Connect with us

Technology

Commercial Off the Shelf Components Need Elevated Cybersecurity Protection: ISA’s New Report

Published

on

DURHAM, N.C., July 23, 2024 /PRNewswire/ — The International Society of Automation (ISA) — the leading professional society for automation — has announced the release of a white paper describing recommendations for raising the safety and security bar for automation and control systems. ISA published the paper in tandem with its ISASecure® cybersecurity certification program and the ISA Global Cybersecurity Alliance (ISAGCA).

This paper advocates for designing and certifying commercial off the shelf (COTS) products to a minimum of security level 2 (SL2) as defined in the ISA/IEC 62443 series of standards, the world’s leading consensus-based standards for control systems cybersecurity. Titled “The Case for ISA/IEC 62443 Security Level 2 as a Minimum for COTS Components,” the 23-page report outlines how SL2 criteria increases product security capabilities over the previous, less stringent requirements in SL1. SL1 security capabilities are not intended to protect against malicious or deliberate security violations. ISA’s report describes how SL2 offers stronger measures to mitigate against attack vectors that are more prevalent today.

“We are seeing an increasing number of intentional cyberattacks against industrial automation and control systems,” said Andre Ristaino, managing director, ISA conformity assessment programs. “Commercial off the shelf products are being subjected to these targeted attacks. The ISA/IEC 62443 series is the leading set of international cybersecurity standards for the operational technology (OT) landscape, and security level 2 capabilities present the ideal minimum guidelines for protecting COTS products. This new paper provides a great briefing on the security capabilities necessary to meet ISA/IEC 62443 SL2.”

The report includes a review of how SL2 criteria can increase the resiliency of COTS components in a cybersecurity incident, as well as that of any system into which the components are integrated. SL2 criteria require that a component:

Uniquely distinguish between individual human or non-human users interacting with the component, increasing the ability to trace the source for user activity that may constitute an attack

Authenticate itself to an overall system into which it has been integrated, raising the level of trust between the system and component

Provide the ability to tailor human role definitions to reflect site operations, limiting unnecessary insider access

Close inactive communication sessions that remain open as potential attack vectors

Verify the source of communications to the component, limiting sources for network attacks

Protect test interfaces from use as potential attack vectors

Increase assurance that code in execution, including mobile code, updates and upgrades came from a trusted source and has not been subject to tampering.

The Case for ISA/IEC 62443 Security Level 2 as a Minimum for COTS Components” is available for download on the ISASecure and ISAGCA websites.

About ISASecure
Founded in 2007 by the International Society of Automation (ISA), the ISASecure program’s mission is to provide the highest level of assurance possible for the cybersecurity of automation and control systems.
Founders and key supporters of ISASecure® include: BP, Chevron, ExxonMobil, Saudi Aramco, Shell, YPF, GSK, Honeywell, Johnson Controls, Schneider Electric, Trane, Yokogawa, Carrier, Siemens, YPF, Amazon Web Services, exida, TUV Rheinland, CSSC, FM Approvals, Synopsys, Trust CB, UL Solutions, SecurityGate, Interstates, BYHON, TUV SUD, ITRI and Bureau Veritas.

The Program’s ISASecure™ designation signifies to the marketplace that automation and control system products conform to industry-consensus cybersecurity standards. The ISASecure trademark provides confidence to users of ISASecure-certified products and systems and creates product differentiation for suppliers who conform to the ISASecure specifications. Learn more at www.isasecure.org.

About ISAGCA
The ISA Global Cybersecurity Alliance (ISAGCA) is a collaborative forum to advance OT cybersecurity awareness, education, readiness, standardization, and knowledge sharing. ISAGCA is made up of 50+ member companies and industry groups, representing more than $1.5 trillion in aggregate revenue across more than 2,400 combined worldwide locations. Automation and cybersecurity provider members serve 31 different industries, underscoring the broad applicability of the ISA/IEC 62443 series of standards. Learn more at www.isagca.org.

About ISA
The International Society of Automation (ISA) is a non-profit professional association founded in 1945 to create a better world through automation. ISA’s mission is to empower the global automation community through standards and knowledge sharing. ISA develops widely used global standards and conformity assessment programs; certifies professionals; provides education and training; publishes books and technical articles; hosts conferences and exhibits; and provides networking and career development programs for its members and customers around the world. Learn more at www.isa.org.

View original content to download multimedia:https://www.prnewswire.com/news-releases/commercial-off-the-shelf-components-need-elevated-cybersecurity-protection-isas-new-report-302204462.html

SOURCE The International Society of Automation

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Technology

Achieve named to Az Business Magazine’s ’10 Best Places for Women to Work in Arizona’ for 2026

Published

on

By

Recognition highlights the company’s commitment to creating opportunities for women to grow and lead

SAN MATEO, Calif., July 23, 2026 /PRNewswire/ — Achieve, the leader in digital personal finance, has been named among the 2026 10 Best Places for Women to Work in Arizona by Az Business Magazine. The annual recognition highlights organizations that create supportive environments where women can thrive professionally, advance into leadership roles and build meaningful careers.

The honor reflects Achieve’s ongoing investment in workplace programs that support employee growth, flexibility, leadership development and career advancement. Women serve in leadership roles across the organization and play a critical role in shaping the company’s culture, products and long-term success.

“Creating an environment where women can grow, lead and build rewarding careers is central to who we are as a company,” said Achieve Senior Vice President of Human Resources Heather Marcom. “We’re honored to be recognized among Arizona’s top workplaces for women and remain committed to fostering a culture where employees feel supported, valued and empowered to do their best work.”

Achieve maintains a major corporate presence in the Phoenix area, where hundreds of employees contribute to the company’s mission of helping people move from struggling to thriving financially. The company supports employees through leadership development opportunities, employee resource groups, mentorship and learning programs designed to help team members reach their professional goals.

The recognition adds to a growing list of workplace honors for Achieve. Earlier this year, the company was named among the Top 3 Best Workplaces for LGBTQ+ Employees by BestCompaniesAZ and was also recognized by AZ Big Media as one of Arizona’s Most Admired Companies.

“Strong organizations are built by diverse perspectives and inclusive leadership,” said Marcom. “We’re proud of the talented women across Achieve who help drive our business forward every day and grateful for the impact they make on our employees, customers and communities.”

The 10 Best Places for Women to Work in Arizona list is determined through a public voting process conducted by AZ Big Media and published in Az Business magazine.

About Achieve

Achieve, THE digital personal finance company, helps everyday people get on, and stay on, the path to a better financial future. Achieve pairs proprietary data and analytics with personalized support to offer personal loanshome equity loans, debt relief and debt consolidation, along with financial tips and education and free mobile apps: Achieve MoLO® (Money Left Over) and Achieve GOOD™ (Get Out Of Debt). Achieve is frequently recognized for providing top-rated customer experience and satisfaction by both consumers and leading personal finance review platforms and has 2,200 dedicated teammates across the country, with hubs in Arizona, California, Florida and Texas.

Achieve refers to the global organization and may denote one or more affiliates of Achieve Company, including Achieve.com, Equal Housing Opportunity (NMLS ID #138464); Achieve Home Loans, Equal Housing Opportunity (NMLS ID #1810501); Achieve Personal Loans (NMLS ID #227977); Freedom Debt Relief (NMLS ID # 1248929); and Freedom Financial Asset Management (CRD #170229).

Contacts

Austin Kilgore
akilgore@achieve.com
214-908-5097

Elina Tarkazikis
etarkazikis@achieve.com

View original content to download multimedia:https://www.prnewswire.com/news-releases/achieve-named-to-az-business-magazines-10-best-places-for-women-to-work-in-arizona-for-2026-302833720.html

SOURCE Achieve

Continue Reading

Technology

National Press Club Statement on the withdrawal of subpoenas targeting New York Times journalists

Published

on

By

WASHINGTON, July 23, 2026 /PRNewswire/ — National Press Club President Mark Schoeff Jr. released the following statement:

“The Justice Department’s decision to withdraw subpoenas targeting journalists at The New York Times is a welcome and necessary step to protect the public’s constitutional right to an independent press.

These subpoenas should never have been issued in the first place. Compelling journalists to reveal confidential sources sends a chilling message to those who seek to inform the public and threatens the very foundation of press freedom.

Every American should understand what is at stake when the government turns its investigative powers on journalists. It is not routine. It is an extraordinary intrusion that strikes at the heart of the First Amendment and your right to information about your government.

The greatest danger was not the subpoenas themselves, but the message they sent: That sources could be exposed, that whistleblowers should remain silent, and that the American people might know less about the actions of their own government.

A strong democracy depends on a press that can report freely, hold power to account, and inform the public without intimidation.

We urge continued vigilance to ensure that journalists can do their jobs without interference and that protections for source confidentiality are upheld consistently.”

About the National Press Club

Founded in 1908, the National Press Club is the world’s leading professional organization for journalists and a leading voice for press freedom in the U.S. and worldwide.

Contact: Beth Francesco, Executive Director of the National Press Club Journalism Institute, media@press.org

View original content to download multimedia:https://www.prnewswire.com/news-releases/national-press-club-statement-on-the-withdrawal-of-subpoenas-targeting-new-york-times-journalists-302833722.html

SOURCE National Press Club

Continue Reading

Technology

NCC Launches NCC Connect™ to Put Credit, Fraud, and Compliance Inside the CRM Dealers Already Use

Published

on

By

A powerful new solution that embeds credit access, fraud detection, and compliance directly into the dealership’s existing CRM — removing the system-switching that slows deals and exposes dealers to risk.

AUSTIN, Texas, July 23, 2026 /PRNewswire-PRWeb/ — NCC, a leading provider of credit and compliance solutions for automotive dealerships, today announced the launch of NCC Connect™, a powerful platform that runs credit, fraud, and compliance from inside the CRM a dealership already uses — without friction or duplicate entry.

“Dealers don’t need another system to log into,” said Brian Skutta, President and CEO of NCC. “They need the tools they already have to work better together. NCC Connect puts credit, fraud detection, and compliance right where the team already works — inside the CRM they use every day.”

“Dealers don’t need another system to log into,” said Brian Skutta, President and CEO of NCC. “They need the tools they already have to work better together. NCC Connect puts credit, fraud detection, and compliance right where the team already works — inside the CRM they use every day.”

As deals grow more complex and fraud more sophisticated, dealers are juggling more disconnected systems than ever — the CRM, the credit system, the compliance tools — switching between them on every transaction. Each switch breaks momentum, invites a skipped step, and slows the path to funding. NCC Connect meets this moment with a single, seamless solution that keeps the full credit, fraud, and compliance engine right where the team already works.

Why NCC Connect Matters Right Now

Dealers lose time and margin switching between the CRM, credit, and compliance systems on every dealAuto lending fraud continues to climb, with industry fraud exposure reaching a record $10.4 billion in 2025, according to Point Predictive’s 2026 Auto Lending Fraud Trends ReportState compliance is tightening, with laws like California’s SB 766 (CARS Act) taking effect October 1, 2026Every disconnected step is another chance for an error, a delay, or a deal that stalls before funding

These pressures are forcing dealers to consolidate, and NCC Connect delivers the edge.

Product Highlights:

Inside the CRM — Soft-pull and hard credit access from all three major bureaus — Experian, TransUnion, and Equifax — without leaving the workflowFraud & Identity Built In — Identity verification and synthetic fraud detection delivered within the credit pull, flagging Red Flag conditions before the deal moves to fundingCompliance on Autopilot — FCRA and FTC controls with automatic, audit-ready documentation stored in the deal record99.99% Uptime — The industry’s highest, so the platform is there when a deal is on the desk

NCC Connect runs soft-pull pre-qualifications and hard credit pulls from any bureau or score model without leaving the CRM, while customer data stays inside the existing CRM structure. Every credit, fraud, and compliance result is captured on the deal record — giving dealers a single, audit-ready source of truth and a faster, cleaner path to funding.

NCC Connect extends the same powerful, credit-first engine behind NCC’s Complete Credit™ platform into the CRM where dealers already work. For dealers, that means more approvals, stronger fraud protection, and faster funding, without changing how the team works.

Learn more about NCC Connect at https://nccdirect.com/ncc-connect/

About NCC:

With offices in Austin, TX, Bettendorf, IA, and Las Vegas, NV, NCC has been a trusted partner in credit-driven retailing for automotive dealerships for nearly three decades. We combine a powerful credit and compliance engine with a fully integrated Desking platform to drive maximum profitability. Our focus on innovation, user-friendly products, and dependable systems — supported by a dedicated account management team — has solidified our reputation as a leader in the industry. www.nccdirect.com

Media Contact

Holly Smith, NCC, 1 8285732722, hsmith@nccdirect.com, https://nccdirect.com/

View original content:https://www.prweb.com/releases/ncc-launches-ncc-connect-to-put-credit-fraud-and-compliance-inside-the-crm-dealers-already-use-302832007.html

SOURCE NCC

Continue Reading

Trending