The Need to Protect Critical Infrastructure with Cybersecurity for IoT and OT

With the growing threat of cyberattacks on critical U.S. infrastructure, is the government prepared?

A December 1, 2022, report released by the U.S. Government Accountability Office (GAO) called for immediate action on cybersecurity for IoT and OT-connected devices to provide better security for critical infrastructure vulnerable to today’s sophisticated cyber threats.

The report indicates 16 critical infrastructure areas reliant on internet-connected devices and systems, providing essential services from electricity to health care. All sectors fall under the GAO report’s high-risk category.

A primary concern for the GAO is that more action is needed to provide the level of cybersecurity required to secure these critical U.S. departments. The GAO has provided more than 90 cybersecurity recommendations since 2010, with more than 50 unimplemented as of June 2022.

Mike Sheward, Head of Security for Particle, believes the U.S. government needs to get serious about cybersecurity for IoT and OT.

Mike’s Thoughts

“On the government accountability officers report on IOT and OT security. So, there are a couple of things that jump out to me. The first is that there are no shortage of different agencies within the federal government making recommendations about cybersecurity for these kinds of devices and having lots of different recommendations from lots of different places about lots of different types of devices is a very good way to kind of get into a state of analysis paralysis and not apply anything cause you’re worried about which standard you should be applying.

So, I would like to see more of a focus on the ecosystem that those devices are connected to. Maybe kind of sorting them out by classification so we can focus on securing that platform or that environment more than each device on a device-by-device basis. That would be probably more effective. The second thing is that a lot of the previous recommendations made in the report have not been implemented yet. That’s because, in my opinion, the government is probably still in the discovery stage for a lot of this stuff. The larger the organization, the harder it is to apply any kind of cybersecurity program.

Just because you don’t know what’s out there, you lose track of it. You can’t protect what you don’t know about. It’s hard to think of many organizations that are bigger than the federal government. So, I imagine that they are, working on doing the discovery, and so I need to focus on speeding that up so that you could probably do a lot of kind of disabling of things that no longer need to be in the environment, and then focusing on the things that are left for the new security standards.

Follow us on social media for the latest updates in B2B!

Image

Latest

governance
Exploring the Intersection of Board Governance, Community Engagement and Creativity with Ann Margolin
February 23, 2026

Behind every city vote, hospital budget or zoning decision is a leader navigating tough, often conflicting priorities. Right now, public leaders are operating in an environment of rising healthcare costs, workforce shortages and heightened community expectations—especially within safety-net systems that collectively provide billions in uncompensated care each year. The stakes are real—they affect patients…

Read More
career-connected
Workforce Alignment, and the New Blueprint for Career-Connected Learning Ecosystems
February 23, 2026

Workforce shortages, shifting federal and state policy, and rising skepticism about the return on investment of a traditional four-year degree have pushed career-connected learning to the forefront of education reform. According to the U.S. Bureau of Labor Statistics, overall employment is expected to increase by nearly 4.7 million jobs between 2022 and 2032, with…

Read More
hiring strategy
AI Is Reshaping Hiring Strategy And Critical Roles Are Shifting to Permanent Talent
February 20, 2026

Artificial intelligence is no longer a future-state discussion—it’s a present-day leadership priority. As enterprises accelerate the adoption of generative AI and automation tools, hiring strategies are evolving alongside broader business transformation. According to McKinsey’s 2025 State of AI report, 88% of organizations now report using AI in at least one business function, underscoring how…

Read More
Larry North
Resilience, Reinvention, and the Relentless Pursuit of Growth: Larry North’s Journey from Fitness Icon to Private Equity Leader
February 20, 2026

Entrepreneurship is being glamorized in real time. Social media highlights overnight wins, AI tools promise instant scale, and private equity is reshaping industries at a rapid clip. Yet behind every “success story” is something far less flashy: failure, adaptability, and the discipline to keep going when life hits hard. According to the U.S. Bureau…

Read More