Skip to content

Securing critical infrastructure: a root-of-trust approach

20 May 20262 min read
Guest Insights
Securing critical infrastructure: a root-of-trust approach

Arno Selvini

EMEA Marketing, Yubico

For global entities managing critical infrastructure, the security of digital identities is no longer a peripheral concern—it is a fundamental requirement for operational safety. Schneider Electric, a leader in digital transformation and energy management, operates in environments where traditional cybersecurity often falls short: the factory floor and the isolated control room.

The "Air-Gap" Authentication Challenge In critical infrastructure, many Supervisory Control and Data Acquisition (SCADA) systems operate in air-gapped or highly regulated environments. In these zones, mobile phone-based Multi-Factor Authentication (MFA) is often impossible due to a lack of cellular connectivity or strict "no-device" policies.

To bridge this gap, Schneider Electric moved toward hardware-backed, phishing-resistant credentials. By implementing physical security keys, they established a "touch-and-go" authentication workflow that functions entirely offline. This move was not just for convenience; it was a strategic requirement to meet the IEC SL2 security standards, providing a clear path toward the even more rigorous SL3 requirements in the future.

Hardening the global supply chain

Beyond the operator login, the integrity of the supply chain itself remains a top-tier risk. To mitigate the threat of counterfeit components and ensure device authenticity, Schneider Electric integrated Hardware Security Modules (HSMs) directly into their manufacturing processes.

By utilizing these compact HSMs, the company can securely manage encryption keys at the "edge" of production. This creates a secure vault for digital identities during the manufacturing stage, ensuring that the root of trust is established the moment a product is created. This dual-layered approach—securing both the human operator and the manufactured device—creates a comprehensive defense-in-depth strategy.

Looking ahead

As the threat landscape for industrial control systems (ICS) evolves, the shift toward hardware-backed security represents an industry-wide trend toward "Secure by Design" principles. For infrastructure providers, the goal is simple: ensure that even if the network is compromised, the identity remains Phishing-resistant.

For a detailed look at the technical architecture and compliance milestones of this project, read the full Schneider Electric reference customer study.