Archive

All entries

derbyshire.jpg
Cyber Resilience
Industrial
Operational Resilience
Operational Technology
Risk Management
Vulnerability Management

Nexus Podcast: Ric Derbyshire on Living-Off-the-Plant OT Cyberattacks

Michael Mimoso
Jon Holzbauer, OT systems manager at Silgan Containers, is featured in Episode 3 of Claroty Nexus Digest. Jon discusses the skills gap between IT security teams and OT asset operators as these two distinct operational disciplines converge. He also describes the challenges and conflicting priorities that emerge in converged environments, and how to navigate those.
Cyber Resilience
Operational Resilience
Operational Technology
Industrial

Nexus Digest: Jon Holzbauer on CPS Security Skills Gap

Jon Holzbauer, OT systems manager at Silgan Containers, is featured in Episode 3 of Claroty Nexus Digest. Jon discusses the skills gap between IT security…
Michael Mimoso
AJ Eserjose, Regional Director for Operational Technology Information Sharing and Analysis Center (OT-ISAC), writes about how the information shared among members of a hub such as OT-ISAC creates a predictive resilience.  Attack, threat, and risk signals are aggregated from contributions made by different members into comprehensive intelligence that improves overall cyber and operational resilience.
Cyber Resilience
Industrial
Operational Resilience
Operational Technology
Risk Management

How Collective Intelligence Enhances Predictive Resilience

AJ Eserjose
Project Glasswing and the Claude Mythos Preview have caused an upheaval related to vulnerability discovery and exploit development. On Nexus, former NSA Director Adm. Michael S. Rogers introduces some nuance to the discussion. The nuance that isn’t being articulated enough, he says, is that Project Glasswing is largely a defensive effort that does more to level the playing field between threat actors and defenders than we may realize.
Cyber Resilience
Federal
Operational Resilience
Vulnerability Management

Exploring Some Nuance on Project Glasswing

ADM. Michael S. Rogers, USN (Ret.)
Rapid7 Principal Security Research (IoT) lead Deral Heiland joins the Nexus Podcast to discuss work his team did on how attackers might weaponize cellular-based IoT.  Rapid7 conducted three phases of this research, with the most recent digging into how attackers with access to these systems can abuse them to gain unauthorized access, potentially exfiltrate critical data, or pivot into backend network infrastructure.
Internet of Things
Vulnerability Management
Risk Management
Operational Resilience

Nexus Podcast: Deral Heiland on Weaponizing Cellular-Based IoT

Michael Mimoso
OT has a cybersecurity skills gap. Leading organizations, however, are responding by building cross-functional IT/OT security teams, investing in OT-specific training, creating hybrid cybersecurity roles, and leveraging managed OT security services to bridge immediate gaps. They are also prioritizing asset visibility, documentation, and standardized processes to reduce reliance on tribal knowledge.
Operational Technology
Industrial
Operational Resilience
Cyber Resilience

OT Cybersecurity Faces a Skills Gap

Jon Holzbauer
nexus_samir.jpg
Industrial
Cyber Resilience
Operational Resilience
Operational Technology
Risk Management

Nexus Podcast: MITRE on Caldera for OT Adversary Emulation

Michael Mimoso
nexuspod_joe-slowik.jpeg
Operational Resilience
Operational Technology
Internet of Things
Industrial
Healthcare
Cyber Resilience
Risk Management

Nexus Podcast: Joe Slowik on Securing Exposed Internet-Facing Assets

Michael Mimoso
ASL Roma 1 CISO Stefano Scaramuzzino and Deloitte’s Fabio Battelli explain the next evolution of cybersecurity and risk governance at Italy’s largest public health authority: canonical risk. The hospital's HOPE framework is the decision layer for this concept, a governed, explainable, and auditable synthesis of technical signals, operational context, and explicit priority logic that inform remediation and mitigation actions.
Healthcare
Cyber Resilience
Operational Resilience
Risk Management

At ASL Roma 1, Canonical Risk Informs Governance, Remediation Actions

Stefano Scaramuzzino
Fabio Battelli
On this episode of the Nexus Podcast, Rafael Arakelian, the OT/IoT Cybersecurity Manager for Accenture, joins to discuss the inner workings of Operation Grim Beepeer, a 2024 Israeli operation that used booby-trapped pagers and walkie talkies to injure or kill Hezbollah members. Raphael studied the technical, cybersecurity, and supply-chain risks involved in this operation, and shares how those lessons can be applied to operational technology.
Industrial
Cyber Resilience
Operational Technology
Operational Resilience
Risk Management

Nexus Podcast: Raphael Arakelian on Operation Grim Beeper

Michael Mimoso
nexusdig_megan.png
Risk Management
Cyber Resilience
Operational Resilience

Nexus Digest: Megan Stifel on National Cyber Strategy’s Pivot to Offensive Security

Megan Stifel, Chief Strategy Officer for the Institute for Security and Technology, joins the first episode of the Nexus Digest to discuss an article she wrote…
Michael Mimoso
On this episode of the Nexus Podcast, Michael Pyle, Director of Product Cybersecurity at Schneider Electric (SE), joins the Nexus Podcast to discuss Internet Exposure Prevention, a new SE approach to preventing illicit connections to internet facing OT and industrial control systems (ICS) that are insecurely connected to the internet.
Operational Technology
Operational Resilience
Risk Management
Cyber Resilience
Industrial
Vulnerability Management

Nexus Podcast: Michael Pyle on Securing Internet-Facing OT, ICS Assets

Michael Mimoso
Latest on Nexus Podcast