Insights & Resources
Guidance on CMMC compliance, industrial cybersecurity, and OT network protection.
203 articles
Agent-Free Zero Trust: Why OT Environments Can't Use Endpoint Software
IT Zero Trust relies on endpoint agents. OT devices cannot run them. Here is why, and how network-layer enforcement provides equivalent protection without touching the device.
Air-Gapped But Not Safe: Misconceptions in Legacy Security
Air-gapped systems have long been perceived as the ultimate safeguard against cyber threats in industrial and OT security. The concept is simple: isolate critica...
Air-Gapped vs Layered Security Architectures
In today’s rapidly evolving cybersecurity landscape, organizations face the challenging task of safeguarding both operational technology (OT) and information technology (IT) environments. For IT secur...
Automating Compliance Monitoring in ICS
Maintaining compliance with regulatory standards in industrial control systems (ICS) is a daunting task for many organizations. As these systems become more intercon...
The SCADA You Cannot Patch on Tuesday: AVEVA Enterprise SCADA (ICSA-26-225-01)
CISA's ICSA-26-225-01 flags a CVSS 7.1 deserialization-to-code-execution flaw in AVEVA Enterprise SCADA and its HMI. The attacker still needs to reach the service to send the payload. That reach is the part you control.
A Key You Cannot Rotate: AVEVA Pipeline Integrity Monitor (ICSA-26-253-01)
CISA's ICSA-26-253-01 covers four flaws in AVEVA Pipeline Integrity Monitor, including a hard-coded cryptographic key. The two 8.4s are local-only, so the whole question is who can already reach the host.
Badge vs Password Why Physical Identity Matters for OT Cybersecurity
OT cybersecurity conversations often center around digital credentials and network protocols. However, the physical aspects of cybersecurity, specificall...
Best Tools for Monitoring Industrial Protocol Security
Ensuring robust security for industrial protocols in OT is non-negotiable. With cyber threats becoming increasingly sophisticated, organizations must prioritize...
Beyond the Acronym How PLCs Became the Backbone of Modern Industrial Automation
The term "PLC" has become synonymous with efficiency, precision, and reliability in industrial automation. Programmable Logic Controllers (PLCs) are not just the sil...
Building a SOC for OT: Tools and Tips
A Security Operations Center (SOC) specifically tailored for operational technology (OT) environments is becoming increasingly crucial. Unlike t...
Building Fault-Tolerant Network Paths in OT
Building fault-tolerant network paths is a critical component of OT security, ensuring continuous operation and maintaining robust defenses against cyber threa...
Building for Scalability in Industrial Networks
Today's industrial networks are experiencing unprecedented growth due to the rapid adoption of automation, IoT devices, and digital transformation initiatives. Ensuring these networks can scale effect...
›Browse all posts (203)
- Agent-Free Zero Trust: Why OT Environments Can't Use Endpoint Software
- Air-Gapped But Not Safe: Misconceptions in Legacy Security
- Air-Gapped vs Layered Security Architectures
- Automating Compliance Monitoring in ICS
- The SCADA You Cannot Patch on Tuesday: AVEVA Enterprise SCADA (ICSA-26-225-01)
- A Key You Cannot Rotate: AVEVA Pipeline Integrity Monitor (ICSA-26-253-01)
- Badge vs Password Why Physical Identity Matters for OT Cybersecurity
- Best Tools for Monitoring Industrial Protocol Security
- Beyond the Acronym How PLCs Became the Backbone of Modern Industrial Automation
- Building a SOC for OT: Tools and Tips
- Building Fault-Tolerant Network Paths in OT
- Building for Scalability in Industrial Networks
- The C3PAO Bottleneck: How to Prepare When There Aren't Enough Assessors
- Centralized Audit Logging for Multi-Site Operations
- Change Management in ICS Environments
- The NERC CIP Compliance Checklist for Power Utilities (2026)
- Choosing Between Star and Ring Topologies in ICS
- What the CISA and FBI Fact Sheet on Third-Party ICS Integrators Recommends
- What the New CISA Zero Trust OT Guide Means for On-Premise Deployments
- CMMC Secure Specialized Assets
- Common Attack Vectors in Legacy ICS
- Common MFA Mistakes and How to Avoid Them
- Common Root Causes of OT Downtime
- How to Connect CNC Machines to Monitoring Software Without Exposing Them
- Creating Standard Operating Procedures for OT Security
- CUI Enclave Architecture: On-Premise Alternatives to GCC High
- Cybersecurity for Naval Shipboard Systems
- Deep Packet Inspection vs Flow-Based Monitoring What's Best for OT
- Defense Contractor Facility Security: Beyond the Perimeter
- Deploying Firewalls Without Breaking ICS Traffic
- Designing Redundant Communication Paths in OT
- Detecting and Responding to ICS Attacks in Real Time
- Detecting Anomalies in Industrial Protocols
- Dragos 2026 Report: What the 3 New OT Threat Groups Mean for Your Factory
- Cybersecurity in the EPA Sanitary Survey: What to Expect
- Failure Modes in SCADA Networks
- Firewall Placement Strategies for Industrial Networks
- Flat Network vs Segmented Network in Industrial Environments
- From Door to Data How Badge Access Enhances Cybersecurity in Industrial Environments
- HMI Network Isolation Strategies
- How Compliance Can Drive Better OT Security
- How Ewon Remote Access and Talk2M Work
- How Network Changes Affect PLC Performance
- How to Audit Industrial Protocol Traffic Effectively
- How to Benchmark ICS Network Performance
- How to Build a Resilient OT Backbone
- How to Build an Incident Response Plan for ICS
- How to Build an OT Cybersecurity Roadmap for Your Factory
- How to Conduct a Post-Incident Analysis in OT
- How to Configure YubiKey with Trout Access Gate
- How to Correlate Network Traffic and Device Behavior in OT
- How to Detect Anomalies in Modbus and DNP3 Traffic
- How to Enforce East-West Traffic Isolation in OT
- How to Evaluate OT Security Vendors: A Buyer's Checklist for 2026
- How to Manage Passwords on Hundreds of ICS Devices
- How to Monitor SCADA Network Traffic Without Disrupting Operations
- How to Perform a Risk Assessment on Your OT Environment
- How to Segment a Flat OT Network Without VLANs or Downtime
- How to Spot Malicious Lateral Movement in OT Environments
- How to Use MITRE ATT&CK for ICS Threat Detection
- ICS vs SCADA Security What You Need to Know
- Implementing Network Traffic Analysis Without Slowing Down Production
- Industrial Malware: Network-Based Detection Strategies
- Industrial Network Topology Discovery and Mapping
- Insider Threat Detection in Manufacturing Environments
- Integrating Sysmon and OT Logging: A Unified View
- Inventory and Asset Management in ICS Operations
- Latency Requirements in Industrial Control Systems
- Lateral Movement Detection in Industrial Networks
- Lateral Movement in OT Networks: What It Is and How to Stop It
- What to Do About the lwIP Vulnerabilities in ICSA-26-265-01 and -02
- Maintenance Window Planning for Security Updates
- Managing Mixed IT/OT Device Inventories
- Mapping OT Controls to NIST SP 800-53
- MFA for Remote Access: VPNs, RDP, and Cloud Portals
- MFA for Service Accounts and Industrial Devices Is It Possible
- Multi-Site OT Security: How to Scale Zero Trust Across 50+ Locations
- NERC CIP Compliance: Network Security Monitoring Requirements
- Network Security Impact on Real-Time Control Loops
- Network Traffic Baselines Why They're Critical in Industrial Security
- NIS2 Directive Explained: Requirements, Scope, and Who Must Comply in 2026
- NIS2 Operational Technology: What Manufacturers Need to Know
- NIST Cybersecurity Framework for Manufacturing Systems
- Nozomi Networks vs Access Gate: When Visibility Alone Isn't Enough
- SCADA Security for Oil and Gas Pipelines: Distributed Sites, One Control per Site
- OT-Specific IDS: What to Look For
- Overlay Networking vs VLANs: A Practical Comparison for OT Segmentation
- Patch Management in Operational Environments
- PLC Explained What Every Manufacturing Professional Should Know About Programmable Logic Controllers
- PLC vs SCADA vs DCS Understanding Industrial Control System Hierarchies
- Port & Maritime OT Security: Protecting Crane Control and Terminal Systems
- Power Grid Substation Security: Zero Trust for Distributed Energy OT
- Protocol Gateways: The Good, the Bad, and the Ugly
- Protocol Whitelisting: How to Reduce Attack Surface in OT
- Proxy-Based Security for OT: Why Proxies Succeed Where Agents Fail
- Rail Signaling Cybersecurity: Protecting Safety-Certified Infrastructure
- Ransomware Targeting Manufacturing in 2026: A 49% Increase and What to Do About It
- Real-Time PLC Data Streaming OPC-UA Modbus and Modern Integration Patterns
- Red Team vs Blue Team Exercises for Industrial Networks
- Redundant Link Design for OT Systems
- Remote Site Deployment Best Practices
- Retrofitting Security Controls in Brownfield Installations
- Routed vs Switched Networks
- Scheduling Maintenance Windows in 24/7 Plants
- Secomea Alternatives: When Remote Access Is Not the Whole Problem
- Secure Commissioning of New ICS Equipment
- How to Secure Remote Access to an HMI
- How to Give Secure Remote Access to a PLC
- How to Secure Remote Access to a SCADA System
- Securing Airport Baggage Handling Systems Without Requalification
- Securing Industrial Ethernet/IP: A Practical Guide
- Securing Legacy Manufacturing Equipment for CMMC
- Securing the IT/OT Boundary: Technical Architecture Patterns
- Security Implications of Using PROFINET in Manufacturing
- Siemens Industrial Edge Management Password Reset Flaw (ICSA-26-265-06)
- Siemens SINEMA and Scalance: What Sits Between Remote Access and Segmentation
- Simulating Cyberattacks on PLCs: Safe Testing Techniques
- Strategies for Enabling Logging in Old ICS Devices
- Talk2M Alternatives: Industrial Remote Access Without a Vendor Cloud
- The Case for Out-of-Band Management in OT
- The Difference Between IT and OT Cybersecurity Explained
- The Difference Between Technical and Administrative Controls in OT
- The Role of Multi-Factor Authentication in OT
- The Role of SIEMs in OT/IT Environments
- Tips for Upgrading Factory Network Infrastructure
- Top 10 Audit-Ready Controls for OT Networks
- Top 5 Benefits of Using Badge Access for ICS and SCADA Terminals
- Top 5 Metrics to Monitor in Industrial Network Traffic
- Top 5 MFA Methods Compared: SMS, TOTP, Biometrics, Hardware Keys & Push Notifications
- Top Frameworks for OT Cybersecurity IEC 62443 NIST and More
- Top OT Cyber Threats in 2026: What to Watch
- Understanding the Costs of MFA in OT and On-Premise Environments
- User Identity and Access in Air-Gapped Environments
- Using NetFlow and Logs for ICS Threat Hunting
- Using SNMP Effectively in OT Environments
- Using Software-Defined Networking (SDN) in OT
- Vendor Access Risks in OT and How to Control Them
- SCADA Security for Water Systems: What a Small Utility Can Do This Year
- What Is Badge Access for Digital Systems A Beginner's Guide for IT and OT Teams
- What Is Network Traffic Analysis A Guide for OT Engineers
- Why Early Detection is Key in OT Security
- Why IT/OT Convergence Fails Without Governance
- Why Jitter Matters in Real Time OT Traffic
- Why Legacy Protocols Pose a Risk in Modern OT Networks
- Windows XP in Industrial Networks: Containment Strategies
- Zero Trust for Legacy PLCs: The Lollipop Architecture Explained
- Zero Trust Principles Applied to PLC Communications
- Zero Trust Readiness Checklist for Industrial Environments
- Zero Trust vs Traditional Firewalling: What's More Effective in OT?
- Zone and Conduit Architecture with Modern NAC Solutions
- Zone-Based Firewalling for ICS: Best Practices
- A 9.9 in the Grid's Power-Flow Controllers: Hitachi Energy FACTS (ICSA-26-260-03)
- One FTP Packet Stops the PLC: Schneider Modicon M340 (ICSA-26-260-04)
- The Difference Between Secure Modbus and Modbus TCP
- Why On-Premise OT Security Beats Cloud-Routed Solutions
- A Water Utility Caught CISA's Red Team in Two Minutes. The OT Jump Server Still Fell.
- CMMC vs NIS2: One Compliance Architecture for Both Frameworks
- The True Cost of OT Security: TCO Comparison of Appliance vs Cloud Solutions
- The Last Hop: Carrying CUI From a Cloud Enclave to the Machine That Uses It
- CMMC 2.0: What Manufacturers Need to Know
- CMMC Readiness for Manufacturers After the Suspension
- Introducing Open-CMMC: An Open-Source CUI Enclave for CMMC Level 2
- Preparing for the CMMC 2.0 Compliance Deadline
- IXON VPN Client RCE: When the Remote Access Client Is the Attack Surface
- EPA Cybersecurity Requirements for Water and Wastewater Systems
- The ASE2000 Test Set: When IEC 60870-5-104 TLS Does Not Check the Certificate
- Serial-to-IP Device Servers: Four CISA Advisories in Three Days
- Credentials Sitting in Memory: Johnson Controls Simplex Incident Manager (ICSA-26-232-01)
- A CVSS 10 on the Box That Faces the Internet: Haiwell IoT Cloud HMI Gateway (ICSA-26-225-02)
- The Firewall in the OT Rack Is Also Just Software: Siemens RUGGEDCOM APE1808 (ICSA-26-225-06)
- The Access-Control System That Needs Access Control: Johnson Controls C-CURE 9000 (ICSA-26-204-01)
- ABB Ability Zenon's Bundled MongoDB Flaws: What ICSA-26-218-01 Teaches OT Teams
- US Water Utility Cyberattacks in 2026: What Happened and How to Secure OT
- The Affirming Official's False Claims Act Risk in CMMC
- AWIA Risk and Resilience Certification: The Cybersecurity Part
- MFA for PLCs: Meeting CMMC 3.5.3 with a Compensating Control
- CMMC Phase II Suspended: What Actually Changes for Defense Manufacturers
- New York DOH Part 5: The Water Cybersecurity Requirements, Explained
- What's New in Access Gate v26.6
- CMMC Level 2 for Manufacturers: Why VLANs Are Not Enough for Shop Floor OT
- How to Write an SSP Section for a Network with Legacy PLCs
- What the CMMC Enduring Exception Actually Requires You to Document
- What a C3PAO Looks for in an OT Environment
- Zero Trust for Air-Gapped OT Networks: What Works and What Doesn't
- Cybersecurity for Police Evidence Systems: Sovereign, Auditable, On-Premise
- AI-Powered Attacks on Industrial Networks: What OT Teams Should Prepare For
- NIS2 Management Liability: Why Executives Are Personally on the Hook
- NIS2 Enforcement Is Live: What Changed and What to Do First
- Securing UAV Ground Stations: MAVLink Vulnerabilities
- CMMC Level 2 Requirements for OT Specialized Assets
- GDPR and OT: What Data Privacy Means for Industrial Control Systems
- How Network Traffic Logs Help You Comply with CMMC and IEC 62443
- ICS Honeypots: Revealing Real-World Attacks on Industrial Protocols
- ICS Protocol Deep Packet Inspection: Tools and Techniques
- Layer 2 vs Layer 3 Why Your Network's Broadcast Domains Are Killing Performance
- Lessons Learned from the TRITON Malware Attack
- NIS2 Asset Inventory Requirements What You Need to Track and How to Do IT on Premise
- NIS2 Compliance a Practical Guide to Meeting Article 21 Security Obligations
- OT vs IT CMMC Controls
- The Role of Syslog in Meeting CMMC Logging Requirements
- Understanding NIS2 Requirements for ICS Networks
- Zero Downtime Deployment Techniques for Industrial Networks
- On-Premise vs Cloud Enclave for CUI Protection