Glossary · OT cybersecurity
OT security
Also known as: OT cybersecurity, Industrial cybersecurity, ICS security
German: OT-Security
OT security is the cybersecurity of operational technology: the protection of industrial control systems, their networks, software and data against attacks and misuse, with priority on availability, integrity and the safety of people, plant and environment.
- OT security
In one sentence
OT security is the cybersecurity of operational technology, protecting control systems, networks and data with priority on availability and safety.
Example
The OT security program of a pharmaceutical plant covers segmentation of production networks, controlled vendor remote access, patch testing on a reference system and OT incident response exercises.
How it applies
- Engineering: OT security is designed into systems through Security risk assessment, the Zone and conduit model, hardened components and secure development by suppliers, all described in the IEC 62443 series.
- Operation: Asset owners run OT security as a continuous program: asset inventory, access control, monitoring, patch and vulnerability management, backups and incident response.
- Safety: OT security and functional safety influence each other. A security measure that blocks safety communication is as harmful as an attack; see Safety-security convergence.
- Documentation: Security manuals and hardening guides are part of the product. They should describe the intended environment, the security functions, required operator measures and the update and vulnerability reporting process, in terms both automation and IT readers understand.
OT security vs. IT security
IT security often prioritizes confidentiality and can patch and reboot quickly. OT security must work with legacy devices, real-time constraints and certified configurations, and prioritizes availability and integrity of control.