The Need to Protect Critical Infrastructure with Cybersecurity for IoT and OT

With the growing threat of cyberattacks on critical U.S. infrastructure, is the government prepared?

A December 1, 2022, report released by the U.S. Government Accountability Office (GAO) called for immediate action on cybersecurity for IoT and OT-connected devices to provide better security for critical infrastructure vulnerable to today’s sophisticated cyber threats.

The report indicates 16 critical infrastructure areas reliant on internet-connected devices and systems, providing essential services from electricity to health care. All sectors fall under the GAO report’s high-risk category.

A primary concern for the GAO is that more action is needed to provide the level of cybersecurity required to secure these critical U.S. departments. The GAO has provided more than 90 cybersecurity recommendations since 2010, with more than 50 unimplemented as of June 2022.

Mike Sheward, Head of Security for Particle, believes the U.S. government needs to get serious about cybersecurity for IoT and OT.

Mike’s Thoughts

“On the government accountability officers report on IOT and OT security. So, there are a couple of things that jump out to me. The first is that there are no shortage of different agencies within the federal government making recommendations about cybersecurity for these kinds of devices and having lots of different recommendations from lots of different places about lots of different types of devices is a very good way to kind of get into a state of analysis paralysis and not apply anything cause you’re worried about which standard you should be applying.

So, I would like to see more of a focus on the ecosystem that those devices are connected to. Maybe kind of sorting them out by classification so we can focus on securing that platform or that environment more than each device on a device-by-device basis. That would be probably more effective. The second thing is that a lot of the previous recommendations made in the report have not been implemented yet. That’s because, in my opinion, the government is probably still in the discovery stage for a lot of this stuff. The larger the organization, the harder it is to apply any kind of cybersecurity program.

Just because you don’t know what’s out there, you lose track of it. You can’t protect what you don’t know about. It’s hard to think of many organizations that are bigger than the federal government. So, I imagine that they are, working on doing the discovery, and so I need to focus on speeding that up so that you could probably do a lot of kind of disabling of things that no longer need to be in the environment, and then focusing on the things that are left for the new security standards.

Follow us on social media for the latest updates in B2B!

Image

Latest

data-driven tools
Leverage Data-Driven Tools and Local SEO for Maximum Search Engine Rankings
July 26, 2024

As businesses continue to navigate the digital landscape, data-driven tools are more crucial than ever for effective SEO strategies. Understanding and implementing the proper SEO practices can make a significant difference with evolving algorithms and competitive markets. Given that 75% of users never scroll past the first page of search results, this statistic underscores…

Read More
On-device AI
On-Device AI is Today’s Tech Innovation, Competition and Market Leadership Driver
July 26, 2024

On-device AI revolutionizes the tech landscape, making it a critical factor for industry dominance. This cutting-edge technology directly integrates advanced AI capabilities into devices, transforming consumer and enterprise applications. This shift stems from the need for improved performance, reduced latency, enhanced data privacy & security, and personalized user experiences. With advancements in neural processing…

Read More
modern supply chains
The Role of AI in Modern Supply Chains: Insights from Aaron Hatfield at Arvist
July 26, 2024

Artificial intelligence rapidly transforms modern supply chains, with companies like Arvist leading the charge. In a recent episode of Hammer Down, hosted by Mike Bush, Aaron Hatfield, the Head of Sales at Arvist, sheds light on AI’s practical applications and benefits in enhancing supply chain operations. Is AI in the supply chain a double-edged…

Read More
semiconductor manufacturing
Training New Semiconductor Manufacturing Professionals is Key to Meet Coming Domestic Manufacturing Demand
July 26, 2024

Over the past few years, the U.S. has made significant strides in semiconductor manufacturing, driven by substantial investments and strategic policies. With the CHIPS Act expected to triple domestic semiconductor manufacturing capacity by 2032, the need for a skilled workforce is more urgent than ever. This discussion explores the key question: What does the…

Read More