As our PLCnext Store continues to grow, it’s easy to lose track of our many automation partners. We’ve taken this as an opportunity to spotlight them. Who are they? What do they offer, and how can our users benefit?
Instead of writing a long article, we thought, who better to answer these questions than the partners themselves? That’s why we asked them to answer a few questions for you.
But enough talk, let’s get down to business. swIDch? The stage is yours!
Getting to know swIDch: The basics
Q1: Can you give us a brief overview of swIDch and your technologies?
swIDch: “swIDch is a cybersecurity company based in London that revolutionizes how authentication is handled. It effectively addresses the challenges faced by Industrial Control Systems (ICS) and Operational Technology (OT) environments. With OTAC (One-Time Authentication Code), the world’s first one-way dynamic authentication, swIDch delivers high-security, low-resource authentication. OTAC can be deployed in various modes, offering passwordless multi-factor authentication (MFA) without network dependency.
Unlike traditional security solutions that add complexity and user friction, OTAC streamlines the login process. Users simply identify and authenticate with a single step, eliminating the need to remember usernames or passwords. Here’s what it means for your business:
- Better security: Keeps hackers out and protects your data.
- User-Friendly: Makes the login process quick and painless for employees.
- Cost-Effective: No need for expensive new hardware or major upgrades.
- Compliance: Meets top cybersecurity standards, so you’re always a step ahead.
OTAC is a dynamic, randomized, one-time authentication code generated on-demand, locally by the user without needing any network that enables identification and authentication simultaneously in a single step.”
Q2: What was the motivation behind the creation of swIDch?
swIDch: “The company was founded with a mission to eliminate the dependency on static information like usernames, passwords, API keys, and PINs for authentication. Many existing technologies are designed for IT environments and are unsuitable for OT due to their reliance on network connectivity or token exchanges. Our OTAC solution specifically addresses the unique challenges in OT, providing a lightweight, easy-to-deploy system that maintains both usability and security.”
Collaboration with PLCnext Technology
Q3: How did the partnership between swIDch and PLCnext Technology come about?
swIDch: “We learned about PLCnext Technology at SPS in 2022. From there we were introduced to the PLCnext Technology team who helped us understand the ecosystem, the technical details and the value proposition to benefit each other.”
Q4: What advantages do you see in integrating your solutions into the PLCnext Store?
swIDch: “The biggest advantage of the PLCnext Technology framework is the ease of deployment for end customers. It allows our solution to be plug-n-play on PLCnext Control and other devices. Customers can download our app from the PLCnext Store and start securing their devices with OTAC MFA from day one.
The PLCnext Technology Ecosystem also allows us to support multiple devices on different firmware versions without having to re-write our software for each individual device. This means we can bring updates and new features to the end user much quicker.”
swIDch’s role in cybersecurity
Q5: How does swIDch contribute to improving cybersecurity?
swIDch: “Some of the challenges we hear from customers around authentication on their OT device are:
- Use of static username and password
- Password sharing, default passwords, password retention and recycle
- Current 2FA and MFA solutions designed for IT and not appropriate for OT environments
- Additional layers of security sometimes compromise user experience, slow down authentication, and introduce more points of failure and new risks
swIDch enhances the cybersecurity of PLCs by addressing the above vulnerabilities and improving access control. Here’s how:
- Eliminates default passwords: swIDch’s OTAC solution replaces static passwords with dynamic, one-time codes, reducing the risk of unauthorized access.
- Enhanced authentication: By providing a unique, one-time code for each login, swIDch ensures that only authorized users can access the PLCs.
- Ease of use: The end user no longer has to remember usernames and passwords. They can quickly provide the OTAC generated on their trusted device such as a smartphone or smartcard to gain access.
- Compliance with standards: swIDch’s solutions align with key cybersecurity frameworks, helping organizations meet regulatory requirements and improve their overall security posture.
By implementing swIDch’s OTAC technology, businesses can significantly enhance the security of their PLC devices, protecting critical industrial systems from cyber threats.”
Q6: How does your technology differ from other solutions on the market?
swIDch: “Most authentication solutions are designed for the IT environment and rely on a reliable network connection. Our solution specifically caters to OT environments where the user needs quick and secure access without compromising on security.
- One-time authentication codes: Unlike traditional methods that rely on static passwords or bi-directional token exchanges, swIDch’s OTAC generates a unique, one-time code for each login, enhancing security.
- Uni-directional token: swIDch’s technology uses a unidirectional dynamic token, which means it doesn’t require network connectivity between clients and servers, reducing vulnerabilities.
- Lightweight and easy to deploy: Other solutions such as PKI or SAML/OAuth require complex infrastructure to be deployed, the OTAC solution is designed to be simple to implement without requiring extensive hardware upgrades, making it cost-effective and efficient.”
swIDch: “Unlike other technologies in the market, OTAC addresses a wide range of use cases.”
Real-world impact
Q7: Can you share some success stories or use cases where your solutions have made a significant difference?
swIDch: “Our OTAC has many applications outside of OT such as in IoT devices and the Finance sector. Most of our customers have been in the finance sector where our solution is deployed directly on the EMV chip of the payment card. This allows banks to securely verify user’s identity for authentication and transactional approvals.
In the OT sector, swIDch has conducted successful proof-of-concept (PoC) tests with several global PLC manufacturers. One of these manufacturers is currently developing a Minimum Viable Product (MVP) incorporating OTAC technology. This success has positioned swIDch as a leader in advanced user authentication for PLCs, paving the way for further adoption in the industry.”
Q8: How have your customers benefited from implementing your solutions?
swIDch: “Customers who have implemented swIDch’s OTAC solution have experienced several significant benefits:
- Enhanced security: By replacing static passwords with dynamic, one-time codes, customers have seen a substantial reduction in the risk of unauthorized access and cyber-attacks.
- Simplified authentication: The single-step authentication process has made it easier for employees to access systems, improving overall efficiency and user experience.
- Cost savings: Since OTAC technology doesn’t require extensive hardware upgrades or network changes, customers have saved on implementation costs.
- Compliance: Aligning with key cybersecurity standards, customers have been able to meet regulatory requirements more easily, avoiding potential fines and enhancing their security posture.”
“In short, swIDch makes your business safer and more efficient, saving you time and money while keeping you compliant with the latest regulations.”
Looking ahead: The future of cybersecurity
Q9: You as a security expert: How do you see the cybersecurity landscape evolving over the next five years?
swIDch: “The future of cybersecurity lies in bridging the divide between IT and OT. One of the major challenges in the OT sector today is the fragmented approach to Identity and Access Management (IAM). While IT has made significant strides with seamless user hygiene practices, least privilege models, and identity governance through interoperable standards, OT remains siloed with proprietary systems.
Looking ahead, we envision a landscape where OT vendors collaborate more openly, adopting principles from IT to create universal standards for IAM. This shift will streamline access management, reduce manual interventions, and enhance security.
In the next five years, we will witness a convergence of IT and OT, where both domains learn from each other. IT’s advanced IAM solutions will gradually be adopted into OT environments, driving automation and efficiency. This evolution will not only bolster cybersecurity but also pave the way for a more unified and resilient digital ecosystem.”
Can’t get enough?
Discover our partnership with swIDch
Curious about our collaboration with swIDch or want to learn more about the company? Click here to explore our partner page and get all the details.
Dive into swIDch’s OTAC technology
Ready to delve deeper into swIDch’s OTAC Technology? Click here to visit our PLCnext Store and find out more.