ICS613 helps you understand HOW to approach #ICS#OT assessments thoughtfully, include the right stakeholders, & gather the info needed for risk-based decisions.
🔗 Learn more & register for ICS613: https://t.co/mTlp1F2uuz
#PenTesting#CriticalInfrastructure
One wrong command in OT can stop a turbine. IT skills aren’t enough.
⚙️ Train for industrial defense & protect what matter most with SANS ICS. Learn more about our courses here: https://t.co/a8qePtHTNu
How prepared is your org to recover after a cyber or operational disruption?
📄 The OT Disaster Recovery Quick Start Guide breaks it down: objectives, dependencies & metrics you can apply immediately.
Download your copy ➡️ https://t.co/EcoF43sJOS
#ICS#OTSecurity
Many orgs invest in securing the IT/OT boundary, but what happens when an attacker gets in? In this blog @deancybersec explains why focusing only on north-south traffic leaves a critical blind spot.
→ Read the blog: https://t.co/MQe2bjCffj
#ICS#OTSecurity#Cybersecurity
In ICS613, you’ll work directly w/ #ICS devices, explore vulnerabilities, & practice moving from the enterprise layer into operational systems. Best of all you'll learn methods you can apply immediately.
👉 Learn more: https://t.co/mTlp1F2uuz
#PenTesting#OTSecurity
تعال أسولف لك عن مديري…
إذا ما تعرف هذا الشخص @RobertMLee تعال أحكي لك عنه.. ليس كرئيسي ولكن كصديق لي.
روب ليي.. مؤسس شركة @DragosInc للأمن السيبراني للأنظمة الصناعية والرئيس التنفيذي لها، ومدرب في معهد @SANSICS.
روب أمضى أكثر من 15 سنة في مجال الأمن السيبراني للأنظمة الصناعية، عشر منها على رأس Dragos، لكي يرفع الوعي بالمخاطر السيبرانية لأنظمة التحكم الصناعية.. لأنه يؤمن بأن تأمينها يعني أمان أبنائه وأبنائنا.
بدأ الطريق ضابط عمليات حرب سيبرانية في القوات الجوية الأمريكية، وكان من بين من قادوا التحقيق في الهجوم على الشبكة الكهربائية الأوكرانية عام 2015، أول شبكة كهرباء في العالم تُطفأ بهجوم سيبراني. وفي SANS بنى مناهج الأمن الصناعي التي صارت المرجع لآلاف المهندسين والمحللين حول العالم.
وفي 2024 وقف أمام الكونغرس يتحدث عن أنظمة المياه، لا ليبيع منتجات شركته ، بل ليقول إن المرافق الصغيرة تترك وحدها بلا موارد ولا قدرات.
وكتب مع Tim Conway الضوابط الخمسة الحرجة للأمن السيبراني الصناعي، ونشرها للجميع مجانًا، وثيقة اختصرت على كل مسؤول أمن صناعي في العالم السؤال الأصعب: من أين أبدأ؟
التهديدات السيبرانية للأنظمة الصناعية واقع لا يمكننا تلافيه إلا باتخاذ خطوات دفاعية عملية، لا بانتظار الحادثة حتى تقع. وهي خطوات معروفة ومحددة:
• خطة استجابة للحوادث مصمّمة لبيئة OT تحديدًا
• بنية شبكية قابلة للدفاع
• رؤية ومراقبة داخل الشبكة الصناعية
• وصول عن بُعد آمن
• إدارة ثغرات قائمة على المخاطر لا على الأرقام
خمسة. لا أكثر. وهي ليست نظرية، بل خلاصة خمس عشرة سنة من التحقيق في حوادث حقيقية وقعت فعلًا.
وهذي بالضبط رسالة روب التي كرّرها طوال هذي السنوات:
"Defense is Doable" ( الدفاع ممكن)
الأنظمة الصناعية ليست صعبة أو مستحيلة على الحماية، والهكرر ليس أساطير، والفارق بين بيئة محميّة وأخرى مكشوفة ليس الميزانية بقدر ما هو القرار والأولوية.
أكثر شي تعلّمته من روب ما كا مهارات تقنية. كان الصبر: أن تشرح خطرًا للناس الذين لا يرونه، سنة بعد سنة، إلى أن يروه.
وهذا… لا الأدوات ولا المنتجات.. هو ما غيّر هذا المجال فعليًا.
Congratulations to SANS Fellow and instructor @RobertMLee, ranked #82 on the @Forbes 250 list of America’s Most Successful Living Veterans. A U.S. Air Force veteran, Rob continues to serve as a lieutenant colonel in the Army National Guard. 🇺🇸🎉 https://t.co/knBdRS1rdW
New attacker techniques are outpacing most teams' ability to track them. Stephen Sims keynotes #SANSNetworkSecurity 2026 on AI and the threat landscape shift. Sep 21-26, Las Vegas + virtual. Save $777 with code SIMS777.
Register: https://t.co/VkyelPFqjm
#SANSLiveTraining
I present to you the winning team for the TTX in my SCADA Security Essentials class this week in Washington D.C. What a great group of students!
@SANSICS@SANSInstitute
🏭 ICS310 was designed as an entry point for those who need clear #ICS fundamentals before advancing. From core concepts to critical controls, this course helps you build a strong foundation, fast.
👉 Learn more about ICS310:https://t.co/GcmBYTseRQ
#OTSecurity#SANSTraining
Many orgs invest in securing the IT/OT boundary, but what happens when an attacker gets in? In this blog @deancybersec explains why focusing only on north-south traffic leaves a critical blind spot.
→ Read the blog: https://t.co/MQe2bjCffj
#ICS#OTSecurity#Cybersecurity
From adversarial attacks on #AI models to operational risks in ICS/OT environments, AI adoption requires more than hype. It requires strategy.
🎥 @deancybersec shares 3 takeaways for applying AI in #ICS.
#OTSecurity
At #ICSSummit, Terry McCorkle will demonstrate how Cyber Fusion Centers help organizations shift from reactive ops to proactive defense.
Learn how teams combine IT/OT visibility, automation, & predictive insights to reduce risk & improve resilience.
➡️ https://t.co/nm1VaIqsin
How prepared is your org to recover after a cyber or operational disruption?
The OT Disaster Recovery Quick Start Guide breaks it down: objectives, dependencies & metrics you can apply immediately.
Download your copy ➡️ https://t.co/EcoF43sJOS
#ICS#OTSecurity
Join us at #ICSSummit when Blake Gilson will discuss secure approaches for integrating AI with OT systems.
Learn how organizations are managing OT data access, segmentation, and monitoring to support #AI initiatives without increasing risk.
➡️ https://t.co/nm1VaIqsin
Are your #IncidentResponse roles clearly defined?
@deancybersec shows why this common gap creates risk during critical moments and how clarifying responsibilities can improve response effectiveness.
Read the blog: https://t.co/yrDGbNbagV
#ICS#OTSecurity
Join us at #ICSSummit when Donovan Tindill will break down how faster OT incident recovery can translate into measurable financial loss reduction.
Learn how organizations are quantifying the ROI of resilience, monitoring, & recovery improvements.
➡️ https://t.co/nm1VaIqsin
At #ICSSummit, Emma Holt will demonstrate how D3FEND for OT helps defenders uncover gaps in industrial security architectures.
Learn how to model OT assets, networks, & defensive scenarios using MITRE’s ontological approach.
Register: https://t.co/nm1VaIqsin
#OTSecurity#MITRE
At #ICSSummit, Markus Mueller will demonstrate how packet analysis can expose the real cause of operational downtime in ICS environments.
See how investigators use network evidence, Wireshark, & AI analysis to connect cyber & operational issues.
Join us: https://t.co/nm1VaIqsin