---
title: Cybersecurity tool integration IEDS in digital power systems
date: 2020-12-09T15:15:00-05:00
author: jessica napert
canonical_url: "https://www.bbaconsultants.com/en-ca/insights/cybersecurity-tool-integration-challenges-with-ieds-in-digital-power-systems"
section: Publications
---
Deploying and integrating cybersecurity technologies and tools/solutions in an industrial operating environment must be well planned and executed. These deployments are prone to risks such as the disruption/impact to business operations, people, safety, environment, and others. To mitigate these risks, cybersecurity/Digital Power System (DPS) project managers must consider implementing Proof of Concept (PoC) tests in their project execution plans, prior to full scale implementation. The approach is to identify gaps in tool/solution functionality, interoperability issues with Intelligent Electronic Devices (IEDs) or technology enhancements prior to making a purchasing commitment and ultimately the field technology deployments.

 

1. A vendor agnostic PoC methodology that is tailored to cybersecurity tool integration in DPSs is presented. Although, there can be similarities with other types of technology integration projects (i.e.IT, enterprise, or corporate), there are distinct differences and challenges when developing an integration strategy for Cybersecurity solutions for DPS, including distributed energy resources (DERs).
    
    Typical cybersecurity tools include, but are not limited to, Universal Security Management (USM) systems, Regulatory compliance management tools, Security information and Event Management (SIEM) tools, Configuration Management tools, Electronic Access &amp; Password Management tools,
    
    Patch Management tools, Threat Detection and Monitoring tools, and Vulnerability Assessment tools.
    
    While these cybersecurity tools can offer impressive features and functions, a major challenge can often be linked to device integration limitations and lack of capabilities. This is more prevalent in legacy devices that were not designed with cybersecurity in mind. It is relatively common for IED
    
    manufacturers to force users to go through their vendor software (exclusively with no external integration) to perform cybersecurity related functions. Examples include user authentication and permissions, configuration changes, log and events, and backup and restoration. This vendor software
    
    restriction forces operators and maintenance personnel to rely on manual intensive tasks that can be time consuming, taking away from higher priority items.
    
    Although the above stated challenges may seem daunting, there are integration strategies and options that can centralize and improve the efficiency of day-to-day operational/maintenance tasks. A balance must be struck between improved features/functions and integration effort. Each operator/owner of its DPSs will have specific needs and requirements and it is important to consider options that are a “right fit” for that operational environment and culture. This could include multiple cybersecurity tools that each have a very specific purpose, one centralized tool, a hybrid, or more customized interfaces. There are a plethora of different options and therefore, it is paramount to fully understand the intricacies of cybersecurity tools available on the market and the limitations of device capabilities. This is also critical when undertaking legacy device replacements/upgrades, as certain cybersecurity related
    
    features/functions are not necessarily offered in the default builds.
    
    Gaps have been identified in publicly available resources when it comes to cybersecurity tools integration of DPSs. Many IT based guides and playbooks are leveraging parallel production environments without impacting operations as a whole. This approach is not possible with DPS operating environments. Readers will take away unique concepts and will be able to directly apply key strategies to their next cybersecurity tools implementation project for Power Systems.
 
This content is for general information purposes only. All rights reserved ©BBA

 

    1. ![Shayne Casavant](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/2626/Shayne-Casavant.webp)   
    
     Shayne Casavant, P.Eng.
    
    Senior Engineer, ICS Cybersecurity
    
         [  ](https://www.linkedin.com/in/shayne-casavant/)
 
 

       

  

  

 

    - [  27 Jul 2026 Mining and Metals  
    
     
    
     Early tailings decisions shape long-term mine performance 
    
     
    
     
    
    
    - ![Geraldine Cosset](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/206707/Geraldine-Cosset.webp)
    - ![Jared Purdy](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/212424/Jared-Purdy.webp)
     
       
    
     
    
      ](https://www.bbaconsultants.com/en-ca/insights/early-tailings-decisions-shape-long-term-mine-performance "Early tailings decisions shape long-term mine performance")
- [  02 Jul 2026 Mining and Metals  
    
     
    
     Python: A key tool for data analysis in mineral processing 
    
     
    
     
    
    
    - ![Charles Blais](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/211197/Charles-Blais.webp)
    - ![Juan Pablo Vergara](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/211266/Juan-Pablo-Vergara.webp)
     
       
    
     
    
      ](https://www.bbaconsultants.com/en-ca/insights/python-a-key-tool-for-data-analysis-in-mineral-processing "Python: A key tool for data analysis in mineral processing")
- [  19 Jun 2026 Mining and Metals  
    
     
    
     Speed is earned early in projects 
    
     
    
     
    
    
    - ![Mm employee men jean lheureux retouch web SQ LR BBA](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/204266/mm_employee_men_jean-lheureux_retouch_web_SQ_LR_BBA.webp)
    - ![Mm employee men benoit richard retouch web SQ LR BBA](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/203602/mm_employee_men_benoit-richard_retouch_web_SQ_LR_BBA.webp)
     
       
    
     
    
      ](https://www.bbaconsultants.com/en-ca/insights/speed-is-earned-early-in-projects "Speed is earned early in projects")
- [  17 Jun 2026 
    
     Industrial data platforms: building a solid foundation to optimize your operations 
    
     
    
     
    
    
    - ![Pierre Boucher](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/2671/Pierre-Boucher.webp)   
        
         Pierre Boucher, P.Eng.
        
        Senior Engineer, Operational Technology and Infrastructure
     
       
    
     
    
      ](https://www.bbaconsultants.com/en-ca/insights/industrial-data-platforms-building-a-solid-foundation-to-optimize-your-operations "Industrial data platforms: building a solid foundation to optimize your operations")
 
 

       

 

 [ See all 

 ](https://www.bbaconsultants.com/en-ca/insights "Go to Publications listing page") 

 

   

 Let’s  
think it further  
together [ Contact us    

 ](https://www.bbaconsultants.com/en-ca/contact) 

 

   

  Deploying and integrating cybersecurity technologies and tools/solutions in an industrial operating environment must be well planned and executed. These deployments are prone to risks such as the disruption/impact to business operations, people, safety, environment, and others. To mitigate these risks, cybersecurity/Digital Power System (DPS) project managers must consider implementing Proof of Concept (PoC) tests in their project execution plans, prior to full scale implementation. The approach is to identify gaps in tool/solution functionality, interoperability issues with Intelligent Electronic Devices (IEDs) or technology enhancements prior to making a purchasing commitment and ultimately the field technology deployments.

 

1. A vendor agnostic PoC methodology that is tailored to cybersecurity tool integration in DPSs is presented. Although, there can be similarities with other types of technology integration projects (i.e.IT, enterprise, or corporate), there are distinct differences and challenges when developing an integration strategy for Cybersecurity solutions for DPS, including distributed energy resources (DERs).
    
    Typical cybersecurity tools include, but are not limited to, Universal Security Management (USM) systems, Regulatory compliance management tools, Security information and Event Management (SIEM) tools, Configuration Management tools, Electronic Access &amp; Password Management tools,
    
    Patch Management tools, Threat Detection and Monitoring tools, and Vulnerability Assessment tools.
    
    While these cybersecurity tools can offer impressive features and functions, a major challenge can often be linked to device integration limitations and lack of capabilities. This is more prevalent in legacy devices that were not designed with cybersecurity in mind. It is relatively common for IED
    
    manufacturers to force users to go through their vendor software (exclusively with no external integration) to perform cybersecurity related functions. Examples include user authentication and permissions, configuration changes, log and events, and backup and restoration. This vendor software
    
    restriction forces operators and maintenance personnel to rely on manual intensive tasks that can be time consuming, taking away from higher priority items.
    
    Although the above stated challenges may seem daunting, there are integration strategies and options that can centralize and improve the efficiency of day-to-day operational/maintenance tasks. A balance must be struck between improved features/functions and integration effort. Each operator/owner of its DPSs will have specific needs and requirements and it is important to consider options that are a “right fit” for that operational environment and culture. This could include multiple cybersecurity tools that each have a very specific purpose, one centralized tool, a hybrid, or more customized interfaces. There are a plethora of different options and therefore, it is paramount to fully understand the intricacies of cybersecurity tools available on the market and the limitations of device capabilities. This is also critical when undertaking legacy device replacements/upgrades, as certain cybersecurity related
    
    features/functions are not necessarily offered in the default builds.
    
    Gaps have been identified in publicly available resources when it comes to cybersecurity tools integration of DPSs. Many IT based guides and playbooks are leveraging parallel production environments without impacting operations as a whole. This approach is not possible with DPS operating environments. Readers will take away unique concepts and will be able to directly apply key strategies to their next cybersecurity tools implementation project for Power Systems.
 
This content is for general information purposes only. All rights reserved ©BBA
