Eight Tips for Lighting Cybersecurity

Cyber Security

Apr 14, 2019

By Craig DiLouie

Connectivity enables LED lighting to go far beyond illumination and energy savings to offer revolutionary new capabilities and value for occupants, cost reductions, quality lighting, and business process improvement. By networking luminaires and lighting control points in a centralized architecture, the lighting system becomes programmable and able to generate data. While connecting devices for various business purposes can produce extraordinary value, it can also impose data privacy and security risks. Part 1 of this article explored the nature of the risks, and what manufacturers are doing. Here in Part 2: eight tips on how you can help your clients manage the risks.

1. Become conversant in cybersecurity “hygiene.” While lighting professionals need not become cybersecurity experts, they can benefit from education about basic concepts and practices.

2. Engage with the client about cybersecurity. It can be beneficial to engage the client about security needs during the project programming phase. This may require talking to client IT departments, which vary in how they’re composed. The IT department may have questions and requirements that will affect how the project is designed.

After product selection, it can be beneficial to include security documentation as part of the project documents. For challenging questions, the manufacturer should be able to provide support.

3. Ensure good encryption. Encryption is encoding data between devices to prevent them from being intercepted and manipulated. In a May 2018 bulletin, Cyber Security for Lighting Systems, the U.S. Department of Energy’s Federal Energy Management Program (FEMP), recommends AES 128-bit encryption.

AES 256-bit encryption is available, but there is a trade-off between power draw (and latency) and encryption in wireless lighting devices, resulting in a majority of devices using 128 instead of 256.

4. Choose an appropriate method of authentication. Authentication is about ensuring only devices that trust each other can share data. The FEMP recommends good authentication, with possibly the most secure authentication method being use of both a public and private key. The device initiating communication does so using a public key, and the responding device answers with a private key.

5. Safeguard the lighting network. If security is a concern, the network should be protected by a firewall. If the lighting network will touch the corporate network, as an added security measure, FEMP recommends segmenting it using a virtual local area network (VLAN). With a VLAN, a portion of a network is partitioned and run separately as a subnet with its own functionality and security.

6. Advise client on their responsibilities. The client should be advised about delineating administrator permissions (who will have access to the network and what powers they will have inside), the importance of installing vendor software updates (which may include important security enhancements) and changing passwords, and so on.

7. Secure after commissioning. FEMP recommends that any radios used to commission the control system be turned off after use. Or, if the radios are needed for ongoing system operation, they should be secured.

8. Scrutinize products. Look for suppliers that use a strong security methodology, are able to explain it, and can support you when needed. Here, education can go a long way in evaluating products with comparable security features but where the manufacturer implements them very differently.

One resource for evaluating products is the DesignLights Consortium (DLC), which lists networked control systems in a Qualified Products List that utilities in turn use to qualify products for their rebate programs. The Qualified Products List allows manufacturers to report compliance with certain security standards, and will require standards compliance in 2020.

Networked lighting and the IoT are a new world, presenting exciting opportunities for end-users but requiring new skillsets and creating new potential risks. Savvy building professionals will become educated on the basic issues, demand good security methodology from manufacturers, and engage with the right people at the customer to ensure all requirements are satisfied.

Read Part 1 here.

Craig DiLouie, LC, is Education Director for the Lighting Controls Association. Reprinted with permission of the Lighting Controls Association.

Photo by jaydeep_ on Pixabay

Related Articles


Latest Articles

  • Electrical Permit Requirements for Alarm System and Voice, Data, Video Installations

    Electrical Permit Requirements for Alarm System and Voice, Data, Video Installations

    January 19, 2026 Other than the exceptions listed below, electrical permits and inspections are required for all electrical work involved in the installation of intrusion and similar alarm systems in all structures. Electrical permits and inspections ensure that low -voltage systems are installed safely and in compliance with Code requirements. A permit and inspections must Read More…

  • The Role of Lighting in the AI-Powered Home

    The Role of Lighting in the AI-Powered Home

    January 14, 2026 Elizabeth Parks, President and CMO of Parks Associates, joins Derek Richardson, Founder and CEO of Deako, for a wide-ranging conversation on how lighting is becoming a core layer of the intelligent home. The discussion explores how Deako’s plug-and-play lighting approach is removing long-standing barriers to adoption by simplifying installation, reducing costs, and Read More…

  • What Canada’s Lighting Pulse Means for Contractors and Plant Buyers in 2026

    What Canada’s Lighting Pulse Means for Contractors and Plant Buyers in 2026

    January 14, 2025 By John Kerr From the ground, many contractors and plant teams are experiencing the same thing: jobs are there, but they are smaller, more price‑sensitive, and slower to release compared to past years. The Canadian Pulse of Lighting confirms that impression and offers some clear signals about how contractors and plant electrical Read More…

  • Guide to the Canadian Electrical Code, Part 1 – 26th Edition[i] – A Road Map: Section 54

    Guide to the Canadian Electrical Code, Part 1 – 26th Edition[i] – A Road Map: Section 54

    January 12, 2026 By Bill Burr The Code is a comprehensive document. Sometimes it can seem quite daunting to quickly find the information you need. This series of articles provides a guide to help users find their way through this critical document. This is not intended to replace the notes in Appendix B or the Read More…


Changing Scene

  • Leviton Canada Partners with The Titan Group to Strengthen Midwest Presence

    Leviton Canada Partners with The Titan Group to Strengthen Midwest Presence

    January 19, 2026 Leviton Canada is proud to announce its partnership with The Titan Group, who will now represent Leviton’s Residential and Commercial & Industrial product lines across the Midwest provinces, effective January 1, 2026. “We’re excited to begin our partnership with Titan,” said Bill Tischner, Western Sales Director. “Their industry expertise, commitment to service, Read More…

  • Hammond Power Solutions Appoints Xavier Biot as Vice President, Strategic Accounts

    Hammond Power Solutions Appoints Xavier Biot as Vice President, Strategic Accounts

    January 19, 2026 Hammond Power Solutions is pleased to announce the appointment of Xavier Biot as Vice President, Strategic Accounts. In this role, he will lead HPS’s strategic account teams. He will partner with customers to align transformer and power quality solutions with evolving electrification, sustainability, and operational needs. His focus will be on helping Read More…

  • ABB Chosen to Supply Technology for BC Ferries’ New Major Vessels

    ABB Chosen to Supply Technology for BC Ferries’ New Major Vessels

    January 12, 2026 ABB will supply a complete package of power, propulsion and control technology for four new double-ended passenger and car ferries operated by British Columbia Ferry Services (BC Ferries). One of the largest ferry operators in the world, BC Ferries provides year-round vehicle and passenger service on 25 routes to 47 terminals, carrying Read More…

  • Federal Government Invests in Four Ontario Steel Companies

    Federal Government Invests in Four Ontario Steel Companies

    January 12, 2026 Through targeted investments, the Government of Canada is committed to providing support to help businesses in all sectors, including steel and automotive, to respond, adapt and compete amid shifting market conditions. Evan Solomon, Minister of Artificial Intelligence and Digital Innovation and Minister responsible for the Federal Economic Development Agency for Southern Ontario Read More…