<img height="1" width="1" style="display:none;" alt="" src="https://px.ads.linkedin.com/collect/?pid=2975524&amp;fmt=gif">
BLOG

Radiflow, Garland Technology Join Forces to Strengthen Real-Time Anomaly Detection in OT Environments

June 27, 2024

OT threat detection software gathers data from network TAPs for complete visibility and protection across the entire network 

Tel Aviv, ISRAEL – June 28, 2024 – In response to rising threats against critical infrastructure, Radiflow, a leader in Operations Technology (OT) cybersecurity and risk management solutions, has partnered with Garland Technology, a pioneer in scalable network TAPs and Data Diodes to deliver an exceptional OT security solution. This collaboration combines Radiflow’s expertise in OT cybersecurity with Garland’s packet visibility technology to deliver a cost-effective enhanced, end-to-end security solution for critical infrastructure and industrial plants.

Nation-state threat actors have increasingly focused their attention on disrupting industry and critical infrastructure. Radiflow and Garland’s partnership helps organizations detect deviations in network behavior and communication that indicates the network has been compromised. Garland’s network TAPs capture every packet and send copies of each transaction to Radiflow’s OT Security Platform for analysis. When anomalies are detected, Radiflow’s platform automatically alerts stakeholders and security personnel of a potential cyber attack, so that they can implement their incident response process.

“We are very pleased to be partnering with Garland,”  said Ilan Barda, founder and CEO of Radiflow. “Their solution enables our customers to see and monitor every network event without requiring expensive investment in intrusive switches. This solution helps put our customers on track toward NIS2 and IEC 62443 compliance.”

“Garland Technology has been involved in critical infrastructure projects since 2011 when we designed our first Data Diode TAP for a customer,” said Chris Bihary, CEO & Co-Founder. “Since then we’ve been building network visibility products to help provide technologies like Radiflow’s OT Security platform the packet level visibility needed to protect the world’s most critical assets. This exciting solution takes replicated data from our network TAPs and Data Diodes and turns it into actionable insights that facilitate precise threat detection. Together, we’ve simplified network management and security operations in closed and segregated environments that still use old and legacy network equipment while enhancing overall control and visibility.”

The collaboration between Radiflow and Garland Technology ensures complete data capture of all network transactions, enabling effective anomaly detection. This facilitates precise threat detection and reduces false positives through uninterrupted data analysis. Additionally, it maintains network performance and uptime with secured data streaming.

The joint solution is highly flexible. It adapts to a variety of network configurations, and can scale seamlessly with infrastructure changes. Security teams can monitor multiple environments from a single centralized dashboard.

This technology partnership underscores Radiflow and Garland’s commitment to OT security, as they empower operators of cyber physical systems (CPS) with the tools and insights necessary to defend against today’s cyber threats. This partnership delivers a cost-effective approach to enhanced security, while creating a clear path toward compliance with industry standards, such as NIS 2 and IEC 62443. Customers can operate their OT environments with full confidence that it is protected from current and future threats.

About Radiflow 

Radiflow is a leading, global provider of OT security solutions and services for critical infrastructure and industrial automation. With broad and deep industrial cyber experience, the company enables industrial operators to continuously safeguard their operations while they manage risk, optimize their security budget, and comply with regulations and industry best practices.  Radiflow OT security solutions and services are deployed at more than 8000 sites worldwide, supported from offices and partners in Europe, APAC, and North America.  Radiflow is part of the Sabanci Group, an international conglomerate involved in financial services, energy, cement, retail, and other critical infrastructure and industrial sectors.

About Garland Technology 

 Garland Technology is an industry leader of IT and OT network solutions for enterprise, critical infrastructures, and government agencies worldwide. Since 2011, Garland Technology has been engineering and manufacturing simple, reliable, and affordable Network TAPs and Network Packet Brokers in Richardson, Texas. For help identifying the right IT/OT network visibility solutions for projects large and small, or to learn more about the inventor of the first bypass technology, visit GarlandTechnology.com.

See Everything. Secure Everything.

Contact us now to secure and optimized your network operations

Heartbeats Packets Inside the Bypass TAP

If the inline security tool goes off-line, the TAP will bypass the tool and automatically keep the link flowing. The Bypass TAP does this by sending heartbeat packets to the inline security tool. As long as the inline security tool is on-line, the heartbeat packets will be returned to the TAP, and the link traffic will continue to flow through the inline security tool.

If the heartbeat packets are not returned to the TAP (indicating that the inline security tool has gone off-line), the TAP will automatically 'bypass' the inline security tool and keep the link traffic flowing. The TAP also removes the heartbeat packets before sending the network traffic back onto the critical link.

While the TAP is in bypass mode, it continues to send heartbeat packets out to the inline security tool so that once the tool is back on-line, it will begin returning the heartbeat packets back to the TAP indicating that the tool is ready to go back to work. The TAP will then direct the network traffic back through the inline security tool along with the heartbeat packets placing the tool back inline.

Some of you may have noticed a flaw in the logic behind this solution!  You say, “What if the TAP should fail because it is also in-line? Then the link will also fail!” The TAP would now be considered a point of failure. That is a good catch – but in our blog on Bypass vs. Failsafe, I explained that if a TAP were to fail or lose power, it must provide failsafe protection to the link it is attached to. So our network TAP will go into Failsafe mode keeping the link flowing.

Glossary

  1. Single point of failure: a risk to an IT network if one part of the system brings down a larger part of the entire system.

  2. Heartbeat packet: a soft detection technology that monitors the health of inline appliances. Read the heartbeat packet blog here.

  3. Critical link: the connection between two or more network devices or appliances that if the connection fails then the network is disrupted.

NETWORK MANAGEMENT | THE 101 SERIES