IDENTIFYING SINGLE POINTS OF FAILURE IN SCADA SYSTEMS

Identifying Single Points of Failure in SCADA Systems

Periodically reviewing your SCADA System Architecture is crucial in maintaining a reliable oil or gas pipeline system. No matter how thoroughly the system was designed and implemented, or how carefully change processes have been managed, problems can creep into the system as it is modified and updated, leading to unforeseen consequences. Regularly scheduled SCADA System Architecture reviews can identify and address issues such as single points of failure, gaps in cybersecurity, communication reliability, and performance issues before they interrupt the control center’s ability to monitor and control pipelines, potentially resulting in millions of dollars of savings in incident prevention.

What is SCADA?

SCADA (Supervisory Control and Data Acquisition) is a combination of software and hardware that allows industrial organizations to monitor, gather, and process real-time data, then use that information to control devices such as valves, pumps, and motors to manage industrial processes. SCADA Systems help industrial organizations maintain efficiency, make smarter decisions, and identify potential issues to help mitigate downtime. Historical data from a SCADA system can also be logged in a historical database, allowing personnel to analyze data and identify trends. Modern SCADA systems allow real-time data to be accessed remotely, making it a particularly powerful tool for the pipeline industry, where even a minor issue could result in major losses.

The Possible Pitfalls of Not Performing a SCADA Architecture Review

  • Thinking there is no review needed – SCADA systems are not “set it and forget it.” They are active systems that report real-time information, but as with any complex system, they need to be regularly monitored and maintained to ensure the flow of information remains uninterrupted and reporting is accurate.
  • Excessive data – The SCADA system used to support the Control Center should ideally be focused exclusively on the needs of the Control Center. Acquiring and processing other field data for corporate users outside the Control Center adds unnecessary complexity and frequency of changes to the SCADA system. Collection and processing of field data not required by the Control Center should be handled by other systems, which are not subject to regulations and have the advantage of being cheaper and easier to maintain.
  • Not being proactive – The cost of a review is relatively low. The cost of correcting a system that has failed, on the other hand, can be huge and the extended effects catastrophic.
  • Security issues – Whenever a system has a connection to the outside world, the potential for malicious sabotage performed by disgruntled workers or cyber-attacks from hackers is increased. These connections should be reviewed periodically to ensure proper cybersecurity is in place to protect the SCADA system.
  • System inefficiencies – Bottlenecks, obsolescence, and weak points may inadvertently work their way into a system as it is maintained and augmented over time.

Find a Partner to Periodically Review Your SCADA Architecture

An integrator may only have experience with one or two specific systems, severely limiting the expertise they bring to the table. UTSI, on the other hand, is a vendor-independent consulting and engineering services company that has worked with over 200 customers and resolved a vast number of challenges on projects worldwide. This gives UTSI the background and experience necessary to pinpoint critical issues in an existing SCADA system and then guide our customers to the best solution available. In addition, as an independent consultant, UTSI can dedicate the time, personnel, and resources to quickly and efficiently conduct a SCADA Architecture Review for existing systems without jeopardizing day-to-day operations.

The Process of a UTSI SCADA Architecture Review

UTSI uses a comprehensive 11-step process when performing a SCADA Architecture Review:

    1. Discuss with the client their particular concerns and any specific problems they may have encountered.
    1. Collect drawings for primary, backup, and tertiary control rooms and data centers which house SCADA and communication equipment, including network configuration with IP addresses.
    1. Verify whether drawings are current and accurate — the level of verification will depend upon the client and the state of the drawings. While spot checking may be all that is required, if drawings are poorly done or out of date, a thorough check of all equipment and connections may be warranted.
    1. Determine if the network is properly segmented for cybersecurity and performance issues.
    1. Identify any single points of failure in applications, equipment, and network circuits.
    1. Review communication circuits for adequate capacity and choke points.
    1. Review utilization of communication circuits.
    1. Review network routers and firewalls for reasonable configuration and rules.
    1. Verify the SCADA network is properly isolated from the corporate IT network.
    1. Evaluate the risk of any wireless portions of the SCADA network.
    1. Determine if adequate Management of Change (MOC) procedures are in place and being followed for any changes to the SCADA Architecture.

UTSI is an industrial control system engineering and consulting firm specializing in automated system design, implementation, project engineering, cybersecurity, and remote infrastructure monitoring services for oil and gas pipelines. With over 30 years of experience, UTSI has been responsible for the design and implementation of sophisticated industrial control systems and related technologies for many of the world’s largest energy corporations. To find out more about how UTSI can help with a SCADA Architecture Review, visit https://www.utsi.com/what-we-do/.

Follow us on social media for the latest updates in B2B!

Image

Latest

DXpedition
Icom Powers 3Y0K : Ham Radio’s Most Ambitious DXpedition to Remote Bouvet Island Part 1
July 11, 2025

Bouvet Island sits at the edge of the world. It is frozen, uninhabited, and almost impossible to access. Fewer people have set foot there than in space. That level of remoteness is exactly what makes it so valuable to amateur radio operators. The island ranks tenth on ClubLog’s list of Most Wanted DXCC entities,…

Read More
entrepreneurial success
The Hidden Key to Entrepreneurial Success: Build Momentum Through Personal Branding and Authentic Networking
July 10, 2025

What if the biggest pivot of your career started with a conversation?  In this episode of Professional Quotient, host Jason Winningham welcomes Fanny Dunagan, CEO and Content Strategist of PathLynks, LLC. Fanny shares her journey from high-pressure consulting in Singapore to founding her own media and branding company — and why learning to network…

Read More
Q2 2025
RM Q2 2025 Wrap Up
July 9, 2025

Rogue Marketing continues to lead with intention in a space often driven by noise. Q2 2025 reflected a strategic focus on substance, where each initiative supported long-term brand growth. The team transformed internal recognition efforts into enduring brand assets and refined event strategies through immersive, results-driven experiences. Website launches during the quarter balanced visual…

Read More
amateur radios
Hamvention Spotlight: Emergency Preparedness Led PrepHam Paul to Amateur Radios and a Rising Voice in the Field
July 9, 2025

PrepHam Paul (K5VLP) celebrated his first visit to Dayton Hamvention by marking a major channel milestone. He hosted a giveaway of the  IC-2370B mobile radio from Icom to thank viewers for helping him reach 10,000 subscribers. His passion for emergency preparedness, rooted in his experience as an Eagle Scout and later studies in emergency management,…

Read More