Securing industrial operations in real-time

ZEISS wanted a centrally managed solution to provide deep visibility, real-time monitoring, and advanced threat detection in industrial networks to minimize security risks and downtime.

Resilient by design. Protecting what matters most

ZEISS needed a network communication map to help security teams understand traffic patterns across distributed networks and comply with industry regulations. Collecting data on OT assets was key in building this security program.

Securing the critical assets on industrial networks
Ensuring continuity, resilience, and safety
Comprehensive visibility into industrial assets

Orange Business is there to build a stronger, safer, always-ready industrial environment

Unlocking industrial cybersecurity – real-time protection with centralized control

Seeking a unified, centrally managed solution, the goal was to gain deep visibility, real-time monitoring, and advanced threat protection across industrial networks, minimizing risk and reducing costly downtime.

ZEISS, headquartered in Oberkochen, Germany, is a global technology company focused on the optics, precision mechanics, and optoelectronics industries.

With over 12,500 patents worldwide and 7,500 employees in research and development, innovation and constant transformation are crucial to remain competitive in the long term. For a market leader, securing intellectual property is key.

The manufacturing sector is undergoing a significant transformation, driven by the need for increased security alongside technological integration to streamline operations and create greater Operational Equipment Efficiency. ZEISS is no exception.

It has multiple sites and a complex secure environment with thousands of devices and many different connections. This is a considerable challenge when it comes to understanding traffic patterns and tracking the behaviors of each device, as well as support, maintenance and asset management.

To enhance visibility and strengthen the enterprise’s security posture, a comprehensive and clear map of network communications was required, whether initiated internally or by a third party. This enables security teams to analyze traffic patterns across distributed architectures, ensuring governance and compliance with evolving industry regulations. Additionally, systematically collecting data on OT technology assets forms the foundation for a robust data-driven security program tailored to the needs of the multinational.  

Real-time threat detection to enable effective defense for secure industrial operations

ZEISS chose Orange Business and Orange Cyberdefense as trusted partners for integration because of their expertise, IT/OT sector support, and extensive global footprint, covering all countries often with own local experts, which is unique in that scope. Orange is also the second biggest Managed Security provider in Europe.

ZEISS and Orange selected the Cisco Cyber Vision platform to addres the increasing threat landscape for the business. It has been specifically designed by OT people for industrial organizations to gain full visibility into their industrial networks while operating at the network edge to reduce latency and provide real-time analysis.

With a partnership spanning over 25 years, Orange and Cisco have enormous synergy and experience managing complex office and industrial networks worldwide, which works perfectly in this scenario.

The Orange Business designed solution leverages the unique edge-compute capabilities of the Cisco network devices in the existing managed OT and IT LAN area in a smart manner. It is a great advantage that the SW is seamlessly located very close to the various endpoints and machines for production, facility, and enterprise management. This ensures less additional complexity in providing 24/7 maintenance and clear responsibilities and reduces the number of potential loopholes. Only a very low overhead of meta-data is computed on the switch, causing no additional burden – and therefore potentially high costs – for the existing LAN.

Ensuring continuity resilience and safety and securing what is critical on industrial networks

Cyber Vision eliminates the need for dedicated security appliances and out-of-band networks to send industrial network flows to a central security platform. Protocol analysis, intrusion detection, vulnerability detection, and behavioral analysis are combined to identify potential risks and vulnerabilities.

The Cyber Vision platform discovers and identifies OT assets, including devices, protocols, and communications patterns, providing an overarching view of the industrial network. It passively monitors and analyzes network traffic to identify and understand OT protocols, drawing up a picture of how devices communicate and exchange data.

In addition, the platform provides operational insights for OT and security posture for IT. This insight enables ZEISS to build secure infrastructures, drive regulatory compliance, and enforce security policies to control risks. This ensures continuity, business resilience, and safety.

In combination with Cisco’s Identity Services Engine (ISE), a next-generation identity and access control policy platform, ZEISS is enabled to enforce compliance and provide secure network access to end users and devices.

Cyber Vision, alongside a Cisco Secure Firewall and a Firewall Management Center, allows for segmentation, reducing manual workloads. It also allows for IT/OT collaboration and enables firewall policies in line with industrial OT processes.

Securing the industrial network

The increased integration of IT, cloud, and industrial networks is exposing industrial control systems to even greater threats. ZEISS chose Orange because of their expertise and intense understanding of OT needs and the daily applied security expertise, helping ZEISS to detect the relevant events, providing recommendations and immediate defend if required.

Also, full visibility into its industrial networks and OT security posture allows for segmenting the industrial network where necessary and reinforce cybersecurity policies to reduce the attack surface.

This global presence of Orange ensures consistent support and service delivery across all your operational sites. Orange Business is fully accountable for the solution and fully tests all software updates before deployment, initiating corrections where necessary. 

Comprehensive visibility into industrial assets

Deploying Cisco Cyber Vision, with the support of Orange Business co-managed services, has given ZEISS valuable real-time insights into its industrial assets, processes, and network communications, strengthening security and optimizing operations. At the same time, it has helped to reduce downtime and business disruptions while simplifying compliance and risk management.

Cyber Vision is a powerful solution for smart manufacturing, critical infrastructure, and industrial automation. It is easy to scale up across multiple industrial sites without adding complexity. Following a successful big installation and daily operation for more than one year conducted by Orange Business, ZEISS is now looking to roll out the solution across its sites to provide a unified security strategy across the entire enterprise.

Industrial Insight. Secure Networks. Uninterrupted Operations.

What our customer says about us

Thrasyvoulos Mystiroudis - Head of Network & Connectivity

"Partnering with Cisco and Orange Business, Carl Zeiss bridges the gap between IT and OT security, ensuring operational continuity and business resilience. By deploying Cisco Cyber Vision integrated with Orange Business’ managed services, Carl Zeiss gains comprehensive, real-time visibility into their OT environment, enabling faster detection and mitigation of cyber threats and safeguarding critical manufacturing processes”

We worked with this partner

Cisco and OB: Providing Digital Solutions Since 1994

Partners

Security

+ 7 others

Cisco

certification

934 employee experts

accreditation

60 accreditations

expertise

2743 expertises

Link to Cisco and OB: Providing Digital Solutions Since 1994

Read more stories

IoT helps SARA make its operations smarter, safer, and more economical

The Société Anonyme de la Raffinerie des Antilles (SARA, Antilles Refinery Corporation) is an oil refinery located in Martinique. It produces and distributes fuels and petroleum derivatives for Martinique, Guadeloupe, and French Guiana.

Read more

A global pharmaceutical manufacturer partnered with Orange Business to deploy a modern, future-ready infrastructure supporting growth.

Read more

ZEISS

ZEISS, headquartered in Oberkochen, Germany, is a global technology company focused on the optics and optoelectronics industries, producing products and solutions, such as eyeglasses, camera and cine lenses. ZEISS is represented in more than 50 countries, and has over 46,000 employees.