Skip to content
Candela Lanforge Ice

Everyone involved in the finance sector rely on a resilient digital ecosystem, with the Digital Operational Resilience Act (DORA) coming into effect in the US shortly, has brought a renewed urgency to the conversation. Organizations must be able to respond and recover from all types of ICT related disruptions and threats.

One important lesson is accurate timing systems are vital, not optional, in cybersecurity. Of course, DORA’s scope extends beyond time, but its requirements clearly involve it. Because of incident reporting and risk management obligations, financial institutions will have to maintain high standards of time synchronisation, timing data and process documentation, and resilient timing that’s resistant to cyber-attacks.

In a distributed computing environment, it is impossible to determine what caused what unless all devices’ clocks agree and the billions of daily transactions are time stamped accurately. To achieve this your time source must be: 

  • Traceable to a credible source of UTC, the world’s consensus time that is recognized by governments such as NIST (US time standard), so that timestamps can be compared across public service organizations and other records.
  • Provable with logs of timekeeping accuracy retained for at least 5 years in order to prove that time was correct in the past.
  • Accurate so that intervals between timestamps can be confidently calculated, even up to within one millisecond (thousandth of a second). NENA (National emergency number association) guidelines suggests a 1-milisecond synchronization NENA
  • Secure: Reliable logging of the accuracy of all time sources, along with ancillary data that helps prove the time was correct. Provide alerts and warnings when time sources misbehave allowing for rapid response.
  • Interoperability: Industry standard protocols seamlessly integrate to customer systems safeguarding legacy investment
  • Evidencing: Provides traceability and verification, even years later

Precise and resilient time can be distributed from a global network satellite system (GNSS) using a master clock like the SecureSync2400 or a terrestrial source using a Traceable Time as a Service from Hoptroff.  

Related Posts

Network Visibility: Security Applications of Network TAPs, Brokers and Bypass Switches

Network Visibility: Security Applications of Network TAPs, Brokers and Bypass Switches

Security starts with awareness, but what happens when critical traffic slips through unnoticed? For security teams and network administrators alike,…
Why Cheap Standalone Clocks Cost You More: The Case for Synchronized & PoE Clocks

Why Cheap Standalone Clocks Cost You More: The Case for Synchronized & PoE Clocks

Accurate and synchronized timekeeping is crucial for maintaining operational efficiency in any organization. While inexpensive standalone clocks might seem appealing…
Profitap Cloud TAP: Unlocking Full Network Visibility in Kubernetes Environments

Profitap Cloud TAP: Unlocking Full Network Visibility in Kubernetes Environments

Achieving comprehensive visibility into network traffic across diverse environments is a critical challenge for IT teams. Profitap‘s Cloud TAP emerges…
AI-Generated Threats - Why your NDR can’t keep up and how to fix it with CySight CEO Rafi Sabel

AI-Generated Threats - Why your NDR can’t keep up and how to fix it with CySight CEO Rafi Sabel

In today’s rapidly evolving cyber threat landscape, the emergence of AI-generated attacks has posed significant challenges to traditional Network Detection…
Supplier Spotlight: Our EU Based Partners

Supplier Spotlight: Our EU Based Partners

At Telnet Networks, we take pride in operating a global partner ecosystem that brings together some of the most forward-thinking…