Épisodes

  • Managing Risk with Digital Twins - What Do We Do Next? [the industrial security podcast]
    Sep 8 2025
    Asset inventory, networks and router / firewall configurations, device criticality - a lot of information. How can we USE this information to make useful decisions about next steps to address cyber risk? Vivek Ponada of Frenos joins us to explore a new kind of OT / industrial digital twin - grab all that data and work it to draw useful conclusions.
    Voir plus Voir moins
    46 min
  • I don't sign s**t [The Industrial Security Podcast]
    Aug 11 2025
    We don't have budget to fix the problem, so we accept the risk? Tim McCreight of TaleCraft Security in his (coming soon) book "I don't sign s**t" uses story-telling to argue that front line security leaders should not be accepting multi-billion dollar risks on behalf of the business. We need to escalate those decisions - with often surprising results when we do.
    Voir plus Voir moins
    50 min
  • NIS2 and the Cyber Resilience Act (CRA) [The Industrial Security Podcast]
    Jul 28 2025
    NIS2 legislation is late in many EU countries, and the new CRA applies to most suppliers of industrial / OT computerized and software products to the EU. Christina Kiefer, attorney at reuschlaw, walks us through what's new and what it means for vendors, as well as for owner / operators.
    Voir plus Voir moins
    54 min
  • Network Duct Tape [The Industrial Security Podcast]
    Jul 11 2025
    Hundreds of subsystems with the same IP addresses? Thousands of legacy devices with no modern encryption or other security? Constant, acquisitions of facilities "all over the place" network-wise and security-wise? What most of us need is "network duct tape". Tom Sego of Blastwave shows us how their "duct tape" works.
    Voir plus Voir moins
    1 h et 4 min
  • Credibility, not Likelihood [The Industrial Security Podcast]
    Jun 17 2025
    Safety defines cybersecurity - Kenneth Titlestad of Omny joins us to explore safety, risk, likelihood, credibility, and deterministic / unhackable cyber defenses - a lot of it in the context of Norwegian offshore platforms.
    Voir plus Voir moins
    53 min
  • Lessons Learned From Incident Response [The Industrial Security Podcast]
    May 20 2025
    How did they get in? How did we find them when they got in? What can we do in future to clean up the mess faster? Chris Sistrunk reflects on a decades' industrial cyber incident response experience at Mandiant (Google).
    Voir plus Voir moins
    51 min
  • Experience & Challenges Using Asset Inventory Tools [The Industrial Security Podcast]
    Apr 21 2025
    Asset inventory tools have become almost ubiquitous as main offerings or add-ons to OT security solutions. In this episode, Brian Derrico of Trident Cyber Partners walks us through what it's like to use these tools - different kinds of tools in different environments.
    Voir plus Voir moins
    36 min
  • Needles in Haystacks - Recruiting OT Incident Responders [The Industrial Security Podcast]
    Mar 17 2025
    Industrial incidents can be cyber attacks, or equipment failures, or physical equipment leaking product because of metal fatigue or incorrect welds. OT incident responders need to know a lot. Doug Leece of Enbridge explores what is OT incident response and what you look for recruiting people into that role.
    Voir plus Voir moins
    56 min