Vertiv Holdings Co.

09/06/2024 | Press release | Distributed by Public on 09/05/2024 22:44

Secure your IT infrastructure with Vertiv rPDUs, featuring UL2900-1 cybersecurity certified intelligence

Cyber adversaries are becoming increasingly sophisticated, leveraging AI to drive new risks in our digital ecosystem. As they harness the power of AI for malicious purposes, the threat landscape evolves, making traditional security measures less effective. The recent Check Point Research report is a testament to this trend, revealing a 30% increase in cyber attacks in 2024, with an average of 1,636 weekly attacks per organization. This surge in cyber threats highlights the urgent need for advanced cybersecurity strategies, which are crucial for protecting rack power distribution unit (rPDU) systems that must keep pace with AI-powered attacks.

In the face of AI-driven cyber threats, it's clear that data centers are not just convenient but a lifeline. They hold vast amounts of sensitive data, making them attractive targets to cybercriminals. To protect these vital systems, strong security measures are essential to safeguard your IT equipment and enable uninterrupted operations. Implementing robust cybersecurity practices adhering to rigorous standards, like the UL-2900-1 certification, is crucial to avoiding evolving threats and maintaining the reliability and integrity of these critical infrastructures.

Figure 1. Top sectors targeted by cyber attacks
Source: Statista 2024 research

What is the UL-2900-1 cybersecurity certification?

The UL2900-1 cybersecurity certification encompasses a series of standards published by UL, specifically targeting software cybersecurity requirements. UL, formerly known as Underwriters Laboratories, is a trusted third-party entity that rigorously tests products to protect against cyber vulnerabilities. This certification involves comprehensive testing and evaluation to identify and mitigate risks, providing robust protection for network-connected products.

As products become more interconnected, their vulnerability to cyberattacks increases, making the UL 2900-1 standard even more vital. According to a 2024 report, "22% of organizations have experienced a serious or business-disrupting IoT security incident in the past 12 months." Each connected device represents a potential attack point for cybercriminals, underscoring the need for proactive security measures like UL 2900-1 certification to safeguard data centers and business operations.

Understanding Rack Power Distribution Units (rPDUs)

Rack Power Distribution Units (rPDUs) are crucial for distributing power to IT equipment in data centers. They do not generate power but channel it from an upstream Power Distribution Unit (PDU), often called a floor PDU. In normal operations, the floor PDU distributes power from the utility, and during outages, a UPS provides interim power until a generator takes over. The rPDU, connected downstream from the floor PDU, delivers power to individual racks and cabinets, which is vital in ensuring a consistent power supply.

rPDUs are designed to handle high power densities and elevated temperatures. They come with remote monitoring and management features, outlet control, and upgradeability without interrupting power. As data centers evolve to support higher rack densities and power demands, the role of rPDUs becomes increasingly important. They are essential for maintaining uptime and efficiency in data centers, making their security and reliability critical for the overall success of data center operations.

Learn more:
What type of Rack PDU is right for your data center?

At first glance, choosing a Rack Power Distribution Unit (rPDU) might seem like it has little bearing on data center performance. However, the enormity of this decision becomes apparent upon closer inspection. The specifications of your rack PDU will have a direct influence on reliability, flexibility and scalability of your data center.

rPDU Security: Why UL2900-1 certification matters

Cybercriminals employ a range of tactics to compromise data centers. Unauthorized access, often facilitated by exploiting system vulnerabilities, enables theft, disruption, and manipulation of sensitive data and operations. Malware, including destructive ransomware, infiltrates systems through various channels to encrypt data, demand ransom, and disrupt critical services. Additionally, Distributed Denial of Service (DDoS) attacks overwhelm data center resources, causing outages and potential financial losses while masking other malicious activities.

Given the complexity and frequency of these threats, securing every data center component, including rPDUs, is imperative. The UL2900-1 certification addresses this need by establishing rigorous cybersecurity standards for network connected equipment such as rPDUs. This certification requires specific security features and standards, such as secure communication protocols, access control mechanisms, and regular security updates, ensuring that certified devices are resilient against cyber threats.

How Vertiv implements UL2900-1 in its rPDUs

Vertiv's rPDUs are designed with a strong foundation in cybersecurity through the Vertiv™ Systematic Evaluation of Complete Underpinning Risk Elements (SECURE) process, which is based on a set of requirements derived from multiple industry security certifications. This comprehensive framework integrates industry best practices at every stage of product development from inception to launch.

Our engineering teams work closely with development teams to continually incorporate the latest security measures into our rPDUs, positioning Vertiv's products at the forefront of cybersecurity technology. Data center operators can seamlessly add Vertiv's rPDUs to their cybersecurity architecture to enhance their overall security posture.

Figure 2. An overview of the Vertiv™ SECURE process

Benefits of using UL2900-1 certified PDUs

Utilizing UL2900-1 certified rPDUs offers several benefits:

  • Enhanced protection against cyber threats: Certified rPDUs are designed to withstand various cyber attacks, reducing the risk of data breaches and other security incidents.
  • Increased trust and confidence: Customers can trust that their power distribution systems are secure and reliable, which is crucial for maintaining uninterrupted business operations.
  • Compliance with industry standards: UL2900-1 certification aligns with industry regulations and standards, simplifying the process for data center managers.
  • Cutting unnecessary costs: By reducing the risk of cyber incidents and downtime, UL2900-1 certified rPDUs help cut potential costs related to security breaches and system failures.

Use cases

The implementation of UL2900-1 certified rPDUs is invaluable across various industries that handle sensitive data and require reliable operations. Government agencies, financial institutions, and telecom companies, all of which manage critical information and depend on uninterrupted service, stand to benefit significantly from this advanced security certification.

Below are more specific segments that can benefit from the UL 2900 family of standards according to UL Solutions :

Manufacturers:

  • Research and Development (R&D): Utilize UL 2900 for early feedback on security processes and product gaps, enhancing cybersecurity during initial development phases.
  • Product Management: Leverage UL 2900 to create a checklist for addressing security issues and establishing a baseline of security measures.
  • Quality Assurance: Integrate UL 2900 into quality management systems (QMS) to incorporate security as a key element of the overall product quality strategy.
  • Software Development: Apply UL 2900 to address specific security targets and vulnerabilities in software design.

Regulators:

  • Use UL 2900 as a consensus standard for establishing safety and effectiveness, and to enhance regulatory throughput by integrating it into accreditation schemes and international regulatory frameworks.

UL2900-1 certification: Fortifying data center cybersecurity

Securing your data center's power distribution infrastructure is crucial in the face of evolving cyber threats. The UL2900-1 certification provides a strong standard for rPDU cybersecurity, enabling these essential components to withstand modern cyberattacks. Prioritizing UL2900-1 certified rPDUs can significantly enhance an organization's overall data center security posture.

Consider the benefits of integrating UL2900-1 certified rPDUs into your infrastructure for improved security. Ask a Vertiv expert about your options and learn how to choose the right rPDU for your specific requirements.