãªã©ã®éçšç°å¢ãå®ãåãçµã¿ã§ããITãããå¯çšæ§ãšå®å šæ§ã匷ãéèŠãã忢ãã«ããèšåãã¬ã¬ã·ãŒç°å¢ãåæã«è©äŸ¡ããŸãã
Webã¢ããªãAPIãã¯ã©ãŠãããããã¯ãŒã¯ããµãŒããæã€äŒæ¥ã«å ããå·¥å Žãç©æµãèªååèšåããŠãŒãã£ãªãã£ãªã©OT/ICSç°å¢ãæã€äŒæ¥ã«é©ããŠããŸãã
å¯èœã§ããããã·ããªå¯èŠåãå®å šé æ ®åã®ææ³ãåªå ããæ¬çªåœ±é¿ãé¿ããªããè³ç£ææ¡ãšãªã¹ã¯æŽçãé²ããŸãã
æ¬çªç°å¢ã«ã¯æ éã«å¯Ÿå¿ããŸããå®å šæ¡ä»¶ãæºããå Žåãé€ããååãšããŠéé¢ç°å¢ãæš¡æ¬ç°å¢ã§ã®æ€èšŒãåæã«ããŸãã
IEC 62443ãNISTãISO 27001ãOWASPãªã©ãèžãŸããç£æ»ã»ã³ã³ãã©ã€ã¢ã³ã¹ã»æ¹åèšç»ã«æ¥ç¶ããããåœ¢ã§æŽçããŸãã
ã¯ããåªå é äœä»ããèšå®èŠçŽãã察çèšèšãä¿®æ£ç¢ºèªãåè©äŸ¡ãŸã§äžè²«ããŠæ¯æŽã§ããŸãã
TXOne Element ã¯ãOT endpoint ãçŸå Ž PC ã®ä¿è·ãUSB å¶åŸ¡ãã¢ããªã±ãŒã·ã§ã³å¶åŸ¡ã匷åãããå Žåã®æ€èšå¯Ÿè±¡ãšããŠæå¹ã§ãã
察象ç¯å²ããªã¹ã¯ã®é«ãé åãç£æ»ãéçšäžã®å¶çŽãæŽçããã¹ã³ãŒãã³ã°ããå§ããã®ã广çã§ãã
é¢é£ãµãŒãã¹
IT / OT ã»ãã¥ãªãã£ã®åªå é äœããäžç·ã«æŽçããŸãããïŒ
WebãAPIãã¯ã©ãŠãããããã¯ãŒã¯ããµãŒããå·¥å ŽãOT/ICS ãªã©ãã©ãããçæãã¹ãããæŽçããå®è¡ããããã¹ã³ãŒããšé²ãæ¹ããææ¡ããŸãã