enterprisesecuritymag

Enterprise Security Magazine

TXOne Networks
Delivering The Best-In-Class ICS Cybersecurity Protection For Shopfloor

Dr. Terence Liu, CEO, TXOne NetworksDr. Terence Liu, CEO
Today, the rapidly-evolving technologies of Industry 4.0 such as IoT devices, automation, drones, 5G, and 3D printing are accelerating digital transformation in the traditional manufacturing industry. In the build-up to Industry 4.0, older devices have been updated or upgraded with smarter sensors that run over wireless networks for enhanced functionality. That said, as we are also witnessing the convergence of operational technology (OT) and information technology (IT), with IT solutions deployed on top of OT communications in a bid to enhance the overall efficiency of a facility. However, this amalgamation of IT and OT has exposed inadequately protected networks and industrial control systems to a significant amount of cybersecurity threats and risks. Industries such as automobiles, semiconductors, healthcare, and oil & gas are now vulnerable to a range of cyber-attacks that threaten to cause disruption, denial of process controls, theft of intellectual property, and industrial espionage. Once hackers can gain access to a critical application, they can easily manipulate machines or manufacturing processes to remotely cause catastrophic safety risks and prolonged periods of downtime. According to a recent report by Frost & Sullivan, a single cyber attack on an oil & gas plant causes an average loss of $ 13 million.

As the boundaries between IT and OT in industrial settings are blurred, the challenges continue to grow for the Industrial Control System (ICS) community. This includes an increase in need for an integrated, collaborative cybersecurity strategy with purpose-built solutions. Enter TXOne Networks, a company formed by a joint venture of Trend Micro and Moxa that uses the best actionable approach and customized technology to mitigate the complex security challenges and vulnerabilities prevalent across industrial environments. The firm offers both network-based and endpoint-based products to secure the OT network and mission-critical devices in real-time to keep business operations running even in the event of a security breach. “Every OT company is in a different stage of their cybersecurity journey. In addition, the company’s vertical determines how aggressive their cybersecurity measures should be,” states CEO of TXOne Networks, Dr. Terence Liu. TXOne Networks offers a suite of adaptive ICS Cybersecurity solutions for OT shopfloor control by focusing on three key areas – network segmentation, OT-focused technology and threat defense expertise.

The World’s First Flexible Deployment and High Port Density IPS Array for OT Core Network Defense

While conventional IPS comes with 10-16 segments, TXOne’s EdgeIPS Pro comes equipped with either a standard 1U rackmount with 48 ports (24 segments) or a 2U rackmount with 96 ports (48 segments) for large-scale production lines. The firm also offers a single segment version, EdgeIPS, with similar features to its successor.

The EdgeIPS Pro can be switched between “Monitor” and “Protection” modes based on business intention for non-disruptive security awareness. During monitor mode, the platform provides anomaly detection along with information logs, but takes no action. In contrast, protection mode continues to provide anomaly detection and logs while also blocking malicious actions.


Highly Automated Industries, Such As Semiconductors And Automobiles, Are Especially Susceptible To Vulnerabilities And Malware. Not Only Does This Open Them Up To Mammoth Potential Losses, It Also Puts Companies At Risk Of Losing Their Intellectual Properties

EdgeIPS Pro delivers greater visibility and robust cyber defense for legacy systems and unpatched devices. This is in addition to the Gen3 hardware bypass that makes up the backbone of a production line, allowing the appliance to ensure uninterrupted operation. The solution’s high level of in-depth sensitivity to OT protocols helps administrators to design a scenario-based network trust list for machine-to-machine access control. At the same time, the Virtual Patch function offers asset owners the security shielding to protect vulnerable OT assets and networks from cyber-attacks. With the help of the Zero Day Initiative (ZDI) vulnerability reward program, EdgeIPS Pro protects against unknown threats with its up-to-date threat information from Centralized Management. Built with TXOne’s One-Pass DPI for Industry (TXODI), EdgeIPS Pro provides users with the ability to create and edit a network trust list, allowing for interoperability between key nodes and in-depth analysis of L2 to L7 network traffic.

Another constituent of the Edge product line is the EdgeFire. This next generation firewall enables network segmentation and segregation to divide the network into different zones of control down to the cellular level. A unique feature of EdgeFire is its ability to resolve the problem of IP duplication by enabling users to translate network addresses in production lines. By featuring network access control and network attack prevention for critical assets, the EdgeFire is designed for an in-depth cyber defense and supports the streamlining of daily operations.

Immaculate Endpoint Defense Systems

In heavily regulated industries such as pharmaceutical manufacturing, often technicians find themselves routinely installing software on the ICS or evaluating changes to assets for impact on products and operation. When partners, vendors, or consultants come on-site for maintenance, they’ll need to connect their potentially infected laptops or USBs to the ICS network or assets. Trend Micro Portable Security 3 (TMPS 3) is a useful malware scanning tool for standalone computers and air-gapped systems. Resembling a USB device, the portable tool plugs into the USB port of any Windows or Linux device to detect and eliminate malware. It does this without installation of software on the target systems or disruption of any on-going operations. Once a scan is completed, the built-in LED lights indicate whether the malware has been detected or eliminated, and if further investigation is required.

TMPS 3 also collects asset information to improve OT visibility and eliminate the shadow OT, compiling and integrating scan logs and asset information from multiple scanning tools. This provides a holistic view of all endpoints, creating an audit trail and helping maintain data integrity to meet the administrative policy requirements of industry regulations.

Traditional cybersecurity software requires an internet connection, periodic updates, and regular malware scans which result in downtime and increased operational costs for companies. The Trend Micro Safe Lock TXOne Edition is designed to optimize operational efficiency for mass deployment and maintenance in large factories through its “lockdown” core technology, which limits the execution of applications without reliance on pattern files. With the flexibility to fit seamlessly into daily operations, users can secure operational integrity using Operations Lockdown, Data Lockdown, Configuration Lockdown, and USB Device Lockdown. The core framework of Trend Micro Safe Lock protects systems from malware infection or unauthorized changes, including work sites’ Industrial Control System (ICS), HMI/SCADA, POS, ATM, or other embedded systems, by permitting only pre-registered applications and services to execute. All files that are allowed to execute on the terminal are automatically collected and registered to the ‘Trust List’ after installation and auto-updated for runtime operations during maintenance.

"EdgeIPS Pro’s And OT Environments Rackmount-Friendly Size, Dual Power Input, And High Port Density Are Explicitly Tailored For Highly Automated OT Environments"

Accelerating the Progress of Automation and Data Exchange

As a subsidiary of Trend Micro, TXOne Networks has successfully implemented its solutions to ensure ICS shop floors around the world are safe from malware and data breaches. “Highly automated industries, such as semiconductors and automobiles, are especially susceptible to vulnerabilities and malware. Not only does this open them up to mammoth potential losses, it also puts companies at risk of losing their intellectual properties,” elucidates Dr. Liu.

Many of TXOne Networks’ clients are fully automated large-scale operations in sensitive verticals, including several large semiconductor companies seeking to protect their networks and secure mission-critical assets from cyberattacks. To accomplish this, TXOne Networks implements EdgeIPS Pro to segment their network into zones of control and installs SafeLock to shield their vulnerable devices. Since zero trust-based policies rule all of TXOne’s products, the client’s systems were exclusively protected from both known and undisclosed zero-day threats, setting security parameters and ensuring strict access control to vulnerable data.

With nearly 30 years of experience backing their innovations, TXOne’s seasoned team is passionate about eradicating threats and vulnerabilities to establish a safer environment for digital information exchange. TXOne Networks are currently developing a next-generation industrial endpoint protection solution, ‘StellarOne’. The beta version of the product will be released in the first quarter of 2021 and will inherit TrendMicro’s behavior-based malware detection technology, which it will use to understand OT applications and protect processes from outage without the need for redundant and continuous upgrades. In terms of new functionality for the coming year, TXOne Network plans to launch a feature called ‘Network Trustees,’ which will enable users to automate build, test, and enforce exit policies on EdgeIPS products.

- Russell Thomas
    December 24, 2020

Company
TXOne Networks

Headquarters
Taipei, Taiwan

Management
Dr. Terence Liu, CEO

Description
TXOne Networks provides solutions for tackling security weaknesses prevalent across industrial environments. Given that ICS environments are often layered and composed of a variety of assets running different operating systems, the firm offers both network-based and endpoint-based products to secure the OT network and mission-critical devices in a real-time defense-in-depth manner. Both IT and OT can have comprehensive visibility regarding ICS assets, protocols, control commands, risks, and threats. The goal is not only to maximize ICS protection but also to keep the business and operation running even when the work site is under cyber attack

© 2026 Enterprise Security Magazine. All rights reserved. Headquartered in Fort Lauderdale, FL, USA.