How ancient footprints can help us understand mode... » Bournemouth University’s newest research Institute – the Institute for Studies in Landscape and Huma... Women’s empowerment key to end sexual violence in ... »     UN Photo/Christopher Herwig As the great moral issue of our time, sexual violence in conflict... Nigeriaghanistan: A nation's backward march to neo... » ....The Mai Kunu-Ngbati Alliance From 1817 Till The Present And The Scramble for Nigeria Under Ba... Director pleads guilty for using fake security gua... » Johnny Okeoma, a Director of Tripleway Ltd, pleaded guilty at Barkingside Magistrates Court on 19 Ma... UN envoy blasts terrorist attack on Ministry in So... » A street scene in Mogadishu, the Somali capital. Photo: AU-UN IST/Stuart Price Vigilance can report... Demand for Vegan Trademark at unprecedented high » The Vegan Society proudly showcases its biggest ever presence at the Natural & Organic Products ... Becrypt signs new SME partnership with Atos UK » London, UK:  Becrypt has entered into a partnership with Atos UK as part of the Atos SME Harbour pro... itSoft extends its security-as-a-service offerin... » Clavister has announced that itSoft, a leading ISP and cloud managed services provider in Croatia, h... AppRiver quarantines 200 million malicious emails ... » Gulf Breeze, FL and London, UK: AppRiver, LLC has released its Q1 Global Security Report, a detailed... DDoS attacks pose biggest threat yet to European... » LONDON, UK: Neustar, Inc has announced findings from its third annual DDoS Attacks & Impact Report. ...

CLICK HERE TO

Advertise with Vigilance

Got News?

Got news for Vigilance?

Have you got news/articles for us? We welcome news stories and articles from security experts, intelligence analysts, industry players, security correspondents in the main stream media and our numerous readers across the globe.

READ MORE

Subscribe to Vigilance Weekly

Information Security Header

London: Responding to guidance from the European Network and Information Security Agency (ENISA) on the security of critical national infrastructures (CNIs) of EU countries, Venafi says that encryption key management must form a central plank of any energy sector security strategy.

 

Calum MacLeod, EMEA Director with Enterprise Key and Certificate Management (EKCM) solutions specialist Venafi, says that, while ENISA made reference to encryption, cryptographic controls and managing authentication, the agency has not adequately addressed the specifics on key and digital certificate management.

“This is a bit like the security experts suggesting you beef up the locks on your front door, and then failing to point out that installing a cheap £2.99 lock from an online auction house may not be the best security strategy. The bottom line with defending country CNIs is that you cannot control - and document - the use of encryption and strong authentication without effective key and certificate management,” he said.

ENISA, he says, is advising that smart grids need to build security in from the ground upwards, using encryption and strong authentication tools such as digital certificates to secure data and access.

For smart grid providers, he adds, the only way to control and document these critical security elements – as requested by the European agency – is to deploy effective key and certificate management as an integral feature of the security architecture.

“This is especially true in the UK, based on the CNI architectures we have encountered. Effective key and certificate management is a must – and I strongly suspect that the Information Commissioner's Office will take the same view,” he added.

The Venafi EMEA Director went on to say that the UK's data regulator – which is now hitting its stride on best practices and guidance – will be looking to CNI security strategists to secure the UK's energy, communications and allied infrastructure networks

“Energy companies have progressively been deploying the end-user building blocks in UK's smart grid for several years now, as mandated by the Energy Act of 2008. The next few years will therefore set the pace for how the UK defends its CNI – installing the best security is a logical step towards this goal,” he said