Articles

Recent articles

The “Report to the President: Strategy for Cyber-Physical Resilience: Fortifying Our Critical Infrastructure for a Digital World,” reaffirms that cyber-resilience-by-design should be the standard and urges a coalition of government leaders and private sector critical infrastructure asset owners and operators to refocus their energies to build resilient cyber-physical systems (CPS) that are designed to withstand attack.
Federal
Cyber Resilience
Risk Management

Applauding A Codified Strategy for CPS Resilience

Chris Inglis
The Volt Typhoon takedown highlights the challenges the world faces in defending against such threats and the private industry/government collaboration that's necessary to succeed.
Operational Technology
Cyber Resilience
Risk Management

Volt Typhoon Takedown Highlights Critical Infrastructure Security Complexities

George V. Hulme
nexus_clinical-eng-p2.jpg
Cyber Resilience
Healthcare

Managing Clinical Engineering Supply Chain Risk, Part 2

Adam Zoller
nexus_clinical-eng-p1.jpg
Cyber Resilience
Healthcare

Clinical Engineering Vendor Management Wins, Part 1

Adam Zoller
nexus_oss-in-ci.jpg
Operational Technology
Cyber Resilience

Hardening Open Source Software Use in Critical Infrastructure Environments

George V. Hulme
NIS2 addresses limitations from NIS1 where some areas of improvement were needed to counter risk introduced by digital transformation and by evolving cyber threats, that exposed a lack of resilience within systems supporting businesses in the EU.
Risk Management
Cyber Resilience

Inside the EU's Toughened NIS2 Cybersecurity Directive

Roberto De Paolis
Cyber-informed engineering ensures the design, manufacture, and deployment of new OT and critical infrastructure assets — enough that these assets are reasonably secure from cyberattacks and remain reliable and resilient.
Cyber Resilience
Operational Technology

Cyber-Informed Engineering: A Way Toward More Resilient OT Systems

George V. Hulme
Ransomware may be past its hey-day, and it is a malware threat that will not fade away. But are attackers ready to move past it to more human attack vectors?
Cyber Resilience
Ransomware

Is Ransomware Still Sexy?

John Frushour
Compensating controls are often the only cybersecurity options available to offset risk in operational technology environments still supporting legacy technology or end-of-life industrial control systems or field devices.
Industrial
Cyber Resilience

When Compensating Controls are Your Only Security Option

Dan Ricci
The E.U.'s NIS2 directive and the U.S.'s National Cybersecurity Strategy have aligned critical infrastructure's focus on cyber resilience.
Cyber Resilience

US, EU Authorities Increase Regulatory Focus on Critical Infrastructure Cybersecurity

George V. Hulme
Adopt a sustainable approach to cybersecurity that limits rampant spending on technology and still brings cyber resilience and operational resilience.
Cyber Resilience

Aim for a Sustainable Security Strategy that Brings Resilience

ADM. Michael S. Rogers, USN (Ret.)
Connected process control technologies force asset owners to change their perceptions of risk, cyber resilience, and operational resilience.
Industrial
Cyber Resilience
Operational Resilience

Managing IACS Cyber Risks

Don C. Weber
Latest on Nexus Podcast