Had a great time presenting manufacturing cyber security at the (ISC)2 Congress today. @demokris and I spoke about our personal experiences working with manufacturing teams around the world, and dispelled some OT vs IT myths. #isc2congress#industrialcybersecurity#manufacturing
Vendor assessment should include the vendor’s threat model. Who would attack them and why? Are they prepared for those attackers and to protect those targets, which may include you.
Researcher: Not Hard for a Hacker to Capsize a Ship at Sea: https://t.co/D3eiXEq38M via @threatpost not sure how much this is scaremongering but what is true is the ease with which industrial systems are vulnerable to attack #icssecurity#ics#scada
Again...it's about People & Process! #ics#infosec#scada#icssecurity
"How to Fix the People and Skills Problem in Securing Building Automation" https://t.co/aLrZgCTBD3 via @YouTube
Factory security assessment begins online. Use https://t.co/LRfSu7exNO and identify the location and surroundings. Often lots of ICS’s outside of the main buildings, also vehicle routes, fencing and other security features. #factorysecurity#icssecurity#ics#scada
Lessons from fieldwork. I’ll walk through a complete “hypothetical” factory security assessment one lesson at a time from planning to reporting and all steps in between. Starting from tomorrow #factorysecurity#infosec#scada#icssecurity#fieldwork#ot#plc#ics
Good physical security controls protect people. Assessing their effectiveness is a big part of a good manufacturing security process #factorysecurity#icssecurity
Today was a day to focus on the positive things: but the dog has eaten my chocolate orange and the kids have shot me to pieces with their nerf guns 15 seconds after getting home #badday#MondayBlues