Module Code - Title:
CE5031
-
OT/ICS NETWORKS AND PROTOCOLS
Year Last Offered:
2025/6
Hours Per Week:
Grading Type:
N
Prerequisite Modules:
Rationale and Purpose of the Module:
The aim of the module is to provide knowledge, skills and abilities related to communication networks and protocols used in Operational Technology (OT), and the interconnections between them in Industrial Control Systems (ICS)/Supervisory Control and Data Acquisition (SCADA) systems. The module is aimed at helping students to better understand them and be prepared to integrate the systems into IT systems.
This module was developed under the CyberSkills HCI Pillar 3 Project. Please refer to the consortium agreement for ownership.
Syllabus:
• Industrial control systems
ICS architecture - PLC, HMI, SCADA, DCS, SIS. ICS functions - view, monitor and control. Purdue Model for ICS. ICS zones and levels, enterprise, industrial demilitarized, and industrial zones.
• ICS Media and Protocols
Regular IT Network Protocols -HTTP, HTTPS, DNS, SMTP, FTP, SNMP, DHCP etc. Process Automation Protocols - Profibus, DeviceNet, ControlNet, Modbus, CIP. ICS Protocols - OLE for Process Control (OPC). OPC Unified Architecture. Building Automation Protocols - BACnet, C-Bus, Modbus, Zigbee, Z-Wave. Communication protocols mapped to different zones. AMI and the smart grid. Industrial Protocol Simulators for Modbus, DNP, OPC etc. Ethernet/IP and CIP. Availability and Resilience - Resilient Ethernet Protocol, Media Redundancy Protocol.
• ICS Network Topologies & Services
Common Topologies - star, bus, mesh, wireless mesh, tree, ring, dual homing. Network Segmentation, VLANs, physical and logical segmentation. Network services - DNS, DHCP, IAM etc. Network tools - wire shark, SIEM
• ICS Network Configuration
Modbus Serial Slave and master. PROFINET - device roles, configuration, troubleshooting. Ethernet/Industrial Protocol (IP).
• Current state of secure implementations of the OT network space
Secure extensions of ProfiNet, Ethercat etc.
Learning Outcomes:
Cognitive (Knowledge, Understanding, Application, Analysis, Evaluation, Synthesis)
On successful completion of this module, students will be able to:
LO1: Evaluate network architectures and protocols used for Industrial Control Systems (ICS)
LO2: Evaluate and assess the interdependencies that can be found in ICS/Supervisory Control and Data Acquisition (SCADA) networks.
LO3: Recommend the most suitable standard industrial communication protocol for an application.
LO4: Demonstrate an understanding of good practices in ICS networking.
Affective (Attitudes and Values)
On successful completion of this module, students will be able to:
LO5: Value and accept the importance of good practices that promote security in Industrial Control Systems (ICS)/Supervisory Control and Data Acquisition (SCADA) systems.
Psychomotor (Physical Skills)
On successful completion of this module, students will be able to:
How the Module will be Taught and what will be the Learning Experiences of the Students:
This module will be delivered online in a blended fashion to industry-based learners and will be scheduled in the evening time by Cyberskills. The lecturing staff will be provided by the HEA HCI Pillar 3 initiative - Cyberskills.
By following recent developments with OT/ICS networks and their protocols we aim to ensure that students of this module are knowledgeable, proactive, creative and articulate in relation to Applying and Managing (Secure) networking services and devices for the OT Domain.
The content of the module has been determined by aligning the module syllabus with the KSAs (Knowledge, Skills and Abilities) specified in the NIST/NICE framework for the Network Services work Role - Network Operations Specialist (OM-NET-001). The module content was discussed and designed with industry panel input from Dell and ADI.
Research Findings Incorporated in to the Syllabus (If Relevant):
Prime Texts:
Pascal Ackerman (2017)
Industrial Cybersecurity: Efficiently secure critical infrastructure systems
, Packt Publishing
Eric D. Knapp (Author), Joel Thomas Langill (Contributor). (2014)
Industrial Network Security: Securing Critical Infrastructure Networks for Smart Grid, SCADA, and Other Industrial Control Systems
, Syngress Media, U.S.
Other Relevant Texts:
Programme(s) in which this Module is Offered:
Semester(s) Module is Offered:
Autumn
Module Leader:
muzaffar.rao@ul.ie