---
title: Cybersecurity tool integration IEDS in digital power systems
date: 2020-12-09T15:15:00-05:00
author: jessica napert
canonical_url: "https://www.bbaconsultants.com/fr-ca/perspectives/cybersecurity-tool-integration-challenges-with-ieds-in-digital-power-systems-anglais-seulement"
section: Publications
---
Deploying and integrating cybersecurity technologies and tools/solutions in an industrial operating environment must be well planned and executed. These deployments are prone to risks such as the disruption/impact to business operations, people, safety, environment, and others. To mitigate these risks, cybersecurity/Digital Power System (DPS) project managers must consider implementing Proof of Concept (PoC) tests in their project execution plans, prior to full scale implementation. The approach is to identify gaps in tool/solution functionality, interoperability issues with Intelligent Electronic Devices (IEDs) or technology enhancements prior to making a purchasing commitment and ultimately the field technology deployments.

 

1. A vendor agnostic PoC methodology that is tailored to cybersecurity tool integration in DPSs is presented. Although, there can be similarities with other types of technology integration projects (i.e.IT, enterprise, or corporate), there are distinct differences and challenges when developing an integration strategy for Cybersecurity solutions for DPS, including distributed energy resources (DERs).
    
    Typical cybersecurity tools include, but are not limited to, Universal Security Management (USM) systems, Regulatory compliance management tools, Security information and Event Management (SIEM) tools, Configuration Management tools, Electronic Access &amp; Password Management tools,
    
    Patch Management tools, Threat Detection and Monitoring tools, and Vulnerability Assessment tools.
    
    While these cybersecurity tools can offer impressive features and functions, a major challenge can often be linked to device integration limitations and lack of capabilities. This is more prevalent in legacy devices that were not designed with cybersecurity in mind. It is relatively common for IED
    
    manufacturers to force users to go through their vendor software (exclusively with no external integration) to perform cybersecurity related functions. Examples include user authentication and permissions, configuration changes, log and events, and backup and restoration. This vendor software
    
    restriction forces operators and maintenance personnel to rely on manual intensive tasks that can be time consuming, taking away from higher priority items.
    
    Although the above stated challenges may seem daunting, there are integration strategies and options that can centralize and improve the efficiency of day-to-day operational/maintenance tasks. A balance must be struck between improved features/functions and integration effort. Each operator/owner of its DPSs will have specific needs and requirements and it is important to consider options that are a “right fit” for that operational environment and culture. This could include multiple cybersecurity tools that each have a very specific purpose, one centralized tool, a hybrid, or more customized interfaces. There are a plethora of different options and therefore, it is paramount to fully understand the intricacies of cybersecurity tools available on the market and the limitations of device capabilities. This is also critical when undertaking legacy device replacements/upgrades, as certain cybersecurity related
    
    features/functions are not necessarily offered in the default builds.
    
    Gaps have been identified in publicly available resources when it comes to cybersecurity tools integration of DPSs. Many IT based guides and playbooks are leveraging parallel production environments without impacting operations as a whole. This approach is not possible with DPS operating environments. Readers will take away unique concepts and will be able to directly apply key strategies to their next cybersecurity tools implementation project for Power Systems.
 
Ce contenu est fourni uniquement à des fins d’information générale. Tous droits réservés ©BBA

 

    1. ![Shayne Casavant](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/2626/Shayne-Casavant.webp)   
    
     Shayne Casavant, ing.
    
    Ingénieur sénior, Cybersécurité des systèmes de contrôle industriels
    
         [  ](https://www.linkedin.com/in/shayne-casavant/)
 
 

       

  

  

 

    - [  17 août 2026 
    
     Phase de base de l'ingénierie structurelle: créer de la valeur dès les premières décisions 
    
     
    
     
    
    
    - ![Nicolas Samson](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/197852/Nicolas-Samson.webp)   
        
         Nicolas Samson, ing.
        
        Ingénieur sénior, Structure
     
       
    
     
    
      ](https://www.bbaconsultants.com/fr-ca/perspectives/phase-de-base-ingenierie-structurelle-creer-valeur-des-les-premieres-decisions "Phase de base de l'ingénierie structurelle: créer de la valeur dès les premières décisions")
- [  12 août 2026 
    
     Les quatre erreurs qui nuisent à la performance future d'un actif industriel 
    
     
    
     
    
    
    - ![Caroline provost](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/208557/Caroline-provost.webp)   
        
         Caroline Provost ing.
        
        Directrice, Mise en œuvre de stratégie d’opération
     
       
    
     
    
      ](https://www.bbaconsultants.com/fr-ca/perspectives/quatre-erreurs-qui-nuisent-a-la-performance-future-dun-actif-industriel "Les quatre erreurs qui nuisent à la performance future d'un actif industriel")
- [  27 juill. 2026 Mines et métaux  
    
     
    
     Vos décisions liées aux résidus miniers influencent la performance à long terme 
    
     
    
     
    
    
    - ![Geraldine Cosset](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/206707/Geraldine-Cosset.webp)
    - ![Jared Purdy](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/212424/Jared-Purdy.webp)
     
       
    
     
    
      ](https://www.bbaconsultants.com/fr-ca/perspectives/decisions-liees-aux-residus-miniers-influencent-performance-long-terme "Vos décisions liées aux résidus miniers influencent la performance à long terme")
- [  02 juill. 2026 Mines et métaux  
    
     
    
     Python : un outil clé pour l’analyse des données en traitement des minerais 
    
     
    
     
    
    
    - ![Charles Blais](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/211197/Charles-Blais.webp)
    - ![Juan Pablo Vergara](https://www.assets.bbaconsultants.com/bba-production-assets/production/images/avatars/_size_avatar/211266/Juan-Pablo-Vergara.webp)
     
       
    
     
    
      ](https://www.bbaconsultants.com/fr-ca/perspectives/python-un-outil-cle-pour-analyse-donnees-en-traitement-minerais "Python : un outil clé pour l’analyse des données en traitement des minerais")
 
 

       

 

 [ Voir tout 

 ](https://www.bbaconsultants.com/fr-ca/perspectives "Aller à la page Publications") 

 

   

 Poussons  
la réflexion  
ensemble [ Contactez-nous    

 ](https://www.bbaconsultants.com/fr-ca/contact) 

 

   

  Deploying and integrating cybersecurity technologies and tools/solutions in an industrial operating environment must be well planned and executed. These deployments are prone to risks such as the disruption/impact to business operations, people, safety, environment, and others. To mitigate these risks, cybersecurity/Digital Power System (DPS) project managers must consider implementing Proof of Concept (PoC) tests in their project execution plans, prior to full scale implementation. The approach is to identify gaps in tool/solution functionality, interoperability issues with Intelligent Electronic Devices (IEDs) or technology enhancements prior to making a purchasing commitment and ultimately the field technology deployments.

 

1. A vendor agnostic PoC methodology that is tailored to cybersecurity tool integration in DPSs is presented. Although, there can be similarities with other types of technology integration projects (i.e.IT, enterprise, or corporate), there are distinct differences and challenges when developing an integration strategy for Cybersecurity solutions for DPS, including distributed energy resources (DERs).
    
    Typical cybersecurity tools include, but are not limited to, Universal Security Management (USM) systems, Regulatory compliance management tools, Security information and Event Management (SIEM) tools, Configuration Management tools, Electronic Access &amp; Password Management tools,
    
    Patch Management tools, Threat Detection and Monitoring tools, and Vulnerability Assessment tools.
    
    While these cybersecurity tools can offer impressive features and functions, a major challenge can often be linked to device integration limitations and lack of capabilities. This is more prevalent in legacy devices that were not designed with cybersecurity in mind. It is relatively common for IED
    
    manufacturers to force users to go through their vendor software (exclusively with no external integration) to perform cybersecurity related functions. Examples include user authentication and permissions, configuration changes, log and events, and backup and restoration. This vendor software
    
    restriction forces operators and maintenance personnel to rely on manual intensive tasks that can be time consuming, taking away from higher priority items.
    
    Although the above stated challenges may seem daunting, there are integration strategies and options that can centralize and improve the efficiency of day-to-day operational/maintenance tasks. A balance must be struck between improved features/functions and integration effort. Each operator/owner of its DPSs will have specific needs and requirements and it is important to consider options that are a “right fit” for that operational environment and culture. This could include multiple cybersecurity tools that each have a very specific purpose, one centralized tool, a hybrid, or more customized interfaces. There are a plethora of different options and therefore, it is paramount to fully understand the intricacies of cybersecurity tools available on the market and the limitations of device capabilities. This is also critical when undertaking legacy device replacements/upgrades, as certain cybersecurity related
    
    features/functions are not necessarily offered in the default builds.
    
    Gaps have been identified in publicly available resources when it comes to cybersecurity tools integration of DPSs. Many IT based guides and playbooks are leveraging parallel production environments without impacting operations as a whole. This approach is not possible with DPS operating environments. Readers will take away unique concepts and will be able to directly apply key strategies to their next cybersecurity tools implementation project for Power Systems.
 
Ce contenu est fourni uniquement à des fins d’information générale. Tous droits réservés ©BBA
