site-logo
site-logo
site-logo

بنية الثقة الصفرية الصناعية

Shieldworkz, Announces Media Scan, a Deterministic Removable Media and File Security Solution for OT Environments 

أهمية الأمن السيبراني لأنظمة التحكم الصناعية (ICS) في الوقت الفعلي

في قلب الصناعات مثل التصنيع والنفط والغاز والطاقة، تقود تكنولوجيا التشغيل (OT) وأنظمة التحكم الصناعي (ICS) العمليات الحيوية للمهمة. من خطوط التجميع الروبوتية إلى منصات الحفر البحرية وشبكات توزيع الطاقة، تتطلب هذه الأنظمة أداءً غير منقطع. ومع ذلك، فإن دمج تكنولوجيا التشغيل مع شبكات تكنولوجيا المعلومات وانتشار أجهزة IoT قد فتح نقاط ضعف جديدة. تتزايد الهجمات الإلكترونية على الأنظمة الصناعية، حيث شهد عام 2024 زيادة بنسبة 50% في حوادث برامج الفدية التي تستهدف البنية التحتية الحيوية، وفقًا لبيانات الصناعة الحديثة. يمكن أن تؤدي الاختراقات إلى شل العمليات، والمساس بالسلامة، وتحمل خسائر بملايين الدولارات.

تفتقر أنظمة التشغيل القديمة، المصممة غالبًا للموثوقية على حساب الأمان، إلى الدفاعات الحديثة ضد التهديدات الحالية. في الوقت نفسه، تعمل الهيئات التنظيمية على تشديد المعايير مثل ISA/IEC 62443 و NERC CIP، مطالبة بأطر قوية للأمن السيبراني. تشيلدووركز تتصدى لهذه التحديات من خلال نهج متقدم ومخصص، لضمان بقاء عملياتك آمنة ومتوافقة ومرنة.

تقييم الالتزام الخاص بالأنظمة والبرامج

4. الإصدار السادس من CIP وما بعده (2020 – حتى الآن)

تواصل النسخة 6 (والتحديثات القادمة للنسخة 7) تعزيز أمن سلسلة التوريد (CIP-013)، وأمان المحطات الفيزيائية الفرعية (CIP-014)، ومراقبة الشبكة الداخلية (CIP-015).

Media Scan was designed around this principle. 

تتوقع الجهات التنظيمية الآن من شركات المرافق الكهربائية أن تُظهر برامج الأمن السيبراني الناضجة والتي تعتمد على تقييم المخاطر، مما يعكس الدروس المستفادة من الحوادث البارزة.

New OT-native security solution provides deterministic inspection and fail-closed control for files entering and leaving industrial environments

Shieldworkz, a provider of OT and industrial cybersecurity solutions, today announced the launch of Media Scan, an OT-native removable media security and file security solution designed to protect industrial environments from threats introduced through USB drives, external storage, engineering files, firmware updates, and other file-transfer channels. 

Built specifically for operational technology (OT) environments, Media Scan is designed to move beyond traditional threat detection by enforcing a security decision on every file. Each file is processed through a fixed, deterministic inspection pipeline and receives one of three outcomes: Clean, Hold, or Blocked

The solution follows a fail-closed security model. When a file cannot be inspected because of an unsupported format, inspection error, connectivity issue, or other condition, it is placed on hold rather than being allowed into the protected environment. 

دقة الكشف
هي المفتاح 

بالنسبة للشبكات المتقاربة مثل IT-OT والنظم الإيكولوجية المتصلة مثل إنترنت الأشياء، تعد الأهمية في استخبارات التهديدات أمرًا بالغ الأهمية. في حين أن هناك العديد من مصادر استخبارات التهديدات العامة، تُشتق استخبارات التهديدات الخاصة بنا من مستودعات مخصصة لإنترنت الأشياء وOT على مستوى العالم منتشرة في أكثر من 90 موقعًا عالميًا، تتبع أكثر من 12 مليون عملية اختراق لإنترنت الأشياء/OT، مع أكثر من 6000 جهاز و400 نوع من البُنى. يتم دمج هذه الاستخبارات التهديدات مع مصادر متزامنة خارجية لخلق تغذية تحدث بانتظام التثبيتات بأحدث معلومات التهديدات. هذا يضمن أن استراتيجية إدارة التهديدات الخاصة بك تبقى متقدمة جدًا على التهديدات الجديدة والناشئة. 

تبدأ إدارة التهديدات بمجرد تفعيلها بتحليل حركة المرور في الشبكة في شكل ملفات PCAPs وتوفير أحداث تنبيه يمكن التصرف فيها فورًا من خلال وحدة سير العمل المضمنة أو متكاملة مع حلول الأمان الحالية الخاصة بك أو مع أي طرف ثالث عن طريق واجهات برمجة التطبيقات أو البرامج المخصصة. تقوم البيانات الوصفية المُجمعة ببناء الخصائص السلوكية المطلوبة مع مرور الوقت باستخدام نماذج الذكاء الاصطناعي التي يمكنها التنبؤ بأكثر متجهات الهجوم وضوحًا وAPT مع معلومات سياقية، التي عادةً ما لا يتم اكتشافها بواسطة أنظمة الكشف القائمة على القواعد.

Built for Industrial File Formats 

Industrial environments do not deal exclusively with conventional office documents and executable files. Engineering teams regularly work with configuration files, project files, firmware packages, PLC-related files, machine configurations, and other specialized formats. 

Media Scan supports 500+ file formats, including OT and engineering file types such as: .bin, .s7p, .acd, .rsp, .prj, .dat, .cfg, .xml, and other industrial file formats associated with platforms from vendors including Siemens, Rockwell, Schneider, ABB, and others

This OT-oriented file support is intended to help security teams apply a consistent industrial file security policy without excluding the file types needed for plant operations and engineering workflows.

افعل المزيد مع منتج إدارة التهديدات الأكثر موثوقية في الصناعة  

For many industrial organizations, the security process around USB devices is still highly dependent on manual procedures. 

Employees, contractors, and vendors may bring removable media containing software updates, technical documents, engineering files, firmware, or configuration data into a facility. 

Media Scan provides an inspection and enforcement layer that can be incorporated into these workflows.

تحسين وضع الأمن السيبراني المؤسسي

إدارة احتياجات الأمن المؤسسي الخاصة بك

ردع المتسللين

احمِ المصداقية

الامتثال لتكليفات الأمن السيبراني

Firmware file security 

Engineering file inspection 

Contractor media security 

Air-gapped network file security 

خدمات الأمن الشاملة للأنظمة التشغيلية (OT)
جرد الأصول وإدارتها يبدأ أمان الأنظمة التشغيلية الفعال بفهم شامل لبيئتك. تقدم Shieldworkz خدمات متقدمة لاكتشاف الأصول وإدارتها لتحديد وتصنيف ومراقبة جميع الأجهزة والأنظمة التشغيلية ضمن شبكتك. توفر حلولنا رؤية في الوقت الحقيقي لأصولك التشغيلية، مما يضمن لك السيطرة التامة على بنيتك التحتية. وهذا يشمل الأنظمة القديمة، أنظمة التحكم الصناعية (ICS)، نظم التحكم الإشرافية وجمع البيانات (SCADA) والمعدات الحساسة الأخرى. من خلال الاحتفاظ بجرد دقيق وحديث، نساعدك على تقليل المخاطر المرتبطة بالأجهزة غير المدارة أو المجهولة.
تقسيم الشبكة وعزلها غالباً ما تتكامل شبكات الأنظمة التشغيلية مع الأنظمة التقنية، مما يشكل نقاط دخول محتملة للتهديدات الإلكترونية. تقوم Shieldworkz بتنفيذ استراتيجيات قوية لتقسيم الشبكة وعزلها لتقليل تعرض المخاطر. تتضمن طريقتنا تقسيم شبكتك التشغيلية إلى مناطق أصغر ومعزولة باستخدام جدران الحماية، والشبكات المحلية الافتراضية (VLANs)، والمناطق المجردة من السلاح (DMZs). وهذا يضمن أنه حتى إذا وقع اختراق في أحد القطاعات، فإنه لا يمكن أن ينتشر بسهولة إلى المناطق الحساسة الأخرى في بنيتك التحتية. نطبق أيضاً التحكم الصارم في الوصول ومبادئ الحد الأدنى من الامتياز لتعزيز الأمان.
الكشف عن التهديدات والاستجابة لها يعد الكشف الاستباقي عن التهديدات أمرًا حيويًا لتحديد وحل الحوادث الأمنية المحتملة قبل أن تتفاقم. تستخدم Shieldworkz أدوات وتقنيات مراقبة متقدمة للكشف عن الشذوذ والتهديدات في الوقت الحقيقي. تتكامل حلولنا مع أنظمة إدارة أمن المعلومات والأحداث (SIEM) الرائدة لتوفير رؤية شاملة لبيئتك التشغيلية. عند اكتشاف التهديدات، يستجيب فريق خبرائنا في الأمن الإلكتروني بسرعة لاحتواء المشكلة وحلها، مما يقلل من فترة التعطل والأضرار المحتملة.
أمن الوصول عن بعد غالباً ما يكون الوصول عن بعد إلى الأنظمة التشغيلية ضرورياً للصيانة واستكشاف الأخطاء، ولكنه يمكن أن يعرّف مخاطر أمنية كبيرة. تضمن Shieldworkz وصولاً آمناً عن بعد من خلال استخدام مصادقة متعددة العوامل (MFA)، والاتصالات المشفرة والسياسات الصارمة للوصول. تشمل حلولنا أنفاق VPN الآمنة، والوصول الشبكي صفر الثقة (ZTNA)، ومراقبة الجلسة لمنع الوصول غير المصرح به والاختراقات المحتملة. كما نوفر مراقبة مستمرة وتسجيل لاكتشاف والاستجابة للأنشطة المشبوهة على الفور.
الميزات الرئيسية لحلولنا الأمنية للأنظمة التشغيلية
المراقبة والتحليلات في الوقت الحقيقي تستخدم Shieldworkz أدوات مراقبة متقدمة لتوفير إشراف مستمر على بيئتك التشغيلية. تجمع حلولنا وتحلل كميات كبيرة من البيانات في الوقت الحقيقي، مما يمكن من تحديد استباقي للحوادث الأمنية والشذوذ التشغيلي. بدمج التعلم الآلي والذكاء الاصطناعي، نستطيع التنبؤ والوقاية من التهديدات المحتملة قبل أن تؤثر على أنظمتك. تضمن اللوحات التفصيلية والتنبيهات أنك تبقى على اطلاع بصحة وأمان بنيتك التحتية.
التكامل مع أطر الأمن التقني القائمة ندرك أن الأنظمة التشغيلية غالباً ما تتواجد مع البنى التحتية التقنية، وأن التكامل السلس ضروري لاستراتيجية أمنية متماسكة. صُممت حلول Shieldworkz للعمل بشكل متناغم مع أطر الأمن التقني القائمة لديك، مما يضمن نهجاً موحداً للأمن السيبراني. تندمج حلولنا مع أنظمة SIEM، وأنظمة الكشف عن التهديدات والاستجابة لها (EDR)، وأنظمة إدارة الوصول بالتفاعل (IAM)، مما يوفر رؤية شاملة لوضع الأمن الكامل لديك.
الامتثال لمعايير الصناعة تلتزم Shieldworkz بمساعدة عملائنا في الوفاء بمتطلبات الامتثال الصناعي. تتوافق حلولنا مع المعايير الرائدة مثل إطار عمل الأمن السيبراني (CSF) للمعهد الوطني للمعايير والتقنية (NIST)، ومعيار ISA/IEC 62443، ومعايير حماية البنية التحتية الحرجة لأمريكا الشمالية (NERC CIP)، وتوجيه الاتحاد الأوروبي للأمن السيبراني (EU NIS/NIS2). من خلال الالتزام بهذه المعايير، نضمن أن أنظمتك التشغيلية ليست فقط آمنة، ولكنها أيضاً متوافقة مع الالتزامات التنظيمية، مما يقلل من خطر الغرامات والعواقب القانونية.
حلول مخصصة تلائم احتياجاتك الخاصة لا يوجد بيئتان تشغيليتان متشابهتان، ونهج

Complete Audit Trail for Every File

Media Scan creates an audit record for each file that passes through the platform.

The record can include the file source, format, inspection stages, timestamp, security verdict, and final disposition.

For security and compliance teams, this creates a traceable record of file-transfer activity rather than relying on manually maintained logs or retrospective investigations.

The audit trail can also support compliance evidence and security investigations by showing what was inspected, when it was inspected, and what decision was made.

Audit Record Fields

Source
Format
Inspect
CDR
Verdict
Disposition
FILEscada_config_v14.xml
SOURCEUSB-042 · Engineering Workstation
FORMATXML
STAGESInspection → CDR → Verdict
TIMESTAMP2026-08-14 09:42:11 UTC
DISPOSITIONAllowed → OT Historian
ALLOWEDBLOCKED

Designed for OT Cybersecurity and Compliance

Modern industrial cybersecurity programs increasingly require organizations to demonstrate that security controls are not merely deployed but consistently enforced.

Media Scan is designed with requirements and guidance associated with IEC 62443, NIST SP 800-82, ISO 27001, and NIS2 in mind.

By providing deterministic file inspection, controlled transfer workflows, per-file audit records, and fail-closed enforcement, Media Scan can help organizations strengthen their OT cybersecurity compliance and demonstrate control over removable media and file-transfer processes.

Compliance Frameworks

IEC 62443
Industrial automation and control systems security
NIST SP 800-82
Guide to operational technology security
ISO 27001
Information security management systems
NIS2
EU network and information security directive

Integration With Existing Security Infrastructure

Media Scan is designed to operate alongside existing enterprise security and operational systems.

Integration Capabilities

Active Directory
SIEM platforms
ITSM workflows
SFTP and Managed File Transfer environments
API-based integrations
Exportable audit logs
Custom enterprise workflows

This enables security teams to incorporate OT file security into their existing cybersecurity architecture rather than maintaining a completely isolated process.

Designed for High-Volume Industrial Environments

Media Scan is designed for operational environments where security controls must operate without creating unnecessary workflow bottlenecks.

Platform Capacity

500+
File formats
10,000+
Files per day
<5s
Sub-five-second average inspection time
17+
Parallel scanning engines
4
Deployment models
99.9%+
Availability target

The inspection pipeline is parallelized to support high-volume file processing while maintaining the security controls required for industrial environments.

Why Media Scan Is Different

Media Scan is built around a fundamental distinction between detection and control.

Traditional antivirus and scanning solutions are primarily designed to identify malicious or suspicious content. Media Scan is designed to establish an enforceable decision about every file crossing an OT security boundary.

Platform Architecture

Deterministic inspection
Consistent, repeatable file verdicts on every pass.
Fail-closed enforcement
Files are blocked by default unless explicitly cleared.
Multi-engine scanning
17+ engines evaluate every file in parallel.
Content Disarm and Reconstruction
Rebuilds files to strip embedded threats.
OT-focused threat intelligence
Signatures tuned to industrial file formats and protocols.
Industrial file format support
Coverage across 500+ engineering and OT formats.
Removable media security
Controlled inspection of USB and portable media.
Per-file audit logging
A traceable record for every file, every time.
Air-gapped deployment capabilities
Operates fully disconnected from external networks.
IT-OT boundary inspection
Enforced checkpoints where IT and OT networks meet.

Together, these capabilities provide organizations with a security framework designed specifically for controlling file movement in industrial environments.

Get in Touch with Shieldworks

For press inquiries, interview requests, or media assets, reach out to the team in your region. We typically respond within one business day.