Intelligent CISO Issue 42 | Page 50

According to Genetec ’ s own data , 68 % of cameras trying to connect to its systems are typically running outof-date firmware .
FEATURE
For data centres , the situation is particularly nuanced . There are all the usual considerations over public and private areas and where people may pass between them to consider . Equally , there are specific partitions that must be maintained concerning individual customers ’ hardware or data . It ’ s not a case of simply controlling access to the facility , but of dynamically controlling access to specific data halls , rooms and even the individual cabinets that they hold .
Don ’ t put too much reliance on any one sensor or analytic to detect intrusion . Instead , build out a layered approach to perimeter security that ensures all is not lost should one method fail . Video surveillance , number plate recognition , biometrics , LiDAR and fencing are just some of the technologies that can be combined as part of a comprehensive plan to discourage unwanted incursions .
Ensure physical security systems aren ’ t themselves a cybersecurity risk
A key reason to address cyber and physical security in a single plan is the possibility that attackers could use the physical security systems themselves as potential entry points to the network .
Over 90 % of all IoT attacks go through routers and connected cameras .
Security cameras , access control readers and alarm panels are all IoT devices that run the software and may contain cybersecurity vulnerabilities that can be exploited by attackers . To counter the threat , physical security teams must partner with their counterparts in information security to better understand the true limits of the security perimeter and work to develop strong governance and processes to avoid or mitigate cyberattacks .
The majority of risks could easily be eliminated simply by taking basic steps such as ensuring devices are not using default passwords and are running on the latest available version of the firmware . Yet according to Genetec ’ s own data , 68 % of cameras trying to connect to its systems are typically running out-of-date firmware . Of these , more than half involve known vulnerabilities for which a security update is available .
It ’ s a situation that needs to change fast and that can only be resolved through increased collaboration , by removing the burden from employees and by leveraging automation to manage the

According to Genetec ’ s own data , 68 % of cameras trying to connect to its systems are typically running outof-date firmware .

firmware and passwords . Only then can organisations hope to build a resilient cyber-physical security framework from which to operate .
Where cyber meets physical
The data centre industry remains at the forefront of technical innovation and strong global demand for data storage and processing guarantees the market will continue to expand year on year . Against this backdrop , it ’ s important to plan for future growth , to address physical and cybersecurity within a single plan and to invest in a security system now that can scale , adapt and evolve in line with immediate and future requirements . u
50 www . intelligentciso . com