THANK YOU FOR SUBSCRIBING


Dr. Terence Liu, CEOAs the boundaries between IT and OT in industrial settings are blurred, the challenges continue to grow for the Industrial Control System (ICS) community. This includes an increase in need for an integrated, collaborative cybersecurity strategy with purpose-built solutions. Enter TXOne Networks, a company formed by a joint venture of Trend Micro and Moxa that uses the best actionable approach and customized technology to mitigate the complex security challenges and vulnerabilities prevalent across industrial environments. The firm offers both network-based and endpoint-based products to secure the OT network and mission-critical devices in real-time to keep business operations running even in the event of a security breach. “Every OT company is in a different stage of their cybersecurity journey. In addition, the company’s vertical determines how aggressive their cybersecurity measures should be,” states CEO of TXOne Networks, Dr. Terence Liu. TXOne Networks offers a suite of adaptive ICS Cybersecurity solutions for OT shopfloor control by focusing on three key areas – network segmentation, OT-focused technology and threat defense expertise.
The World’s First Flexible Deployment and High Port Density IPS Array for OT Core Network Defense
While conventional IPS comes with 10-16 segments, TXOne’s EdgeIPS Pro comes equipped with either a standard 1U rackmount with 48 ports (24 segments) or a 2U rackmount with 96 ports (48 segments) for large-scale production lines. The firm also offers a single segment version, EdgeIPS, with similar features to its successor.
The EdgeIPS Pro can be switched between “Monitor” and “Protection” modes based on business intention for non-disruptive security awareness. During monitor mode, the platform provides anomaly detection along with information logs, but takes no action. In contrast, protection mode continues to provide anomaly detection and logs while also blocking malicious actions.
EdgeIPS Pro delivers greater visibility and robust cyber defense for legacy systems and unpatched devices. This is in addition to the Gen3 hardware bypass that makes up the backbone of a production line, allowing the appliance to ensure uninterrupted operation. The solution’s high level of in-depth sensitivity to OT protocols helps administrators to design a scenario-based network trust list for machine-to-machine access control. At the same time, the Virtual Patch function offers asset owners the security shielding to protect vulnerable OT assets and networks from cyber-attacks. With the help of the Zero Day Initiative (ZDI) vulnerability reward program, EdgeIPS Pro protects against unknown threats with its up-to-date threat information from Centralized Management. Built with TXOne’s One-Pass DPI for Industry (TXODI), EdgeIPS Pro provides users with the ability to create and edit a network trust list, allowing for interoperability between key nodes and in-depth analysis of L2 to L7 network traffic.![]()
Highly Automated Industries, Such As Semiconductors And Automobiles, Are Especially Susceptible To Vulnerabilities And Malware. Not Only Does This Open Them Up To Mammoth Potential Losses, It Also Puts Companies At Risk Of Losing Their Intellectual Properties
Another constituent of the Edge product line is the EdgeFire. This next generation firewall enables network segmentation and segregation to divide the network into different zones of control down to the cellular level. A unique feature of EdgeFire is its ability to resolve the problem of IP duplication by enabling users to translate network addresses in production lines. By featuring network access control and network attack prevention for critical assets, the EdgeFire is designed for an in-depth cyber defense and supports the streamlining of daily operations.
Immaculate Endpoint Defense Systems
In heavily regulated industries such as pharmaceutical manufacturing, often technicians find themselves routinely installing software on the ICS or evaluating changes to assets for impact on products and operation. When partners, vendors, or consultants come on-site for maintenance, they’ll need to connect their potentially infected laptops or USBs to the ICS network or assets. Trend Micro Portable Security 3 (TMPS 3) is a useful malware scanning tool for standalone computers and air-gapped systems. Resembling a USB device, the portable tool plugs into the USB port of any Windows or Linux device to detect and eliminate malware. It does this without installation of software on the target systems or disruption of any on-going operations. Once a scan is completed, the built-in LED lights indicate whether the malware has been detected or eliminated, and if further investigation is required.
Traditional cybersecurity software requires an internet connection, periodic updates, and regular malware scans which result in downtime and increased operational costs for companies. The Trend Micro Safe Lock TXOne Edition is designed to optimize operational efficiency for mass deployment and maintenance in large factories through its “lockdown” core technology, which limits the execution of applications without reliance on pattern files. With the flexibility to fit seamlessly into daily operations, users can secure operational integrity using Operations Lockdown, Data Lockdown, Configuration Lockdown, and USB Device Lockdown. The core framework of Trend Micro Safe Lock protects systems from malware infection or unauthorized changes, including work sites’ Industrial Control System (ICS), HMI/SCADA, POS, ATM, or other embedded systems, by permitting only pre-registered applications and services to execute. All files that are allowed to execute on the terminal are automatically collected and registered to the ‘Trust List’ after installation and auto-updated for runtime operations during maintenance.
"EdgeIPS Pro’s And OT Environments Rackmount-Friendly Size, Dual Power Input, And High Port Density Are Explicitly Tailored For Highly Automated OT Environments"
Accelerating the Progress of Automation and Data Exchange
As a subsidiary of Trend Micro, TXOne Networks has successfully implemented its solutions to ensure ICS shop floors around the world are safe from malware and data breaches. “Highly automated industries, such as semiconductors and automobiles, are especially susceptible to vulnerabilities and malware. Not only does this open them up to mammoth potential losses, it also puts companies at risk of losing their intellectual properties,” elucidates Dr. Liu.
Many of TXOne Networks’ clients are fully automated large-scale operations in sensitive verticals, including several large semiconductor companies seeking to protect their networks and secure mission-critical assets from cyberattacks. To accomplish this, TXOne Networks implements EdgeIPS Pro to segment their network into zones of control and installs SafeLock to shield their vulnerable devices. Since zero trust-based policies rule all of TXOne’s products, the client’s systems were exclusively protected from both known and undisclosed zero-day threats, setting security parameters and ensuring strict access control to vulnerable data.
With nearly 30 years of experience backing their innovations, TXOne’s seasoned team is passionate about eradicating threats and vulnerabilities to establish a safer environment for digital information exchange. TXOne Networks are currently developing a next-generation industrial endpoint protection solution, ‘StellarOne’. The beta version of the product will be released in the first quarter of 2021 and will inherit TrendMicro’s behavior-based malware detection technology, which it will use to understand OT applications and protect processes from outage without the need for redundant and continuous upgrades. In terms of new functionality for the coming year, TXOne Network plans to launch a feature called ‘Network Trustees,’ which will enable users to automate build, test, and enforce exit policies on EdgeIPS products.
Company
TXOne Networks
Management
Dr. Terence Liu, CEO
Description
TXOne Networks provides solutions for tackling security weaknesses prevalent across industrial environments. Given that ICS environments are often layered and composed of a variety of assets running different operating systems, the firm offers both network-based and endpoint-based products to secure the OT network and mission-critical devices in a real-time defense-in-depth manner. Both IT and OT can have comprehensive visibility regarding ICS assets, protocols, control commands, risks, and threats. The goal is not only to maximize ICS protection but also to keep the business and operation running even when the work site is under cyber attack