Valmet DNAe Marine Automation Systems

Cybersecure by design

From the beginning, Valmet develops hardware and software in-house, delivering a highly reliable, efficient and inherently cybersecure Valmet DNAe solution built exclusively for marine distributed control systems. It adopts layered defense-in-depth strategies to shield critical vessel automation assets from diverse cyber threats.

Key Marine Cybersecurity Certifications & Compliance

IACS UR E26 Compliance

IACS UR E26 (Vessel Cyber Resilience) – Compliant with the International Association of Classification Societies (IACS) Unified Requirements for vessel-wide cyber resilience, ensuring holistic protection of shipboard systems.

IACS UR E27 Compliance

IACS UR E27 (Cyber Security for Onboard Systems) – Designed to meet IACS UR E27 requirements for cyber security of computer-based systems (CBS) on ships, aligning with global marine OT security mandates.

ISASecure Certified

Compliance Gaps: Fail to satisfy latest maritime cybersecurity rules, IACS UR E26/E27, IEC 62443 and IMO operational requirements.

Secure-by-Design Development

Secure Development – Secure product development methodologies based on IEC 62443-4-1 (SDLA) standard.

Cybersecure system core

Trusted Information Framework (TIF), Role Based Access Control (RBAC), Authentication, Authorization and Audit Trails. 

Secure product development methodologies 

Valmet DNAe follows secure product development methodologies aligned with IEC 62443-4-1 standards. The entire development workflow holds Security Development Lifecycle Assurance (SDLA) certification, ensuring security is embedded into every stage of the marine system lifecycle.

Secure system architecture

Valmet DNAe runs on an IEC 62443-3-3 certified reference network architecture, equipped with firewall segmentation and dedicated DMZ security zones. The system structure is fully developed and tested to isolate shipboard critical equipment from external cyber risks. All designs comply with IEC 62443-3-3, IACS UR E26 and UR E27 to meet unified marine system security requirements and security level standards.

User management and access control

Valmet DNAe supports centralized user management via Active Directory (AD), enabling flexible role-based access control and multi-level authentication. It seamlessly connects shipboard OT and IT security infrastructures to unify access management across all onboard systems, in line with IACS UR E27 access control provisions.

Real-time intrusion detection and prevention

The system features powerful intrusion detection and prevention mechanisms to continuously monitor marine network traffic and spot potential security breaches instantly. Centralized log management supports full analysis of security events, enabling rapid response and risk mitigation for vessel operations, satisfying IACS UR E26’s continuous monitoring requirements.

Endpoint protection

Valmet DNAe deploys comprehensive endpoint protection including system hardening, antivirus tools and application whitelisting. These measures effectively defend against malware and malicious attacks, lowering risks of unauthorized access and onboard system compromise, complying with IACS UR E27 endpoint security controls.

Secure connectivity on all levels

Valmet DNAe guarantees secure data connections across every layer of marine facilities, ranging from field devices to ship enterprise platforms and cloud resources. Encryption protocols, access control rules and VPN tunneling protect all data transmission and block unauthorized access. The secure remote access function allows authorized staff to conduct vessel operation and maintenance remotely while fully securing communication confidentiality and integrity, meeting IACS UR E26 and UR E27 secure connectivity requirements