Cyber and Operational Risk: Disaster Recovery in Industrial Environments
Introduction In modern industrial environments, uptime is everything. From manufacturing plants and refineries to power generation facilities, operational technology (OT) systems are expected to operate continuously and without interruption. But cyberattacks, equipment failures, and natural...
Deciding When to Secure OT/ICS with a Single or Multi-Firewall Strategy
Safety, reliability, and control are paramount in all industries, not just on the plant floor or field but also on your digital infrastructure. As industrial operations become increasingly connected through Industrial Control Systems (ICS), SCADA networks, and remote access technologies,...
Myth: OT/ICS Systems Don’t Need Patching
Where the Myth Comes From Patching in the OT/ICS space has always been tricky. Many of the systems still in use today were designed 10, 20, even 30 years ago before cybersecurity was a consideration and before remote access became commonplace. Updates often meant downtime, requalification, and...
Using MITRE DeTT&CT Framework to Enhance OT/ICS Cybersecurity
Cybersecurity for Industrial Control Systems (ICS) and Operational Technology (OT) environments requires specialized strategies due to their distinct operational characteristics and stringent safety requirements. The MITRE DeTT&CT framework provides a tool and methodology designed to score and...
Intro to the Cyber and Operational Risk Convergence Series
Introduction Industrial environments are no longer secure behind the “air gap.” As IT and OT systems continue to converge, their risks are also becoming more interconnected. What once were two separate domains, IT security and OT operations, are now interdependent in ways that create new...
Cyber and Operational Risk: AI Tools in the Enterprise
In modern environments, cybersecurity and operations are no longer separate concerns. The same actions that keep systems running can also introduce risk. This series explores how those risks intersect in real-world environments and how to manage them together. In this post, we will look at AI...
Understanding NERC CIP-015: Strengthening Internal Network Security Monitoring in OT Environments
As the threat landscape targeting critical infrastructure continues to evolve, the North American Electric Reliability Corporation (NERC) has introduced CIP-015-1 to address a critical gap in cybersecurity: visibility within internal networks. While previous CIP standards have focused heavily on...
Iranian Cyber Actors Are Targeting U.S. PLCs
Introduction In April 2026, CISA released a cybersecurity advisory warning that Iranian-affiliated APT actors are exploiting internet-facing operational technology devices, including Rockwell Automation/Allen-Bradley PLCs, across U.S. critical infrastructure. At first glance, it may look like a...
Myth: OT Cybersecurity is IT’s Job
Introduction As cyber threats evolve in complexity and frequency, the distinction between IT (Information Technology) and OT (Operational Technology) environments has never been more critical or more misunderstood. One of the most dangerous myths in industrial cybersecurity is that protecting OT...
Accenture’s Dragos Deal Validates OT Cybersecurity and Raises Questions Every Customer and Partner Should Be Asking
On June 18, 2026, Accenture announced agreements to acquire 100% of runZero and NetRise and a majority stake in Dragos, for a combined enterprise value of approximately $4.175 billion. The transactions are expected to close in August or September 2026, subject to regulatory approval. The OT...
DoD Guidance on implementing Zero-Trust
Introduction The Department of Defense (DoD) released guidance designed to “coordinate, synchronize, and accelerate adoption” of the implementation of zero trust within Operational Technology (OT) cybersecurity frameworks. They emphasize the need for OT-specific guidance due to the unique...
Dedicated OT SOC or a Converged SOC? Making the Right Call for Industrial Security
As cyber threats targeting Operational Technology (OT) and Industrial Control Systems (ICS) continue to increase, many organizations find themselves asking a fundamental question: Should we stand up a dedicated OT Security Operations Center (SOC), or should OT security be handled within a...
Get a clear picture of your OT cybersecurity risk
If you are frustrated at wasted time and resources spent on security projects with nothing to show for it, or need your security or operations team to do more with less, give us a call at (469) 574-4000 or send a message to info@enaxy.com. Let’s see how we can help ensure your assets are secure.