– On Thursday, the NSA unveiled guidance designed to support the defense of malicious cyber activity on targeted, connected operational tech (OT). Although aimed at federal agencies, private sector entities can leverage the insights to bolster their overall security posture.
The guidance joins other insights supporting the response and hopeful prevention of another SolarWinds Orion security incident. In the past few months, federal leaders released guides for defending against supply-chain attacks, advanced persistent threats, and vulnerability exploits.
Given that one IT exploit can allow an attacker to pivot into an exploit of operational tech, the latest NSA guide, provides system administrators with insights on evaluating systems risks and ways to improve the security of connections between OT and enterprise networks.
OT tech includes hardware and software that supports operations of infrastructure environments.According to the NSA, “carefully evaluating the risk of connectivity…