Cybersecurity Resources
Guides, case studies, research reports, technical briefs, and data sheets for critical infrastructure cybersecurity.
Browse All Resources
10 resources
Third-Party ICS Access: Know What Vendors Can Reach
How operators should scope vendor access, trace the route into ICS and SCADA systems, retain evidence, and prepare for integrator compromise or loss of access.
NERC CIP-013: Supply Chain Risk Management Requirements
What CIP-013 requires for vendor incidents, remote access, vulnerability disclosure, software integrity, plan review, and evidence retention.
What Is OT Security?
What operational technology security covers, how OT differs from IT, and where monitoring, investigation, and response fit.
University Third-Party Cyber Risk
What universities should investigate inside their own environment when a connected vendor or service provider is breached.
What Is Network Detection and Response (NDR)?
What NDR sees, what it can answer, and where network evidence fits alongside investigation and forensics.
Water System Cyberattacks: What Operators Should Check Now
A practical checklist for water operators responding to suspicious access, PLC changes, or other signs of a cyber incident.
What Does NERC CIP-015 Actually Require?
What CIP-015 requires, who it affects, and what internal network security monitoring changes for operators.
A Vulnerability Scan Isn't a Full OT Security Assessment
Why a vulnerability scan answers only part of the question, and what a broader OT security assessment should verify.
Small Water System Cybersecurity: Who Owns What?
A practical breakdown of cybersecurity ownership across operators, IT providers, SCADA integrators, vendors, and leadership.
University Cybersecurity: Can You See What's Moving Inside?
How universities can investigate activity across campus IT, facilities, research systems, and operational infrastructure.