Operational Technology (OT), whether factories or other infrastructure, is increasingly getting connected, but often lacks behind the IT networks in cybersecurity monitoring. Do any of the following challenges sound familiar?
- Lack of visibility on network assets and missing dynamic tracking of the new assets
- Missing network segregation or no mechanisms to verify the segregation
- Network connectivity has evolved over time and has become unclear
It is beneficial to start from identifying the assets and connections first. While an IT-like approach, e.g. attack detection, is useful also in the OT networks, jumping straight to the deep end can lead to noise and false positives