Category
Description
Logging and event
management
Best practices:
•
Our company recommends that all administrative and
maintenance activities are logged.
•
Ensure that logs are backed up. Retain the backups for a
minimum of 3 months or as per the organization’s security
policy.
•
Perform log review at a minimum every 15 days.
The UPS supports the following logging mechanisms:
•
The UPS logs all active events, alarms and notices
•
Configuration changes made are logged (language change,
modify UPS name, etc.)
Secure maintenance
Best practices:
Apply firmware updates and patches regularly.
Due to increasing cyber attacks on industrial control systems,
our company implements a comprehensive patch and update
process for its products. Users are encouraged to maintain a
consistent process to promptly monitor for fresh firmware
updates, implement patching and updates as and when
required or released.
Our company will upgrade the UPS firmware from time to time.
If any site needs to upgrade firmware, they can contact the
service center for upgrade.
Our company also has a robust vulnerability response process.
In the event of any security vulnerability getting discovered in its
products, our company patches the vulnerability and releases
an information bulletin through its cybersecurity web site:
Conduct regular cybersecurity risk analyses of the organization/
system.
Our company has worked with third-party security firms to
perform system audits, both as part of a specific customer’s
deployment and within our company’s own development cycle
process. Our company can provide guidance and support to
your organization’s effort to perform regular cybersecurity audits
or assessments.
Plan for business continuity/cybersecurity disaster recovery.
It is a cybersecurity best practice for organizations to plan for
business continuity. Establish an OT business continuity plan,
periodically review and, where possible, exercise the
established continuity plans. Make sure offsite backups include:
•
A backup of the most current configurations
•
Documentation of the most current user list
References:
1.
Cybersecurity Considerations for Electrical Distribution Systems
(WP152002EN).
http://www.eaton.com/ecm/groups/public/@pub/@eaton/
@corp/documents/content/pct_1603172.pdf
© Eaton Corporation plc 2020. All rights reserved.
Revision: 001
Document ID: P-164000956
137
(141)
Eaton 93PM G2 UPS 50 – 360 kVA
User’s and Installation Guide