Automation brings cyber risks to ports, DGMA issues advisory on security
The Directorate General of Maritime Administration (DGMA) has issued a fresh advisory cautioning that the growing reliance of ports on digital technologies and automation has opened new avenues for cyber threats, which could disrupt maritime security and port operations.
Citing the International Ship and Port Facility Security Code, the DGMA noted that modern ports depend heavily on interconnected information technology (IT) and operational technology (OT) systems. This interconnectedness, while improving efficiency, has also created vulnerabilities that could impact the safety, security, and overall functioning of port facilities.
The advisory identified several critical systems that are particularly exposed to cyber risks. These include terminal operating systems, cargo handling infrastructure, vessel traffic management systems, access control mechanisms, surveillance networks, and communication systems. A cyber attack targeting any of these could potentially halt cargo movement, delay vessel berthing, or compromise the physical security of the port.
The DGMA outlined various forms of cyber threats that ports could face, such as unauthorised access, malware infections, ransomware attacks, insecure remote access arrangements, and risks arising from third-party access. The compromise of interconnected systems was also flagged as a major concern, given the complex digital environment of modern ports.
To strengthen cyber resilience, the DGMA has advised port authorities to incorporate cyber security risk assessments into their Port Facility Security Assessment (PFSA). Such assessments are expected to help identify vulnerabilities, potential threat scenarios, and the likely impact of cyber attacks on port security and operational continuity. The mitigation measures identified through this exercise should then be integrated into the Port Facility Security Plan.
In addition, the advisory recommended that ports periodically test their backup and recovery arrangements. This is intended to ensure that port operations can be restored quickly in the event of a cyber incident, thereby reducing downtime and minimising disruption to maritime trade.
Emphasising the importance of preparedness, the DGMA said that Port Facility Security Officers and other personnel responsible for security must possess adequate awareness of cyber attacks. It also called for regular awareness programmes, drills, simulations, and exercises for officers designated to manage cyber security risks. These activities are meant to assess preparedness and improve response capabilities in a controlled environment.
Finally, the advisory urged ports to establish clear procedures for cyber incident reporting, response, containment, and recovery. It said that cyber security measures should be periodically reviewed and updated to keep pace with evolving threats, technological advancements, and operational requirements. The advisory serves as a reminder that as ports become smarter, they must also become more vigilant.