Incident Response & Recovery

At 1898 & Co., we take a proactive approach to cyber resiliency. Still, we understand incidents can occur. When they do, it’s critical to activate an incident response and recovery plan tailored to your assets and broader landscape. We can help clients build, mature, practice and execute plans to swiftly contain a breach, minimize potential damage and impact, and increase readiness for the future.



HOW WE HELP

Our specialists bring significant industry experience to the program development process for cybersecurity incident response. The result is a practical readiness and response playbook that systematically establishes procedures and documentation through strategic measures. Our team:

  • Examines an organization to develop incident response frameworks — plans, playbooks and training — that focus on containing and minimizing risk and are tailored to the unique requirements of the targeted organization’s production environment.
  • Knows that cybersecurity awareness and preparedness programs are a critical component of building a resilient organization.
  • Steps in at any point in the emergency to assess, contain and manage the response.

OUR APPROACH

When an incident occurs, you need to be able to rely on professionals with a deep understanding of automation environments, control systems and cybersecurity. Our consultants bring on-the-ground experience to the response efforts, having worked in and operated industrial facilities. Our specialists are highly experienced in OT and cybersecurity, enabling assistance at any juncture, from plan development to incident response. Our specialists:

  • Work across both IT and OT, allowing the 1898 & Co. team to bring specialized knowledge and experience to any issue and with a level of comprehension that traditional cyberteams would not have.
  • Belong to a small, niche pool of professionals with experience in OT cybersecurity and critical infrastructure.
  • Have extensive certifications in the field of cybersecurity, including CCISO, CISSP, CEH, GICSP, CPP, GRID and CCE/CIE.
  • Come from within the industrial and automation industries and sectors, providing a specialized perspective.


Insights & News
[{id=102331302510, createdAt=1676316900775, updatedAt=1679930768223, name='1898 & Co. Launches Managed Threat Protection & Response Services to Improve Cybersecurity Resiliency for Critical Infrastructure', 16='{type=list, value=[{id=88916097680, name='Managed Threat Protection & Response'}, {id=88922020963, name='Managed Security Services'}, {id=88922020969, name='Incident Response & Recovery'}]}', 1='{type=string, value=1898 & Co. Launches Managed Threat Protection & Response Services to Improve Cybersecurity Resiliency for Critical Infrastructure}', 2='{type=image, value=Image{width=1920,height=700,url='https://477837.fs1.hubspotusercontent-na1.net/hubfs/477837/1898_Web_Assets/2022%20Site%20Assets/1898-Generic-Hero-Overlay.jpg',altText='',fileId=null}}', 18='{type=number, value=0}', 3='{type=number, value=1676419200000}', 19='{type=number, value=0}', 4='{type=string, value=

KANSAS CITY, Missouri, and MIAMI (S4X23) —  In an effort to improve cybersecurity resiliency for critical infrastructure environments, 1898 & Co. is launching Managed Threat Protection & Response, a new proactive threat hunting and response capability to its existing Managed Security Services (MSS) solution. 1898 & Co. is the business, technology and cybersecurity consulting arm of Burns & McDonnell, a 100% employee-owned engineering, construction and architecture firm.

Since the beginning of 2020, cyberattacks aimed at sectors that are critical to society have increased by more than 400%. Of those attacks, 45% were ransomware attacks that targeted or impacted industrial control systems. Left undetected, cyber sabotage within critical infrastructure environments like the power grid and water systems result in service disruptions, infrastructure damage and negative impacts to the environment and to public health and safety.

Unlike other firms that focus mostly on information technology cybersecurity, 1898 & Co. is one of the first firms to apply their operational technology (OT) and industrial control systems (ICS) cybersecurity specialization into managed security services.  

“Managing security for ICS and OT is a rare capability for a reason: Critical infrastructure is a highly complex environment,” says Chris Underwood, vice president and general manager of 1898 & Co. “At 1898 & Co., our consultants live and breathe critical infrastructure. We’ve worked in the industry and for the industry, so we have a deep understanding of its challenges.”

1898 & Co.’s Managed Threat Protection & Response service, through intelligence enrichment and insights gained from collective defense information sharing, leverages a variety of indicators and tactics, techniques and procedures to provide 24x7 threat monitoring and detection. 1898 & Co.’s service also proactively hunts for possible intrusions within clients’ OT and ICS.

Industry analysts note that incidents in these environments are inevitable, however damage and fallout can be lessened through rapid detection and response capabilities. Additionally, regulatory measures continue to evolve in response to the heightened threats posed to critical infrastructure companies. For example, Federal Energy Regulatory Commission recently directed the North American Electric Reliability Corporation to develop reliability standards requiring Internal Network Security Monitoring standards. These new standards require power utilities to implement monitoring and detection and identify anomalous activity by way of regulatory mandate, a significant development for that industry.

“Cyber-related risk remains a top concern and consideration for every critical infrastructure company,” says Matt Morris, managing director of Security & Risk Consulting, 1898 & Co. “We continue to see increasing digitization, threats and corresponding regulation. Given the increasing talent shortage, keeping critical processes operational is getting more and more complicated. As specialists who focus on critical infrastructure cybersecurity, we uniquely understand how these environments are designed, built and operated, and we have an unmatched team of engineers and consultants at our back.”

The new capability and MSS services from 1898 & Co. are now available and uniquely leverages multiple on-premise monitoring and detection partner platforms, including Dragos, Claroty and Armis, with a limited number of platforms expected to be added over time. The MSS provides active response via CrowdStrike Falcon platform, an industry-leading security solution. The MSS service also provides the additional value of OT asset discovery, inventory and reporting to include vulnerabilities and network topology mapping.

1898 & Co. has also collaborated with various information sharing and analysis centers (ISACs) to access various industry-specific indicators of compromise and tactics, techniques, and procedures. Initial affiliates include the E-ISAC (electric utilities) and WaterISAC (water utilities), with additional ISACs on the roadmap. 
This summer, 1898 & Co. will launch an upgraded, next generation security operations center (SOC) for advanced protection and response.

About 1898 & Co.

1898 & Co. is a global business and technology consultancy that brings together a unique blend of engineers and industry leaders to deliver strategic business insights and solutions for critical infrastructure industries. We partner with clients to plan, invest, secure and optimize critical assets for a successful, sustainable future. For more information, visit 1898andCo.com.

About Burns & McDonnell

Burns & McDonnell is a family of companies bringing together an unmatched team of more than 13,500 engineers, construction and craft professionals, architects, planners, technologists, and scientists to design and build our critical infrastructure. With an integrated construction and design mindset, we offer full-service capabilities. Founded in 1898 and working from 70 offices globally, Burns & McDonnell is 100% employee-owned. Learn how we are designed to build.

}', 9='{type=string, value=
  1. 1898 & Co. Logo
  2. Release - 1898 & Co. Launches Managed Threat Protection & Response Services to Improve Cybersecurity Resiliency for Critical Infrastructure 
  3. Video Download
  4. Contact Photo - Chris Underwood
  5. Contact Photo - Matt Morris
  6. Services - 1898 & Co. Managed Security Services
  7. Corporate Profile
}', 10='{type=list, value=[{id=2, name='1898 & Co.', order=1, label='1898 & Co.'}]}', 12='{type=list, value=[{id=61920833109, name='Mary Young'}]}', 14='{type=string, value=https://1898andco.burnsmcd.com/news/managed-threat-protection-response-services-for-cyber-resiliency}', 15='{type=list, value=[{id=63892293302, name='Oil, Gas & Chemicals'}, {id=63892293303, name='Manufacturing & Industrial'}, {id=63935291172, name='Government & Military'}, {id=63936101196, name='Power'}, {id=63936102226, name='Telecommunications'}, {id=63936102227, name='Transportation'}, {id=63936103256, name='Water'}, {id=93535460512, name='Ports & Maritime'}]}'}]

Load More

$10.5T

in cybercrime costs expected by 2025*

$4.24M

average business cost from a breach**

* Source: https://cybersecurityventures.com/top-5-cybersecurity-facts-figures-predictions-and-statistics-for-2021-to-2025/
** Source: https://www.ibm.com/reports/data-breach