Home Articles posted by a&s Adria (Page 214)

Integrating cyber-physical: Security in Banks without Breaking it

Cyberattacks on financial institutions are becoming more prevalent. Some media reports suggest that more malware was targeted at banks in 2019 than any other industry. Cyberattacks are also becoming diverse, ranging from simple phishing attacks to complex attempts to access credit cards and bank accounts. This is hardly news anymore though, banks, by the very nature of what they handle, make an attractive threat. But what is concerning is the increasing number of ways in which cyber and physical security threats converge. Integrated digitalized solutions for operational, as well as security purposes, are increasingly becoming a normacross industries. The downside of it all is this emerging security threat. In this article, we take a look at the new kinds of security threats that customers in the banking vertical should be aware of in 2020, how these can be mitigated with a proper framework, the role of systems integrators and how the right solutions can be used in the right ways.

What Kind of Cyber and Physical Security Threat to Expect in 2020?

In Britain, some of the largest retail banks have been forced to halt processing foreign currency orders after a cyberattack on exchange provider Travelex. In Africa, operations at several banks were affected after attack by Russian hackers.

There is no doubt that there will be more incidents taking place in the future, given the nature of the technology and how hackers continue to successfully exploit vulnerabilities. But even more, concerning is how physical security is now connected to cybersecurity. With physical security solutions becoming more and more digitalized and integrated, an attack on either of the domains could have wide-ranging repercussions.

“Financial organizations are battling a growing number of physical and digital security threats,” said James Somerville-Smith, Global Customer Marketing Leader – End-User Programs at Honeywell Commercial Security. “According to new research from Honeywell Commercial Security, which surveyed 1,000 large financial institutions across the UK and North America, physical security incidents in large financial institutions have increased across all access points, with half of respondents reporting that incidents affecting employee access systems, physical safety of staff and data centers have gone up over the last year.”

Sophisticated Attacks and Higher Loss
According to Joon Jun, President of the Global Business Division at IDIS, we are likely to see organized cybercriminals continuing to find and target any weakness they can exploit.

“With increased global political instability, we can also expect more state-sponsored cyberattacks on banks and other critical infrastructure where an attack can damage productivity and result in major disruption and financial losses,” Jun said.

On the cybersecurity front, major attacks and threats to the banking sector are focused in three areas, sensitive data exfiltration, ransomware attacks, and denial of service attacks targeting IoT devices, along with risks induced by third party vendors with weak internal cyber hygiene, according to Kevin Sheridan, Director of Financial Institution Services for Convergint.

Convergence of Attacks
Alarmingly, several attackers have taken advantage of physical security solutions that are in place. For instance, hackers gaining access to surveillance cameras at ATMs are able to access the pin codes that customers enter. Jun pointed out that theft of biometric data as hackers look to bypass multi-factor authentication (MFA). This danger was
highlighted last year when Kaspersky Lab researchers identified the selling of digital fingerprints together with
associated personal data on the dark market.

Finding Method in The Madness
To tackle these growing problems of attacks on integrated security systems and avoid security breaches of any kind, banks must plug the gaps between standalone platforms by integrating their physical and digital security systems across the entire enterprise.

“As many financial institutions are both multisite and multiregional, such as retail banks with HQs and then branches, this means striking a careful balance between global central integration control and different regions using different systems and equipment – or locally monitored systems with global remote management as a possibility,” Somerville-Smith said.

However, an even major issue is that while cyber and insider threats make for more fascinating stories, physical security can often be overlooked. Jun explains that these risks have not gone away though and include bank and ATM robbery, cash-in-transit attacks, social engineering to gain access to restricted areas, and corporate espionage.

Plus, banks should also be considering the safety of their airspace, with drones posing not only a terrorist threat to corporate enterprises but cyber threats too as they have the capability to Wi-Fi spoof and trick employees and visitors into thinking they are connecting to a trusted network in order for hackers to gain access into a bank’s corporate network as well as harness personal data including banking details.

Creating a Framework for Cyber-Physical Integration in Banks

In the UK and North America, financial institutions are shifting towards a global management system of physical security. Asurvey from Honeywell Commercial Security shows that half of the respondents (47 percent) said their company’s security is managed at a global level, with all branches under the same enterprise or integrated system, and a further third (32 percent) said they were planning to shift to a global model.

With integration playing an important role across both security measures and markets, enterprise solutions featuring remote oversight and management are going to grow in popularity.

A Holistic Approach

“The keyword is ‘integrated’,” explains Martin Koffijberg, Director, Business Development, Banking and Finance at Axis Communications. “A failure to look holistically at both physical and cybersecurity – to connect the physical with the logical – will inevitably create vulnerabilities. It is important to adopt some form of Enterprise Security Risk Management or Converged Security approach.”

Both physical and IT security should follow the same cybersecurity principles and be evaluated in the same way, Koffijberg added. The first step has to be an acknowledgment from physical security practitioners that these security devices are connected to the network and, while performing security operations, create new risks to a business that hasn’t been seen with older technologies.

Framework Components

First, thorough and continued risk assessments need to be part of every physical security manager’s playbook. Today, many banks in the West have implemented sophisticated physical identity and access management (PIAM) policies, which control not only access into buildings but into the corporate network too.

“These feature useful functions like shutting down access to networks when an employee leaves their laptop, desk or building,” Jun said. “Other functions include enforcing two-factor authentication before login and the use of analytics to flag suspicious network access or unusual activity.”

Speaking about his company’s experience in dealing with the situation, Kevin Sheridan, Director of Financial Institution Services for Convergint, said that their larger financial clients are focused on four key elements of securing their operational security systems to mitigate the risk of any potential vulnerabilities. These are:

1. Device Identification
With the volume of connected devices integrated into physical security systems at financial institutions, awareness of what devices are deployed, where they are deployed, and what their operational status has become more important than ever.

2. Device Hardening Protocols
Password management is a focal point of our most sophisticated clients. Changing default passwords, while seemingly a rather basic activity, is something that many institutions have struggled to achieve given the volume
of IoT devices deployed.

3. End-to-End Encryption
Physical security system architectures are increasingly having this level of network architecture as a requirement of physical security system design.

4. Patch Management
Keeping your systems up to date with the latest firmware patches and software updates, when combined with the aforementioned elements, reduces the attack surface significantly.

The Human Factor And AI
When designing a comprehensive security solution with a holistic approach, technology is only part of the problem to be dealt with. The other part is the people who use the technology. To mitigate physical breaches, human error, and surveillance monitoring, it’s also important to address the problem of fatigue.

“That’s where deep learning and AI solutions can transform control rooms operations for major financial institutes, including those that operate 100s or even 1000s of cameras across large and multiple sites,” Jun said “Because deep learning learns over time, it distinguishes between environmental factors versus actual threats, such as an intruder or suspicious loitering. This translates into fewer false alarms and reduces the chance of control room operators shut down alarms, resulting in a quicker, more appropriate response to incidents.”

Solutions Critical to Fighting Cyber-Physical Threats in 2020

Physical security systems and devices that are connected to the network are endpoints that can potentially introduce significant cyber risk into an organization. Physical security devices are frequently overlooked by IT departments and oftentimes, are not properly patched, updated, or managed.

“These devices are typically configured with default passwords, open ports, and protocols, and they run legacy firmware versions with known vulnerabilities,” explained Kevin Sheridan, Director of Financial Institution Services for
Convergint. “Hostile actors can exploit these vulnerabilities, allowing them to gain an initial foothold into an organization’s network. These compromised devices can then be used as a foothold within the network to pivot to other devices or systems.”

Properly hardening camera, card reader, video management, and other connected systems prior to their initial deployment, and properly managing them throughout their lifecycle, will significantly reduce the attack surface that can be exploited, thereby reducing risk.

Major Factors to Consider
According to James Somerville-Smith, Global Customer Marketing Leader – End-User Programs at Honeywell
Commercial Security, there are four key considerations to bear in mind when integrating cyber and physical security systems:

1. You must ensure that all physical hardware components are cyber secure in their own right
2. All intelligence and data must be protected behind a strong and comprehensive firewall
3. Access to sensitive areas such as data rooms needs to be protected by multilayered accreditation
4. Systems in sensitive areas are protected via local security so that personnel is not able to access systems unless they have properly badged into the restricted area. This will avoid giving system access to personnel in areas that they have got into illegally (e.g., by tailgating), with any breaches being flagged immediately to a central control room so that a response team can be sent to check the breach

Sheridan added that besides properly managing the cybersecurity of the actual physical security devices deployed at a client’s site, it is also imperative that the integrator itself has a strong internal cybersecurity program to ensure the integrator is not the vector for sensitive client data to be compromised.

From Technology to a Process
Martin Koffijberg, Director, Business Development, Banking and Finance at Axis Communications is of the opinion that the concept of cybersecurity should be looked at as a process rather than a technology. You can have the best security-related features built into technology, but if they haven’t been enabled or set up correctly your investment in this is lost and the associated risk increased.

This is no different for physical security technologies than any other IT device connected to a network. This has recently been highlighted by the UK Surveillance Camera Commission’s Secure by Design, Secure by Default certifications for manufacturers.

Balancing Costs and Efficiency
It’s not unusual for global banks to now hand over their technical physical security deployments to ICT departments. Cybersecurity risks are making convergence happen in some sectors, including banking, far more rapidly than the advent of IP surveillance did. It’s not unusual now to see surveillance decisions made by heads of IT and cybersecurity (or those people at least being major influencers on purchasing decisions) but this trend is occurring more in the west than elsewhere.

“However, these set-ups are out of the reach of many banks and are seen as too expensive to implement and maintain,” Jun said. “This is compounded by the fact cybersecurity experts in some parts of the world are hard to come by.”

Jun stressed on the importance of cost-efficiency, concluding that banks need the most cost-effective local NVR and centralized serverbased solutions available, and ones that use proprietary protocols and custom file structures which make them unfamiliar to cybercriminals and therefore very difficult to hack. Plug-and-play solutions could also play a key role, as they are easier to install compared to traditional systems.

Bank Security Challenges and the Role of Systems Integrators

There is no question on the need to come up with a comprehensive security framework that would integrate cyber and physical systems in the banking sector. Unfortunately, to implement such an effective framework, banks must overcome certain challenges.

For instance, legacy operating systems can be difficult for financial clients to justify replacing. If an access control platform, for example, isn’t investing in the cybersecurity feature set of their system, it can put clients in a tough position. A well-connected integrator with scale can help a client make sense of both the capabilities of their existing systems, as well as alternative platforms.

“In addition, there are many operating silos within financial institutions, with their own operating mandates and business objectives,” said Kevin Sheridan, Director of Financial Institution Services for Convergint. “Coordinating the cyber posture of those operating entities is absolutely essential. ATM/ITM groups, facilities, physical security
departments, and IT might have different priorities, but they all utilize physical security systems to deliver services to their internal and external stakeholders.”

In the past, many of these operating silos used a variety of integrators, both regionally and within lines of business, but in today’s environment, the most risk-aware clients are single sourcing integration services such that the security protocols are uniform across the entire enterprise.

The Human Factor
Some of the other challenges include the lack of understanding, at a high-level, concerning the risks posed by insecure IoT devices, including IP cameras. Confusion is fueled by mixed messages from vendors about “strong cybersecurity credentials” when in truth some have cameras that are far from secure- with even some devices listed on websites revealing vulnerabilities or backdoors that can be exploited.

“Security is still too often seen as a cost, and therein lies the danger – it is a mistake to just provide a budget for a surveillance upgrade without fully considering cybersecurity threats,” said Joon Jun, President of the Global Business Division at IDIS. “Equally dangerous may be avoiding decisions about upgrades or even maintenance, because strong security is not seen as a business asset. After disaster strikes, it’s too late for boards to discover that a successful cyber-attack via an IoT device, just like a physical attack, can be both disastrous and costly.”

What The Systems Integrator Can Do
Having seen the challenges, it is obvious that constant education, training, and skilling are essential. Every individual can essentially create a potential vulnerability, and a chain is only as strong as its weakest link. According to Martin Koffijberg, Director, Business Development, Banking and Finance at Axis Communications, this means that systems integrators (SI) need to work closely with the manufacturers of physical security equipment to stay abreast of both cybersecurity enhancements and potential vulnerabilities (and, critical, the action required to mitigate these).

“The way that security systems have been designed and manufactured has fundamentally changed over recent years,” Koffijberg said. “The importance of installation and commissioning security systems, combined with an understanding of how corporate networks need to be configured to protect the integrity of the device and network has changed, and human error poses the biggest risk.”

In other words, SI should prepare themselves by investing in technologies and top cyber talent on both the offensive and defensive sides, to better understand the risks that physical security devices can introduce into an organization’s network.

Kevin Sheridan, Director of Financial Institution Services for Convergint, explained that technology investments in credential management, scalable enterprise patch management, and firmware deployment platforms, as well as detection and response capabilities, are some of the tools needed to help reduce the risks often associated with
physical security devices.

“Follow a tried and true published standard; the National Institute of Standards and Technology’s (NIST)
Cybersecurity Framework,” Sheridan added. “It provides a common language that allows staff at all levels within an organization – and at all points in a supply chain – to develop a shared understanding of their cybersecurity risks. The Framework not only helps financial organizations understand their cybersecurity risks (threats, vulnerabilities, and impacts) but how to reduce these risks with customized measures.”

Apartment access without mobile app (Top 4 apartment access challenges)

Thanks to Booking.com and Airbnb, apartment rent has been the fastest growing hospitality market segment up until the Covid19 outbreak. Although many say that “nothing will be the same”, once the pandemic is over, it is safe to assume that the trend will continue. That is good news for the smart lock and mobile access control vendors. Their market niche has been lately enjoying extraordinary demand due to the need to remotely manage the apartment access.

It turns out there is a wide range of managed access solutions targeting the apartment rent market, with vast variety of smart locks and almost equal number of approaches to access management. The differences can be huge, and often hard to figure out quickly due to the abundance of mechanical, electrical, communication and software possibilities. Yet in most cases, the users are confronted with some considerable challenges.

One company, Spica from Ljubljana, Slovenia is tackling these challenges by offering the alternative solution. They run Door Cloud, a general-purpose, cloud-based and mobile-friendly commercial access control service. This is how they tackle the four major apartment access challenges:

  1. Mechanical – There are countless shapes and forms of door locks, some smart locks need full replacement, some are mechanical add-ons, some are partial replacements. Finding a mechanical fit for a particular door is not an easy task.

Solution: Instead of locks, Door Cloud works with generic electric strikes, which can coexist with almost any type of conventional lock. Electric strikes are well known and widely used with intercom door access devices. 

  1. Electrical– Majority of smart locks are battery operated, and the quoted battery life is rarely realistic. So batteries will need some regular attention if we want to avoid nasty surprises.

Solution: Electric strikes are mounted on the door frame allowing for conventional wired power supply, so there are no battery worries. 

  1. Communication– Majority of smart locks communicate with smart phones locally via WiFi or Bluetooth. Such setup itself is rarely easy, it is often prone to glitches and may require occasional resetting or even reconfiguration from scratch. As with other WiFi and Bluetooth devices, the reliability is not exactly rock solid.

Solution: Door strike is wired to the door controller which is hooked to the apartment router. The ethernet cable provides rock solid, trouble-free communication with Door Cloud servers. The smartphone communication is separate and independent, via mobile data network or apartment WiFi. 

  1. Application– Apps clutter the phone, need space and require more or less annoying registration process. So there is understandable resistance to installing “yet another” app, more so if it is needed only temporarily.

Solution: The app can be replaced with something they call Key Link. It is a simple URL (web link) which can be used by guests to access the apartment. All they would need is some online device, usually a smartphone. 

So, how it’s done? Using the mobile app, the apartment manager can remotely open the door at any time. More interestingly, she can generate the Key Link which allows anyone to open the same door during the set time period. She then sends the link to the guest via email or chat – just like any other web link. Once the link is received, the guest is able to use it simply by clicking on it – the url will open the browser at the door opening page. One button press on the page, and the door opens.

Key Link may be used for the 1st guest access only or even for the entire duration of the stay. Key links can also be used for cleaners, deliveries and similar. The security is not personal and can be compared to that of a long PIN code, which should be good enough for less-than-permanent use.

For more about Door Cloud go to www.doorcloud.com.

UNV thermographic fever screening solution

As the emergence spreading globally and the cases of Coronavirus rapid growing in Europe, the national economy in each country is hit hard. Thus resumption of work and production as well as back to school becomes serious challenge to economic recovery currently. For this epidemic situation, abnormal body temperature is one of the symptoms of pneumonia, it is essential to effectively detect and control the flow of people from areas with high incidence of the epidemic.

In order to help organizations respond to the epidemic situation, Uniview recently releases the latest thermographic fever screening products and solutions which will make a fast preliminary human skin-surface temperature screening without any contact and better to prevent infection from entrance area.

For the UNV newly thermographic fever screening solution, it consists of optical & thermal bi-spectrum camera, blackbody, AI NVR and tripods, which is an all- in- one delivery solution with easy to install and available for rapid and temporary deployment. The bi-spectrum camera adopts 4MP 1/8 inch optical sensor and 384*288 thermal detector to provide clearer image and measure temperature differences in people entering the field of view, besides the camera is built in mic and speaker and red & blue alarm flash light which is easy to warn personnel on site when cases happen. UNV solution uses blackbody device to help calibrate the temperature measurement, making it more accurate and stable especially in less controlled environments where the elements can influence the reading. At the back-end, the AI NVR will allow two bi-spectrum cameras to access in and record simultaneously, and it can provide intuitive demonstration interface to visually display temperature status, mask wearing status, abnormal (elevated) temperature counts, not wearing mask counts and total counts, etc. Moreover, in this smart solution, AI technology ensures thermographic cameras only detect human skin-surface temperature based on face detection, which will filter false alarm caused by other heat source, such as hot water or food.

With its sophisticated component in hardware and excellent performance in image and software, UNV thermographic fever screening solution can support no more than ±0.3℃(with blackbody)deviation at recommended range of 3~6 meters, and be widely applied to multiple scenes such as schools, hospitals, commercial buildings, transportation hubs, etc.

a&s Adria No. 157

Securitas COO & CTO Security Services Europe leaves company

There are imminent changes to the Securitas Group Management team, which will be reduced by two, as Aimé Lyagre, COO and CTO Security Services Europe, has decided to leave the group.

According to the company, this role is not replaced and the responsibilities will be split between Henrik Zetterberg, who remains COO Security Services Europe and a member of Group Management but with expanded responsibilities across Europe, and Thomas Lundstedt who joined Securitas as European Solution Leader in April 2020.

The role of President Aviation will no longer be part of Group Management. These changes are effective from July 1, 2020. All other Group Management members continue in their present roles.

“Aimé Lyagre has decided to leave Securitas. During his 16 years with Securitas he has been a highly appreciated leader and colleague. Among many other things, Aimé has been instrumental to delivering Electronic Solutions in Europe. I want to thank Aimé for his contribution and wish him the best of luck going forward”, says Magnus Ahlqvist, President and CEO.

ASSA ABLOY Opening Solutions EMEA launches Incedo Business, the flexible and platform-based access management solution built to grow with you

London, June 2020 — The world is constantly changing, with people, data and goods moving more fluidly than ever before. Your security solution needs to move with it. New Incedo Business connects all your security software and hardware within one platform. You can easily scale it up or down, based on your needs, to keep your people moving and your business growing. Together.

People need different access times and entry points, and your access and security requirements change day to day – so, a static solution is no longer an option. Instead, a single, all-encompassing security platform should deliver connectivity, convenience and simplicity, keeping your premises secure and filtering access to manage the ever-changing movement of people.

This is where Incedo Business comes in: a new solution for all types of premises, handling security while leaving you free to focus on growing your business. Incedo ensures your employees, customers and goods are where they need to be.

Incedo makes life and tasks easier and more efficient for everyone, from installers to end users. Facility managers enjoy more control and flexibility than they ever thought possible — maximizing return on investment, with Incedo Business able to scale quickly when needed. System administrators can do more within available budgets: initiating, cancelling or amending access profiles, and monitoring movement around their site in real time.

Building users, meanwhile, get the individual access times and entry permissions they need. They can move freely without compromising the security of other people and equipment. Integrators can upgrade connected technologies and systems quickly, minimizing risk and meeting customers’ raised expectations of modern technology. Installers no longer need to wrestle with incompatible systems: easy interoperability is built into Incedo, meaning no more delays or unnecessary complexity.

With Incedo’s modular platform approach, you simply choose the security hardware and credentials you need and the appropriate management system option. You set exactly who can access which doors — and when — from the user-friendly Incedo Business software interface.

When Incedo Business launches, you can pick the most suitable options from a growing range of Incedo-enabled security and access control hardware. Road-tested, award-winning ASSA ABLOY wireless digital locks and wired ASSA ABLOY wall readers secure all your interior and exterior doors.

Also already available, a choice of card and token credentials helps users enjoy safe and convenient access to, and movement around, your premises. Incedo mobile keys add the flexibility to open doors with a smartphone.

Incedo’s system management options — Lite, Plus and Cloud — scale from entry level up to cloud-based administration. You can manage multiple sites and third-party integrations, including security solutions like CCTV. Scale up and down, add or remove hardware and credentials on demand — or switch system management options — all within a single environment. Migration between Lite, Plus and Cloud options is always seamless in any direction, ensuring total flexibility for your business.

Incedo moves with you, today and in the future
However your business moves, an Incedo system moves with you. Having a flexible platform, able to adapt as your organization changes, reduces total cost of ownership: you never need to retrain staff or start over from scratch.

New Incedo-enabled hardware from ASSA ABLOY and third-party providers will continue to be connected to, and made available within, your evolving Incedo platform. You pick the hardware and software configuration you want, and can change your mind as often as you like. Incedo guarantees flexibility and scalability in every way, to meet your security needs today and in the future.

And because the security and operational challenges at a university, small hotel or hospital are not the same as those faced by a public building or corporate HQ, the Incedo ecosystem will introduce new, advanced user interfaces for your specific industry.

“Incedo Business transforms the experience of using and managing a building. It is also the seed from which our revolutionary Incedo ecosystem will grow in the months and years ahead,” says Stephanie Ordan, VP Digital and Access Solutions at ASSA ABLOY Opening Solutions EMEA.

“A future where doors are smarter, connectivity and movement are seamless, and access management is genuinely intelligent. This is our vision for Incedo and for those who will be using it.”

Incedo™ Business embodies ASSA ABLOY’s vision to create a safer and more open world, keeping everyone on the move. Together. To learn more and download a free solution guide, visit campaigns.assaabloyopeningsolutions.eu/Incedo-business

Cisco to acquire security company ThousandEyes

Cisco Systems announced that it intends to acquire ThousandEyes, a security-software company, reportedly for close to $1 billion.

San Francisco-based ThousandEyes is an interesting startup, that has made a name for itself with its service that watches pretty much the whole internet to help companies figure out the source of performance problems of websites and web-based apps. For instance, it can determine if an outage is the company’s fault or that of its service providers.

While Cisco wouldn’t say what it plans to pay, ThousandEyes has raised a total of about $111 million with an estimated valuation of $670 million as of February 2019, according to Pitchbook. Bloomberg previously reported that the deal could be valued at “nearly” $1 billion.

On March 5, ThousandEyes reported that it had $100 million worth of revenue under contract for its 2020 fiscal year — representing growth of almost 80% year-over-year.

“The combination of Cisco and ThousandEyes will enable deeper and broader visibility to pinpoint deficiencies and improve the network and application performance across all networks,” said Cisco executive Todd Nightengale.

Bloomberg News reported earlier in the day that the deal was in the works and could be completed Thursday, with a price tag approaching $1 billion. Cisco did not disclose the purchase price. Cisco expects the deal to close before the end of its fiscal first quarter, which begins in August.

ID & access segment drives managed security services market

A new report from Marketsandmarkets on the managed security services market to 2025 projects the sector to grow from USD 31.6 billion in 2020 to USD 46.4 billion by 2025, at a CAGR of 8.0% during the forecast period.

The rising instances of security breaches and increasing number of attacks that pose a threat to large and small organisational systems are anticipated to be the major market drivers. The need to adopt necessary steps in advance for securing the overall security posture and technological advancements in cloud and IoT has bolstered potential use cases across verticals.

Managed security services (MSS) are proactive security measures tailored according to the need and ever-evolving security landscape of organisations. These services include continuous monitoring and analysis, advanced technology, network assessment, and application and security specialists to advice stakeholders in organisations. Managed Identity and Access Management (IAM) helps in driving automation, managing consumer identities, and establishing a risk-based approach, among others. Some of the companies are integrating technologies such as robotics with IAM. single sign-on (SSO) and multi-factor authentication (MFA) are the two most common systems used in IAM. Hence, the managed IAM segment is expected to be a larger segment during the forecast perioed.

Fastest growth in healthcare vertical
The banking, financial Services, and insurance (BFSI) vertical is expected to dominate the MSS market with the largest market size, while the healthcare vertical is the fastest-growing vertical during the forecast period. MSS are expected to help the BFSI vertical in keeping the confidentiality of sensitive data, which will, in turn, help in maintaining the overall security posture. The biggest advantage of using MSS in the BFSI vertical is 24/7/365 monitoring, which results in immediate incident response and remediation in case of a security breach. The BFSI vertical is very careful about the security of the sensitive data of its customers. Hence, for enhancing the protection of online services from cyber attacks, companies operating in the BFSI vertical are adopting MSS .

In the healthcare vertical, MSS such as medical device penetration testing, network segmentation for medical equipment, device inventory and risk analysis, and medical device risk assessments will play an integral role in securing entities related to patients as well as hospital data. Moreover, MSS also helps healthcare organisations comply with stringent Health Insurance Portability and Accountability Act (HIPAA) and Payment Card Industry Data Security Standard (PCI DSS) compliances.

Highest market share in Asia Pacific
Geographically speaking Asia Pacific is predicted to hold the highest market share during the forecast period. Technological advancements such as cloud, 5G, and IoT have led SMEs and large enterprises in the Asia Pacific (APAC) region to largely rely on MSS. Also, stringent government regulations on adopting security measures, cyber security incidents, and cloud technology adoption are driving the adoption of MSS in the region. Major vendors covered by the Marketsandmarkets analysts in the managed security services report include IBM, AT&T, NTT Data, Secureworks, DXC Technology, BT Security, Atos, Infosys, Verizon, Cognizant, Cipher Security, Wipro, Accenture, Optiv Security, Trustwave, The Herjavec Group, Centurylink, Kudelski, and Nuspire.

Bosch gears up to make over 10 million face masks per month

Dr. Volkmar Denner, chairman of the board of management of Robert Bosch GmbH, recently launched the first special production line for face masks at the Bosch plant in Stuttgart-Feuerbach. “Containing coronavirus is a challenge for society as a whole. By equipping our associates with masks we make ourselves, we are helping to relieve the burden on the market. Moreover, we are doing the groundwork that will enable us to safely resume operations and protect our associates,” Denner says.

Following a coordinated ramp-up that will run until the end of June, the company will make over half a million masks a day on five production lines at four locations worldwide. The lines were designed by Bosch’s special-purpose machinery unit. Bosch is making the design plans available to interested companies free of charge. Bosch has already received inquiries from over 30 companies regarding the designs of the special production line.

Bosch designs a production line for face masks
In combination with other hygiene measures, face masks are an effective means of reducing the risk of new Covid-19 infections. Developed by Bosch’s special-purpose machinery unit in just a few weeks, identical, fully automated production lines for face masks are now being set up at several company locations. In addition to the lead plant for Industry 4.0 in Stuttgart-Feuerbach, where two lines are planned, mask production will be ramped up at the Bosch locations in Naganathapura, India, and Juárez, Mexico, in successive weeks. A facility at the Rexroth plant in Erbach, Germany, will round off the manufacturing network. Overall, by the end of June, the production volume of the five lines is set to exceed ten million masks a month.

Relieving supply bottlenecks
The face covering is primarily intended to impede the spread of pathogens from the wearer’s nose and throat. At the same time, the mask acts as a barrier to bodily fluids produced by people in the immediate vicinity. Bosch is manufacturing surgical mask types I and II, which comply with the European DIN EN 14683 standard, and will use them mainly to protect its roughly 400,000 associates worldwide. Bosch wants to make any excess capacity available to third parties, provided there is demand and the masks satisfy country-specific standards.

Furthermore, Bosch is making the designs, technical drawings, and assembly instructions of the lines available to other companies free of charge, as well as information about how the masks are packaged and distributed. “Our special production lines give us greater independence, since masks can be made directly on site, right where they are needed,” Denner says. Bosch’s special-purpose machinery unit offers interested companies expert advice and supplies complete systems on request. “Bosch is responding to coronavirus by developing technology. We are contributing our innovative strength and extensive manufacturing expertise,” says Rolf Najork, the Bosch management board member responsible for industrial technology.

Security Essen 2020 is cancelled

The international trade fair Security Essen planned for 22-25 September 2020 – Europe’s biggest security exhibition – is cancelled due to the unforeseeable developments of the Corona crisis.

The decision to cancel the fair was taken by Messe Essen in close consultation with the partner associations. The next Security Essen will take place at Messe Essen from September 20 to 23, 2022.

No other choice

Security Essen is a biennial event, taking place every two years.

“The anticipation of this year’s edition and the new concept of Security Essen was great among all those involved, and so all the more difficult for us to decide to cancel the fair”, explains Oliver P. Kuhrt, Managing Director of Messe Essen. “However, the current dynamic situation and the continuing global travel restrictions unfortunately do not permit serious preparations for the fair. As a result, our exhibitors and visitors and also we as the organisers lack the planning perspective which would have been a prerequisite for the customary professional staging of Security Essen this September.”

“The cancellation of Security Essen 2020 is the result of a prudent and careful evaluation of the current situation which we have undertaken together”, adds Norbert Schaaf, Chairman of the Management Board of the Federal Association of Safety Engineering (BHE) and Chairman of the Security Essen Advisory Board. “Since the majority of our fair participants come to Essen from abroad, we had to act with particular prudence. Due to the unclear worldwide development of the Coronavirus pandemic and the associated uncertain travel planning, there was unfortunately no alternative in the end.”

Enormous economic challenge

Dr. Harald Olschok, General Manager of the Federal Association of the Security Industry (BDSW) and member of the Security Essen Advisory Board agrees:

“From the perspective of our member companies, the decision to cancel Security Essen is fully understandable. Personally, I regret this very much, because it would have been my 15th and last Security Essen as Chief Executive of BDSW and BDGW. But for the security service providers, the Corona crisis represents an enormous economic challenge. I am sure that the management and the entire team of BDSW and BDGW with their affiliated member companies are looking forward to Security Essen 2022 – then under better economic conditions.”