Support
CASE STUDY
Oil & Gas

Ensuring Safety and Uptime with Secure Process Control Networks

How a major U.S.-based petrochemical company standardized security and change management across a heterogeneous, multi-vendor control environment — without downtime or a single process incident.

DOWNLOAD CASE STUDY

7 sites in 9 months

Rapid, incident-free deployment across DCS platforms from Yokogawa, ABB, Honeywell, Schneider, Emerson, and Rockwell.

Zero downtime

Deployed with no downtime and no incident in the process environment.

No security incidents

More than a year in operation with no significant security incident reported.

The most important result is that it hasn't caused any problems within the environment. That is a big deal.

Overview

Overview

A major U.S.-based petrochemical company with more than $13 billion in revenue operates over 30 chemical plants in the United States and around the world, producing olefins, polyolefins, and specialty chemicals and serving the oil industry with oilfield fluids. Its global operations rely heavily on Microsoft products and a heterogeneous mix of distributed control systems (DCS).

Industrial control systems across production facilities in eight countries were managed locally, with no standardized components or corporate view. Industrial Defender delivered a standardized, real-time view of security, compliance, and change management across the entire heterogeneous environment — without compromising the stability and uptime critical to OT.

Key Outcomes
Standardized, real-time view across a multi-vendor DCS environment at both site and corporate level
Deployment completed with no downtime and no process-environment incident
More than a year in operation with no significant security incident
Background

The Situation

Industrial control systems for production facilities in eight countries, from North America to Asia, were being managed locally at each site with no standardized components or corporate view. Reporting on the security status of these systems relied heavily on manual processes and was often unreliable. As cyber risks to industrial control systems grew, the company needed a standardized way to manage these critical systems.

Safety is a core value in the petrochemical industry, and because the essence of safety in industrial processes is stability, cybersecurity is now critical to safety. Coming from the IT side of the business, the ICS security manager understood they needed a solution to address both IT security and operational technology (OT) safety.

Strategic Priorities
  • Provide a standardized view across a heterogeneous control environment spanning DCS vendors including Yokogawa, ABB, Honeywell, Schneider, Emerson, and Rockwell
  • Achieve a real-time view of network and server status and configuration, and automate change management to quickly identify and mitigate threats
  • Enable rapid, coordinated response to security incidents when an issue is identified
  • Protect networks and servers without compromising the stability and uptime critical in OT environments, while preparing for possible future regulations
Three Primary Objectives

Standardize a multi-vendor environment

Deliver one consistent view across a heterogeneous control environment spanning many DCS vendors, replacing unreliable, manual, site-by-site reporting.

See status and automate change

Gain a real-time view of network and server configuration and automate change management to quickly identify and mitigate threats.

Protect uptime and prepare for regulation

Secure industrial and process control systems without compromising OT stability, while positioning for possible future regulations.

The Decision

The Solution

Many solutions were evaluated, including Microsoft's Client Configuration Manager. Microsoft's lack of experience in the OT environment ultimately led the company to choose Industrial Defender's integrated solution for security, compliance, and change management across a broad range of endpoints.

Proven at a single facility first

The company began with a six-month installation at one facility, bringing in both IT and process automation teams to review the results before scaling.

Deployed without downtime

A key early result: the solution was deployed with no downtime and no incident in the process environment, while delivering visibility across tools from multiple vendors.

Agentless first, then agents

The U.S. rollout began with agentless monitoring to minimize manpower and impact on local equipment; agents were added later for more detailed information and reduced bandwidth needs.

OT-fluent deployment teams

On-site technicians who understood both OT and IT enabled swift, efficient deployment and advanced collaboration between IT and OT staff.

The Solution

A Unified OT Cybersecurity Platform

The Industrial Defender platform enables organizations to strengthen cybersecurity across multiple domains.

Asset Inventory Management

  • Automated asset discovery
  • Continuous inventory updates
  • Lifecycle tracking

Patch & Software Management

  • Authorized software lists
  • OS version tracking
  • Patch monitoring

File Integrity Monitoring

  • Detection of unauthorized file changes
  • Continuous verification

Configuration Monitoring

  • Unauthorized configuration detection
  • Port and service monitoring
  • Baseline comparison

User Account Monitoring

  • Admin account tracking
  • Unauthorized access alerts
  • Account expiration enforcement

Security Event Monitoring

  • Login anomaly detection
  • Log aggregation and correlation
  • Malware monitoring

Network Intrusion Detection

  • IDS deployment across networks
  • Detection of unusual activity
  • Threat filtering

Firewall Rule Monitoring

  • Configuration tracking
  • Baseline enforcement
  • Change detection

Together, these capabilities created a unified OT cybersecurity platform — delivering continuous visibility, automated monitoring, and audit-ready compliance across the utility's entire operational environment.

Results

The Results

7 sites deployed in 9 months

As part of a three-year project bridging IT and OT asset owners, seven sites were deployed in nine months across DCS platforms from Yokogawa, ABB, Honeywell, Schneider, Emerson, and Rockwell.

Unified configuration visibility

A unified view of network and server configuration at both site and corporate level let security managers log in to remote locations and get a standardized view of conditions for the first time.

Immediate issue identification

The customer immediately identified several network and server configuration issues once full visibility was in place.

More effective patch and config management

Improved patch and configuration management while maintaining uptime on critical operational systems, supported by flexible reporting dashboards for future compliance requirements.

No significant incidents

After more than a year in operation, the security team reports no significant security incident; the customer is highly satisfied and plans to expand to 10 sites.

Relevance

Relevance

In the petrochemical industry, safety depends on stability, which makes cybersecurity central to safe operations. This engagement shows how a large, multi-vendor DCS environment can be standardized and secured without sacrificing the uptime that process safety demands.

Key Challenges
  • Heterogeneous DCS environments managed locally with no corporate view
  • Unreliable, manual security-status reporting across global facilities
  • Zero tolerance for downtime or disruption in process control systems
  • Rising cyber risk and the need to prepare for future oil and gas regulations
Industrial Defender Solutions
  • Standardized, real-time visibility across multi-vendor control environments
  • Automated change management and rapid, coordinated incident response
  • Non-disruptive deployment with agentless-first, then agent-based collection
  • Flexible compliance reporting dashboards ready for emerging requirements