What line of inquiry is most useful on supply chain risk management questionnaires for ICS software?
Your favorites in comments are welcomed! #S4x20
https://t.co/H3Trtclutd
.@SCADADiva will be there!
Also stepping outside the ICS/SCADA echo chamber next week for the giant expo in Santa Clara (IoT plus the kitchen sink). Expo tracks are complimentary.
https://t.co/qMHMlcd5Q8
ICS/SCADAsec savvy workforce has reached critical mass in larger industrial organizations.
Smaller organizations face a chronic lack of resources and other challenges and need tailored advice...
@artconklin "Cybersecurity and Resilience on a Small Scale" < polite nudge to post
Exclusive: How Secret Dutch Mole Aided U.S.-Israeli Stuxnet Cyber Attack on Iran. For yrs an enduring mystery has surrounded the Stuxnet attack: How did US/Israel get the malware onto computers at the highly secured uranium enrichment plant? Now we know. https://t.co/iZs0pvRr71
.@mtoecker analysis worth a browse as printer are commonplace on ICS and SCADA networks < #IoT is a misnomer in this context... printer connected to internet is a big red flag. https://t.co/zKFlH9CifX
"In Order No. 829, the Commission directed NERC to develop a new or modified Reliability Standard that addresses supply chain risk management for industrial control system hardware, software and computing and networking services associated with bulk electric system operations."
Rule of 3: ransomware clobbering municipalities is making ICS and SCADASEC look good < does the private sector profit motive result in better risk decisions? #NeverPayTheRansom
@langnergroup There you go with all that value and sustainability stuff!
Kidding aside it's also time to demand tech compatibility with reasonable security defaults. What good is security if it just gets turned off or ignored?