A curated playlist of Cyber-Physical Systems and ICS Cyber Security related podcast episodes [any language] by ICS Security enthusiasts. Contact Anton Shipulin / @shipulin_anton on Twitter if something is missing.

Podcast: Industrial Cybersecurity InsiderEpisode: Trust But Verify: Why Every Air-Gap Claim Deserves ScrutinyPub date: 2026-07-14Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationThis week we're bringing back one of our most requested episodes, because the problem it covers hasn't gone away.Dino and Jim break down one of the most dangerous assumptions in industrial security: that OT environments are air-gapped and therefore safe. Through real examples from actual plant floors, they show exactly how that assumption falls apart, from cellular modems inside machine centers to third-party technicians on guest Wi-Fi to VPN concentrators IT doesn't know exist, and explain why the gap between IT and OT teams is just as much an organizational problem as a technical one. They also get into why point-in-time assessments aren't enough, where zero trust runs into its limits in industrial settings, and what continuous visibility on the plant floor actually looks like. If you're responsible for securing manufacturing or critical infrastructure, this one is as relevant today as when it was first recorded.Chapters:(00:00:00) - The Air Gap Myth: Introduction(00:03:00) - How OT Devices End Up Connected Without IT Knowing(00:07:00) - Why Plant Managers Bypass IT Security(00:12:00) - The Compliance and Insurance Stakes(00:15:00) - Why Zero Trust Struggles in OT Environments(00:17:00) - Bringing in Outside Experts to Find the Truth(00:20:00) - Supply Chain and Hidden Connectivity(00:24:00) - What Visibility Tools Reveal on the Plant Floor(00:26:00) - Wrap-Up: Trust But Verify, Then Monitor ContinuouslyLinks And Resources:Want to Sponsor an episode or be a Guest? Reach out here.Industrial Cybersecurity Insider on LinkedInCybersecurity & Digital Safety on LinkedInBW Design Group CybersecurityDino Busalachi on LinkedInCraig Duckworth on LinkedInThanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you'd like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!The podcast and artwork embedded on this page are from Industrial Cybersecurity Insider, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: OT Cybersecurity: Why Trust Beats Technology | Jacob McCune | Ep 114Pub date: 2026-07-13Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationThe biggest challenge in OT cybersecurity isn't technology - it's earning trust. In this episode of Protect It All, host Aaron Crow sits down with Jacob McCune, a cybersecurity architect with more than 20 years of hands-on experience across both IT and OT environments. Jacob shares his unconventional journey from the help desk to securing critical infrastructure, highlighting the lessons that only real-world experience can teach. Together, Aaron and Jacob explore why communication, collaboration, and trust are often the deciding factors between successful cybersecurity programs and failed initiatives. The conversation also dives into the future of OT security, examining how AI, cloud technologies, and evolving architectures are changing industrial environments and why organizations need to rethink traditional approaches while keeping operational realities front and center. Key Learning: Why trust is the foundation of successful OT cybersecurity programs How practical experience shapes better cybersecurity decisions The importance of communication between IT, OT, and leadership teams Why compliance alone doesn't guarantee security How AI and cloud technologies are reshaping OT environments What the future may look like beyond traditional industrial architectures Key Moments: 05:18 Building a Power Plant Team 09:06 Balancing cybersecurity with business needs 11:01 Avoiding project delays during downtime 16:04 Importance of Broad Experience 17:59 A mentor's lesson on teamwork 23:41 Challenges with job postings and requirements 26:27 Managing risk and resource challenges 29:59 Helping Your Compliance Team 33:12 Dad's long career and expertise 36:44 Discussing cybersecurity risk management 39:44 Cloud resources and AI discussions 41:08 Exploring future solutions and technologies Whether you're building an OT security program, managing critical infrastructure, or looking to grow your cybersecurity career, this episode delivers practical lessons from years of real-world experience. Tune in to discover why people, trust, and communication remain the most valuable assets in modern cybersecurity only on Protect It All. About the guest: Jacob McCune is a cybersecurity architect with more than 20 years of experience across IT and OT environments, helping organizations secure critical infrastructure through practical, real-world security strategies. From starting his career on the help desk to designing enterprise security architectures, Jacob has built a reputation for bridging the gap between IT and OT through collaboration, communication, and trust. He is passionate about helping organizations move beyond compliance to build resilient cybersecurity programs that protect both people and operations. Links to connect Jacob : LinkedIn: https://www.linkedin.com/in/jake-mccune-33a08984/ CornCon Cybersecurity Conference : https://corncon.net/ Learn more about PrOTect IT All: Email: info@protectitall.co Website: https://protectitallpod.com/ep114 X: https://twitter.com/protectitall YouTube: https://www.youtube.com/@PrOTectITAll FaceBook: https://facebook.com/protectitallpodcast To be a guest or suggest a guest/episode, please email us at info@protectitall.co Please leave us a review on Apple/Spotify Podcasts: Apple - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124 Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4The podcast and artwork embedded on this page are from Aaron Crow | Operational Technology & Cybersecurity Host, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: PII PodcastEpisode: Safety, Security and Mobility: The Future of Industrial OperationsPub date: 2026-07-07Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationCalibration is becoming increasingly connected, with mobile technology playing a growing role in helping organisations improve efficiency, compliance and operational performance. However, deploying mobile solutions in industrial environments presents challenges that go far beyond those faced in traditional business settings. In this episode, we explore how industrial mobility is reshaping calibration and maintenance activities across manufacturing and the process industries. From hazardous and explosion-proof areas to highly regulated pharmaceutical facilities, organisations must balance the need for real-time access to calibration and asset data with stringent safety, security and compliance requirements. Joining us is Sami Koskinen, Director of Digital Transformation at Beamex, who discusses why successful mobile deployments require close collaboration between IT and operational teams, the impact of IT/OT convergence and the role of cybersecurity in supporting reliable, connected operations. We also examine the practical considerations for implementing mobile technology, the common pitfalls organisations should avoid and how a strategic approach can improve safety, reliability and productivity.The podcast and artwork embedded on this page are from Process Industry Informer, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Exploited: The Cyber Truth Episode: When the Grid Gets Hit: Inside OT Incident Response in Energy & RenewablesPub date: 2026-07-10Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationIn this episode of Exploited: The Cyber Truth, host Paul Ducklin is joined by RunSafe Security CEO Joe Saunders and special guest Derrick Bethea, NERC Compliance Manager and OT Cybersecurity Leader at Cypress Creek Energy, for an inside look at how utilities and renewable energy operators prepare for, respond to, and recover from cyber incidents. Drawing on years of experience securing operational technology (OT) environments, Derrick explains why incident response plans must be tested—not just documented—and how organizations navigate the complex intersection of cybersecurity, regulatory compliance, and operational resilience. Joe explores how AI is changing both cyber defense and attacker capabilities, why legacy infrastructure presents unique security challenges, and how security-by-design and security-by-demand must work together to strengthen the energy sector. Together, Joe and Derrick discuss: Why OT incident response differs from traditional IT securityThe realities of NERC CIP compliance and regulatory reportingHow AI is accelerating vulnerability discovery across critical infrastructureWhy security must be part of procurement and engineering decisionsThe importance of testing incident response plans before an emergency occursHow utilities can balance innovation with operational resilience Whether you secure power generation, renewable energy assets, industrial control systems, or other critical infrastructure, this episode offers practical lessons for strengthening cyber resilience before the next incident occurs.The podcast and artwork embedded on this page are from RunSafe Security, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Critical Assets PodcastEpisode: The Attack Surface You Eat: Cyber Risk in Food and AgriculturePub date: 2026-07-08Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationThe Attack Surface You Eat: Cyber Risk in Food and AgricultureKristin King joins Patrick Miller to make the case that food cybersecurity is not food security, and that food and agriculture is one of the most under-defended corners of critical infrastructure. From precision agriculture and processing plants to aquaculture, zoos, and aquariums, they trace where the OT and ICS risk actually lives, why the regulatory floor is so thin, and how the threat range runs from opportunistic ransomware to nation-state targeting and agroterrorism.Guest: Kristin King, founder and CEO of AnzenSage, CEO and co-founder of AnzenOT, host of the Bites & Bytes Podcast, and author of Securing What Feeds Us: Cybersecurity in Food and Agriculture (Wiley).Full show notes and every source referenced in this episode: https://ampyxcyber.com/podcast/the-attack-surface-you-eat-cyber-risk-in-food-and-agricultureGuest links AnzenSage: https://www.anzensage.com/ Bites & Bytes Podcast: https://www.bitesandbytespodcast.com/about Kristin King on LinkedIn: https://www.linkedin.com/in/kingmkristin Securing What Feeds Us (Wiley): https://securingwhatfeedsus.com/The podcast and artwork embedded on this page are from Patrick Miller, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Error Code (LS 27 · TOP 10% what is this?)Episode: EP 89: How AI Is Breaking OT CybersecurityPub date: 2026-07-07Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationAI is rewriting the OT attack playbook. Growing cloud exposure and CVE backlogs are testing the energy sector—and regulation alone won't save it. Jori VanAntwerpt, CEO and founder of Ember OT, discusses AI-driven attacks, NERC CIP 15, and why segmentation still matters. The podcast and artwork embedded on this page are from Robert Vamosi, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Industrial Cybersecurity InsiderEpisode: The Real Cost of Delaying OT Cybersecurity InvestmentPub date: 2026-07-07Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationCraig and Jim revisit one of their most practical conversations: how to build a compelling business case for OT cybersecurity budget. They break down the IT/OT ownership gap that leaves manufacturers exposed, explain how to frame liability, physical risk, and financial impact in language executives actually care about, and walk through the options every organization faces.From doing nothing to running a proof-of-concept pilot site that generates real, quantifiable data. They also tackle the role of cybersecurity insurance, why every company needs OT on its risk register, and how the concept of technology debt can finally help leadership understand the cost of decades of deferred OT security investment. Whether you're approaching this from the IT side, the OT side, or somewhere in between, this episode gives you the framework to start the budget conversation before a breach forces it.Chapters:(00:00:00) - Introduction: The High Stakes of OT Cybersecurity(00:01:00) - Why Budgeting for OT Security Is So Difficult(00:04:00) - How to Get Executives to Actually Listen(00:06:00) - Liability: Speaking the Language of Leadership(00:11:00) - Building Your OT Cybersecurity Business Case(00:13:00) - Ownership and Visibility: The First Questions to Ask(00:17:00) - Proof of Concept: Using Real Data to Drive Decisions(00:20:00) - Cybersecurity Insurance and the Third Leg of the Stool(00:26:00) - Risk Management, Roadmaps, and Playing the Long Game(00:31:00) - Technology Debt and Final TakeawaysLinks And Resources:Want to Sponsor an episode or be a Guest? Reach out here.Industrial Cybersecurity Insider on LinkedInCybersecurity & Digital Safety on LinkedInBW Design Group CybersecurityDino Busalachi on LinkedInCraig Duckworth on LinkedInJim Cook on LinkedInThanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you'd like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!The podcast and artwork embedded on this page are from Industrial Cybersecurity Insider, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: OT Security Made SimpleEpisode: Pragmatismus im OT SOC: Wie Anlagen-Monitoring in der Praxis funktioniert | OT Security Made SimplePub date: 2026-07-07Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationKlaus Mochalski und Ali Yekta (Yekta IT) diskutieren die enormen praktischen Herausforderungen beim Aufbau eines Security Operations Centers (SOC) für die OT. Erfahren Sie, warum klassische IT-Reaktionen wie das blinde Isolieren von Systemen in industriellen Anlagen hochgefährlich sind, weshalb selbst im Jahr 2026 noch infizierte USB-Sticks ein reales Problem darstellen und wie Betreiber durch die kluge Kombination aus Logdaten, Netzwerksensorik und trainierten Playbooks schrittweise ein effektives OT-Monitoring aufbauen können.Mehr zum Thema OT Security Made simple findet Ihr auf rhebo.com oder schreibt uns mit Euren Ideen, Fragen oder Gastvorschlägen an podcast@rhebo.com. The podcast and artwork embedded on this page are from Klaus Mochalski, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: AI for OT Cybersecurity: Real-World Strategies to Protect Critical InfrastructurePub date: 2026-07-06Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationAI is changing OT cybersecurity - but success still depends on understanding your operations. In this episode of Protect It All, host Aaron Crow welcomes Vivek Ponnada for a practical conversation about how artificial intelligence is transforming the way organizations defend critical infrastructure. With decades of experience in industrial automation and OT security, Vivek shares firsthand insights into the realities of protecting legacy control systems while preparing for a future increasingly shaped by AI, automation, and digital transformation. Together, Aaron and Vivek discuss how organizations can use AI to improve visibility, accelerate threat detection, prioritize vulnerabilities, and strengthen operational resilience, without losing sight of the fundamentals that keep industrial environments safe. Key Learning: How AI is transforming OT cybersecurity and industrial operations Practical AI use cases for protecting critical infrastructure Why legacy systems remain one of the biggest OT security challenges How AI can improve vulnerability management and incident response The role of digital twins in strengthening cyber resilience Why trust, collaboration, and operational knowledge remain essential in OT security Whether you're responsible for manufacturing, utilities, energy, water, or other critical infrastructure, this episode provides practical insights into balancing innovation with operational reliability. Tune in to discover how AI can strengthen OT cybersecurity while helping organizations protect the systems that keep the world running. Key Moments: 06:43 AI and cloud adoption in OT 13:27 Controller logic changes and safety steps 21:24 Discussing Digital Twins for Security Use 26:51 Managing vulnerabilities at scale 32:41 Understanding Power Plant Limitations 37:17 Keeping up with plant changes 41:43 Automating infrastructure and maintenance 49:08 Rising importance of cybersecurity investment 52:16 Early days in cybersecurity and OT 01:00:03 Ransomware impacts on industries 01:01:53 Using GPUs for security and OT About the guest : Vivek Ponnada is an Operational Technology (OT) Security practitioner with global experience and currently serves as the SVP of Growth & Strategy at Frenos, the world's first Simulated OT Pentesting Platform. Having started his career in Industrial Control Systems (ICS) as a Technician, Vivek became a Controls Engineer and commissioned Gas Turbines in Europe, Middle-East, Africa and South-East Asia. Post MBA, Vivek held multiple roles in Sales, Marketing & Business Development and Services covering ICS and OT Security solutions for Critical Infrastructure industries (Power, Oil & Gas etc.) at GE, XenonCyber Dynamics and Nozomi Networks. He was a co-lead for the Top 20 Secure PLC Coding Practices Project and regularly speaks at Information Security Conferences. Vivek has a C.Eng. from IEI, MBA from McCombs (UT Austin) and holds the ISA/IEC 62443 Cybersecurity Expert & GICSP certifications. He is a member of the ISA, ISACA, Public Safety Canada ICS Security Symposium Advisory Committee and is a CS2AI Fellow. How to connect Vivek: Frenos: https://frenos.io LinkedIn: https://www.linkedin.com/in/1ot/ Frenos YouTube: https://www.youtube.com/@Frenos_Security Learn more about PrOTect IT All: Email: info@protectitall.co Website: http://protectitallpod.com/ep113 X: https://twitter.com/protectitall YouTube: https://www.youtube.com/@PrOTectITAll FaceBook: https://facebook.com/protectitallpodcast To be a guest or suggest a guest/episode, please email us at info@protectitall.co Please leave us a review on Apple/Spotify Podcasts: Apple - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124 Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4The podcast and artwork embedded on this page are from Aaron Crow | Operational Technology & Cybersecurity Host, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Industrial Cybersecurity InsiderEpisode: Your Organization Says It's 'Green' on Manufacturing Security: Here's Why That's DangerousPub date: 2026-06-30Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationWho actually owns OT cybersecurity? And when something breaks, who's accountable?In this episode, Craig and Dino tackle a question most manufacturing organizations still haven't answered.They address why CISOs are often handed responsibility for OT security without the authority to act on it, and how plants can score "green" on a compliance dashboard while remaining blind to 80% of their actual assets.They also dig into the role OEMs and system integrators should be playing in building security into project proposals from day one, and why most still aren't.From virtual patching for legacy systems that can't be touched, to the fast-growing OT security market, this is a grounded conversation for plant leaders, engineers, and security teams trying to close the gap between IT and OT.Chapters:(00:00:00) - Who Really Owns OT Cybersecurity?(00:02:00) - Asset Owners Bear the Ultimate Responsibility(00:04:00) - Responsibility Without Authority: The CISO's Dilemma(00:06:00) - Why OEMs and SIs Aren't Including Cybersecurity in Their Proposals(00:08:00) - The False Sense of Security Driving Dangerous Blind Spots(00:10:00) - How Organizations Claim "Green" While Missing 80% of Their Assets(00:13:00) - Half Measures vs. a Real OT Cybersecurity Strategy(00:16:00) - The Growing OT Security Market and Why Some Still Aren't Paying Attention(00:18:00) - Incident Response Drills and AI Accelerating the Threat Landscape(00:20:00) - Breaking Down the IT/OT Trust Barrier for GoodLinks And Resources:Want to Sponsor an episode or be a Guest? Reach out here.Industrial Cybersecurity Insider on LinkedInCybersecurity & Digital Safety on LinkedInBW Design Group CybersecurityDino Busalachi on LinkedInCraig Duckworth on LinkedInThanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you'd like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!The podcast and artwork embedded on this page are from Industrial Cybersecurity Insider, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Nexus: A Claroty Podcast (LS 32 · TOP 5% what is this?)Episode: Dan Ricci on OT/CPS Visibility and Risk ReductionPub date: 2026-06-29Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationICS Advisory Project founder Dan Ricci joins the Nexus Podcat to discuss how to turn operational technology (OT) and cyber-physical systems (CPS) visibility into actual risk reduction. Dan describes the need to distinguish between asset lists and actual asset inventories, what those differences are, and how to make the most of the information made available. Device data such as firmware versions, protocol identification, and more are vital to other aspects of the OT and CPS protection program, including exposure management and segmentation initiatives.Dan wrote more on this topic in this article: “From Inventory to Insight: Turning OT Visibility into Concrete Risk Reduction.” This interview was pulled from Episode 4 of Nexus Digest. Subscribe and listen to the Nexus Podcast here. The podcast and artwork embedded on this page are from Claroty, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: OT Cybersecurity That Works: Defense in Depth, AI Risks & Protecting Critical InfrastructurePub date: 2026-06-29Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationWhen it comes to OT cybersecurity, the fundamentals still matter - even in the age of AI. In this episode of Protect It All, host Aaron Crow sits down with Caleb Davis for a practical discussion on securing industrial environments where uptime, safety, and resilience are non-negotiable. From legacy control systems and tight budgets to AI-powered threats and open-source security tools, Aaron and Caleb explore the real challenges organizations face every day - and the strategies that deliver meaningful protection without requiring massive investments. A major focus of the conversation is defense in depth: building multiple layers of protection, fostering trust between IT and OT teams, and strengthening foundational cybersecurity practices before chasing the latest technology. You'll learn: Why defense in depth remains the cornerstone of OT cybersecurity How to improve security in legacy industrial environments Practical ways to strengthen OT security - even with limited budgets Why asset inventory, segmentation, and basic cyber hygiene still matter most How AI is changing both offensive and defensive cybersecurity The importance of trust and collaboration between IT, engineering, and operations Whether you're responsible for manufacturing, utilities, water treatment, energy, or any critical infrastructure environment, this episode delivers practical strategies you can apply immediately. Tune in to learn how layered defenses, strong relationships, and proven fundamentals create resilient OT security programs - only on Protect It All. Key Moments: 05:41 PLCs and network security challenges 07:24 Challenges in Updating OT Systems 11:33 Impact of Downtime on Security 16:03 Using affordable cybersecurity tools 19:14 Building Trust in Business Deals 23:01 Security challenges in medical devices 25:49 Trust and IT implementation risks 28:35 Using AI for safer software updates 31:05 Cybersecurity best practices for plants 33:40 Balancing Security Costs and Business Needs 37:50 Nurturing OT like raising kids 41:20 AI and cybersecurity concerns About the guest : Caleb Davis is a founding member of SolaSec, a cybersecurity consulting firm specializing in advanced penetration testing for embedded and connected systems. Based in Dallas/Fort Worth, he holds a degree in Electrical Engineering from the University of Texas at Tyler and is a patent-holding expert with vast experience in hardware and firmware security. Caleb leads deep technical assessments across a range of high-impact industries, including medical devices, automotive, industrial control systems, ATMs and financial terminals, aerospace components, and consumer electronics. His work focuses on secure design, trusted boot processes, cryptographic implementations, and threat modeling, helping organizations integrate security throughout the development lifecycle and align with industry and regulatory standards. How to connect Celeb : SolaSec: https://solasec.io LinkedIn: https://www.linkedin.com/in/caleb-davis-400439100/ OTPCAP (OT PCAP analysis tool): https://github.com/SolaSec/otpcap Learn more about PrOTect IT All: Email: info@protectitall.co Website: https://protectitallpod.com/ep112 X: https://twitter.com/protectitall YouTube: https://www.youtube.com/@PrOTectITAll FaceBook: https://facebook.com/protectitallpodcast To be a guest or suggest a guest/episode, please email us at info@protectitall.co Please leave us a review on Apple/Spotify Podcasts: Apple - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124 Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4The podcast and artwork embedded on this page are from Aaron Crow | Operational Technology & Cybersecurity Host, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Open Source Security (LS 39 · TOP 2% what is this?)Episode: AIBOM, CBOM, and HBOM with Allan FriedmanPub date: 2026-06-29Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationJosh chats with Allan Friedman about all things Bill of Materials. Allan did a ton of work to help turn SBOM into what it is today. He has many thoughts and ideas around the new types of BOMs, a concept he's calling the OmniBOM. Allan is always fun to chat with and he brings a ton of knowledge and advice. The show notes and blog post for this episode can be found at https://opensourcesecurity.io/2026/2026-06-allan-omnibom The podcast and artwork embedded on this page are from Josh Bressers, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Exploited: The Cyber Truth Episode: From Compliance to Resilience: Securing Digital Mission Systems at Military ScalePub date: 2026-06-25Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationIn this episode of Exploited: The Cyber Truth, host Paul Ducklin is joined by RunSafe Security CEO Joe Saunders and Lt. Gen. (Ret.) Bill Bender, former Chief Information Officer of the U.S. Air Force, to discuss what it takes to build true cyber resilience across some of the world's most complex digital environments. Drawing on his experience overseeing a $17 billion IT portfolio and helping establish the first Chief Information Security Officer (CISO) and Chief Data Officer (CDO) offices within the Department of Defense, Bender explains why organizations must move beyond checklist-driven security and adopt a mission-focused approach to risk management. Together, they explore: Why compliance alone cannot secure mission-critical systemsBuilding cybersecurity leadership, accountability, and culture at scaleManaging technical debt and long-lived systems that cannot easily be replacedThe role of Zero Trust in protecting complex defense environmentsHow software supply chains and SBOMs support mission assuranceWhy public-private collaboration is essential for modernization and innovationThe growing impact of AI on cyber defense and critical infrastructure security From defense acquisition to critical infrastructure protection, this episode examines how organizations can strengthen resilience.The podcast and artwork embedded on this page are from RunSafe Security, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Industrial Cybersecurity InsiderEpisode: It's Control System Integrity not just OT CybersecurityPub date: 2026-06-24Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationMany manufacturers don't realize that an investment in OT Cybersecurity also enhances Control System Integrity.In this rewind episode, Craig and Dino dig into why so many OT intrusion detection platforms get installed but never become truly operational.They address what gets lost when IT owns the tool while OT owns the equipment, and why the word “cybersecurity” itself can stall progress the moment it lands on the plant floor.They land on a question every CISO, plant leader, and engineering director should be asking right now: who at your sites actually knows how to use the tools you have already paid for, and how do you bring the OT ecosystem into the room before the next outage forces you to?Chapters:(00:00:00) Cold Open: The Diagnostic Tool Sitting Unused in Your Plant(00:01:00) Shadow OT Versus Shadow IT and Why the Distinction Matters(00:02:30) Why IT Gets Left Out of Industrial Lifecycle Decisions(00:04:00) Reframing Cybersecurity as Control System Integrity(00:05:00) The 8:10 AM Production Shutdown Mystery(00:07:00) Three Rogue Servers Hiding in Plain Sight(00:08:00) A Brewery, a Misconfigured Module, and a Network No One Could Diagnose(00:10:00) Buying an MRI Machine and Refusing to Turn It On(00:12:00) Bringing the OT Ecosystem to the Table(00:15:00) Why IT Needs New Friends in ManufacturingLinks And Resources:Want to Sponsor an episode or be a Guest? Reach out here.Industrial Cybersecurity Insider on LinkedInCybersecurity & Digital Safety on LinkedInBW Design Group CybersecurityDino Busalachi on LinkedInCraig Duckworth on LinkedInThanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you'd like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!The podcast and artwork embedded on this page are from Industrial Cybersecurity Insider, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: OT Security Made SimpleEpisode: Rethinking Ransomware and Human Error in Industrial Security | OT Security Made SimplePub date: 2026-06-23Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationKlaus Mochalski and OT security veteran Daniel Ehrenreich discuss the true nature and measurement of industrial cyber incidents. Discover why paying for OT ransomware is a critical mistake that won't guarantee safe operations, why applying classic IT SOC concepts to operational technology is fundamentally flawed, and why the biggest threat to your infrastructure isn't necessarily a hacker, but untrained personnel.You can find more information on OT Security Made Simple at rhebo.com or send us your ideas, questions, or guest suggestions at podcast@rhebo.com.The podcast and artwork embedded on this page are from Klaus Mochalski, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: Quantum Readiness: The Cybersecurity Threat Most Organizations Aren't Prepared ForPub date: 2026-06-22Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationQuantum computing isn't a future problem - it's a cybersecurity challenge organizations need to start preparing for today. In this episode of Protect It All, host Aaron Crow welcomes Jim Sortino for a timely discussion on quantum readiness, cryptographic risk, and the future of cybersecurity. As organizations continue accumulating technical debt and relying on aging cryptographic systems, the arrival of quantum computing threatens to disrupt the very foundations of digital trust. Jim explains why leaders need to think beyond today's threats and begin preparing for a future where current encryption standards may no longer provide adequate protection. Together, Aaron and Jim explore the practical realities of quantum risk, how organizations can identify vulnerable systems, and why crypto agility is becoming one of the most important cybersecurity priorities of the next decade. You'll learn: What quantum computing means for modern cybersecurity Why cryptographic technical debt creates long-term business risk How to assess your organization's quantum readiness The importance of crypto agility and encryption modernization Practical steps security leaders can take today Why IT and OT environments must prepare for the same emerging threats Whether you're a cybersecurity professional, technology leader, board member, or simply curious about the future of digital security, this episode provides actionable insights to help you prepare before quantum disruption arrives. Tune in to learn why the organizations that start preparing today will be the ones best positioned to protect tomorrow. Key Moments: 06:02 Challenges with product maintenance and AI integration 08:42 Importance of Software in Everything 12:30 Addressing cybersecurity risks 16:00 Authentication and trust challenges 18:13 Preparing for technological changes 20:56 Planning and Implementing Projects 25:38 Budget planning for cybersecurity risks 28:54 Challenges for Small Financial Institutions 31:27 Importance of regulations in business 33:37 Legacy security systems and protocols 36:38 Quantum readiness and future risks About the guest : Jim Sortino is the Chief Revenue Officer and a Board Member at Isera Corporation, where he helps organizations address emerging cybersecurity challenges through innovative identity and cryptographic security solutions. With decades of experience working with global enterprises, Jim specializes in helping leaders navigate complex technology risks, from technical debt and encryption modernization to quantum readiness. He is a passionate advocate for proactive cybersecurity strategies that prepare organizations for the next generation of digital threats. How to connect Jim Sortino : https://www.linkedin.com/in/jamessortino/ Learn more about PrOTect IT All: Email: info@protectitall.co Website: https://protectitallpod.com/ep111 X: https://twitter.com/protectitall YouTube: https://www.youtube.com/@PrOTectITAll FaceBook: https://facebook.com/protectitallpodcast To be a guest or suggest a guest/episode, please email us at info@protectitall.co Please leave us a review on Apple/Spotify Podcasts: Apple - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124 Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4 The podcast and artwork embedded on this page are from Aaron Crow | Operational Technology & Cybersecurity Host, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: ICS Cyber Talks PodcastEpisode: Col. (Res.) Dr. Avi Cohen CTO @Kodeglass & Yubo Founder on Cyber Paradigm shifts in a chaotic eraPub date: 2026-06-18Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationמה הקשר בין ממר"ם, ניהול משבר הקורונה בבני ברק, מלחמת ה-7 באוקטובר וסייבר? על פניו, מדובר באירועים מנותקים לחלוטין. בפועל, החוט המקשר ביניהם מבוסס על שתי מילים: טכנולוגיות שו"ב (שליטה ובקרה) ואיש אחד – ד"ר אבי כהן. נחשון פינקו מארח את אל"מ (מיל') ד"ר אבי כהן לשיחה מרתקת על ניהול משברים לאומיים: משדה הקרב ועד למגפות עולמיות, מהפכת ה-AI והסוכנים האוטונומיים (Agents): פיתוח מאובטח ותפקיד ה-DPO בעולם החדש. עידן הקוונטום: האיום (וההזדמנות) שמגיעים אלינו הרבה יותר מהר מהצפוי. הצטרפו לניתוח עמוק של שינויי הפרדיגמה בהגנת הסייבר בעולם כאוטי.The podcast and artwork embedded on this page are from Nachshon Pincu, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Bites and Bytes Podcast (LS 27 · TOP 10% what is this?)Episode: THE FISH FLUENCER: James Sibley on How Tech Is Changing the Way We Farm the SeaPub date: 2026-06-15Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationWelcome to the Seafood Summer Series 2026 on the Bitesand Bytes Podcast, and we are kicking it off with a great one!Over 120 million tons of seafood are farmed every year. Mostpeople have no idea. And the technology making it happen: AI-powered feeding systems, underwater robots, satellite-connected ocean farms, is advancing faster than the policy and security frameworks trying to keep up with it. That disconnect is exactly why this conversation matters.James Sibley, known in the aquaculture world as the Fish Fluencer, is an aquaculture educator and content creator who has spent five years visiting fish farms across four continents to explain one of the most consequential and overlooked food systems on the planet. From salmon farms in Scotland and New Zealand to shellfish operations in Southeast Asia, James has seen firsthand how technology is transforming the way we farm the sea, and what happens when that technology outpaces the people managing it.This episode covers aquaculture technology, smart fishfarming, ocean farming innovation, seafood supply chain transparency, and food security. If you eat seafood, work in food and agriculture, or care about where your food comes from, this one is for you.---------------Guest: James Sibley"Fish Fluencer" | Aquaculture Creator & Founder

Podcast: Industrial Cybersecurity InsiderEpisode: Is AI Becoming Your Plant Floor's Biggest Vulnerability?Pub date: 2026-06-15Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationCraig and Dino dig into the widening gap between IT and OT and why the plant floor keeps getting left behind. They break down what Dragos ' acquisition of Phosphorus signals for the future of IoT security in manufacturing, from cameras and label printers to X-ray inspection systems that ship with default passwords and almost never get patched. The conversation gets sharp on artificial intelligence: the same models helping plants work smarter are now lowering the barrier for attackers, putting Stuxnet-style capabilities into the hands of people who lack the resources and sophistication that nation states once needed. Craig and Dino expose the everyday habits that leave operations vulnerable, including system integrators plugging personal laptops straight into production networks, locked USB ports that solve only half the problem, and remote access so wide open that a single entry point can expose an entire plant. They argue that nobody truly owns OT cyber hygiene, that frameworks like IEC 62443 and the NIST 800 82 series get named in RFPs but rarely enforced, and that leaders keep tripping over dollars to pick up nickels by choosing the cheapest bid over real protection. It's a candid, experience-driven look at why industrial security moves so slowly and what plant leaders, engineers, and security teams can actually do about it.Chapters:(00:00:00) - AI Enters the OT Battlefield(00:01:30) - Why IoT Is Creeping Onto the Plant Floor(00:03:30) - Printers, Cameras, and the Default Passwords Nobody Owns(00:06:00) - Dragos, Phosphorus, and the Managed Services Question(00:08:00) - How AI Lowers the Bar for Attacking Control Systems(00:09:40) - Stuxnet Then vs. AI-Powered Attacks Now(00:12:00) - The Laptop in the Plant: Contractors, USBs, and Open Networks(00:16:00) - Frameworks on Paper vs. Reality (IEC 62443 & NIST 800-82)(00:19:00) - Tripping Over Dollars to Pick Up Nickels(00:24:00) - Short-Tenure CISOs and Why You Shouldn't Go It AloneLinks And Resources:Want to Sponsor an episode or be a Guest? Reach out here.Industrial Cybersecurity Insider on LinkedInCybersecurity & Digital Safety on LinkedInBW Design Group CybersecurityDino Busalachi on LinkedInCraig Duckworth on LinkedInThanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you'd like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!The podcast and artwork embedded on this page are from Industrial Cybersecurity Insider, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: Cybersecurity vs Resilience: What Business Leaders Need to Know About Managing RiskPub date: 2026-06-15Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarization Cybersecurity isn't the goal. Business resilience is. In this episode of Protect It All, host Aaron Crow sits down with Lee Ward to explore why organizations need to move beyond compliance checklists and start focusing on what really matters: the ability to withstand, recover from, and adapt to disruption. Drawing on more than two decades of experience spanning the UK civil service, logistics, supply chain operations, and governance, risk, and compliance (GRC), Lee shares practical insights on helping boards and executives understand cyber risk in business terms. Together, Aaron and Lee discuss the realities of risk acceptance, operational technology challenges, patching constraints, and why resilience not perfection should be the ultimate objective of any cybersecurity program. You'll learn: Why resilience is a better business objective than security alone How to communicate cyber risk to boards and executive leadership The difference between compliance and meaningful risk reduction Practical approaches to OT security, patching, and operational constraints Why risk acceptance is a critical leadership responsibility How logistics and supply chain organizations approach resilience planning Whether you're a security leader, executive, risk manager, or OT practitioner, this episode provides practical guidance for building organizations that can continue operating when disruptions inevitably occur. Tune in to learn why resilience not just security is becoming the defining metric of successful organizations. Key Moments: 03:59 Understanding Cyber Risks for Leaders 07:16 Discussing non-cyber risks to services 11:12 Understanding business impact of cyber risk 15:45 Evaluating Cybersecurity Risks 19:37 Understanding installation complexities 21:15 Global risks affecting business resilience 24:27 Discussing regulation impacts on business 29:30 People's drive to make good choices 31:27 Industrial control systems demo at DEFCON 34:43 Limitations of technical security 38:06 The future of AI and education About the guest : Lee Ward is a Governance, Risk Management, and Compliance (GRC) leader with more than 20 years of experience spanning the UK civil service, logistics, supply chain operations, and cybersecurity. Specializing in business resilience, risk governance, and operational technology security, Lee helps organizations translate complex cyber risks into meaningful business decisions. He is passionate about moving beyond compliance-driven security programs and helping leaders build resilient organizations that can adapt, recover, and thrive in an increasingly uncertain world. How to connect Lee: https://www.linkedin.com/in/lee-ward-882a54244/ Learn more about PrOTect IT All: Email: info@protectitall.co Website: https://protectitallpod.com/ep110 X: https://twitter.com/protectitall YouTube: https://www.youtube.com/@PrOTectITAll FaceBook: https://facebook.com/protectitallpodcast To be a guest or suggest a guest/episode, please email us at info@protectitall.co Please leave us a review on Apple/Spotify Podcasts: Apple - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124 Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4 The podcast and artwork embedded on this page are from Aaron Crow, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Nexus: A Claroty Podcast (LS 32 · TOP 5% what is this?)Episode: Krista Arndt on Cyber Resilience in HealthcarePub date: 2026-06-14Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationKrista Arndt, the Associate Chief Information Security Officer (CISO) at the St. Luke's University Health Network, a 15-hospital health system in Pennsylvania and New Jersey, joins the Nexus Podcast to discuss cybersecurity and resilience in a large hospital system. Krista and her team talk about the role of healthcare cybersecurity teams in ensuring patient safety, and some of the ongoing challenges in keeping medical devices and the healthcare network available and resilient to attack. Krista also discusses a microsegmentation project implemented through Elisity that helped remove blockers impeding innovation around robotic surgical systems. Subscribe and listen to the Nexus Podcast here. The podcast and artwork embedded on this page are from Claroty, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: teissPodcast - Cracking Cyber Security (LS 31 · TOP 5% what is this?)Episode: teissTalk: Navigating cloud transformation and IT/OT convergence in CNIPub date: 2026-06-11Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationBalancing compliance, resilience, data sovereignty and uptime across IT and OT environments - whether a cloud-first strategy is viable in CNIHow the need to harness operations data for optimisation, innovation, risk management, and organisational resilience challenges legacy security modelsAdapting proven resilience models from IT cloud transformation to OT security in CNI and the importance of public-private partnerships in its success - Thom Langford, Host, #teissTalk- Amal Kotecha, Head of Technology, INEOS- Sarah Clarke, Head of Information, Strategic Command- Alex Holben, Strategy & Technology Officer, FortinetThe podcast and artwork embedded on this page are from TEISS, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Exploited: The Cyber Truth Episode: Seeing the Invisible: Asset Discovery, Segmentation, and the Reality of OT SecurityPub date: 2026-06-11Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationIn this episode of Exploited: The Cyber Truth, host Paul Ducklin is joined by Shane Fry, CTO of RunSafe Security, and Andrew McPhee, Solutions Manager for Industrial Security at Cisco, to examine why visibility is one of the biggest challenges in OT cybersecurity. As industrial environments become more connected, organizations are struggling to identify unknown assets, understand hidden dependencies, and secure systems that were never designed with cybersecurity in mind. McPhee explains how attackers exploit these blind spots, why traditional IT security approaches often fall short in OT environments, and how visibility and segmentation can help reduce risk. Together, they explore: Why asset visibility is the foundation of OT securityHow unknown assets and communication pathways create riskThe differences between active and passive asset discoveryWhy segmentation remains one of the most effective OT security controlsHow IT/OT convergence is expanding the attack surfaceThe role of risk tolerance and risk acceptance in security decisions From manufacturing facilities to critical infrastructure, this episode explores what security teams must understand before they can effectively protect the systems they depend on.The podcast and artwork embedded on this page are from RunSafe Security, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: ICS Cyber Talks PodcastEpisode: Uri Segal serial entrepreneur and CEO @Cyvore on Workspace Security proactive AI-powered defensePub date: 2026-06-11Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationהתוקפים מבינים שטכנולוגיה אפשר לעדכן ולחסום, אך רגשות ותגובות אנושיות נשארים קבועים, והם מנצלים את האמון, הפחד והסקרנות שלנו כדי לגרום לנו לפתוח להם את הדלת מרצוננו. כיום להסתמך על המשתמש בלבד שיזהה פישינג או דייפ-פייק כבר לא עובד, התחכום והתגובה המיידית של מתקפות משולבות AI מצליחות להטעות גם אנשי מקצוע הטובים ביותר לא כול שכן משתמשים רגילים. הפתרון טמון במערכות הגנה אקטיביות מבוססות AI שיכולות לנתח בזמן אמת תגובות, נקודות לחץ, ניתוח עומק של לינקים ולהתעדכן בכול רגע מתקיפות דומות שמתרחשות ברשת. נחשון פינקו מארח את אורי סגל יזם סדרתי ומנכ"ל חברת הסייבר הישראלית Cyvore (סייבור) בשיחה על אבטחת סביבת עבודה (Workspace Security) הגנה פרואקטיבית מפני מגפת הפישינג (דיוג), גניבת זהויות והונאות דיגיטליות Hackers recognize that while technology can be updated and protected, human emotions and behaviors remain predictable. They capitalize on trust, fear, and curiosity, often manipulating individuals into granting them access unintentionally Today, relying solely on users to identify phishing or deepfake attempts is no longer effective. The sophistication and speed of AI-driven attacks can deceive even seasoned professionals, making it increasingly difficult for average users to distinguish threats The answer lies in proactive, AI-powered defense systems that analyze behavioral patterns, stress indicators, and suspicious links in real time. These systems continuously update themselves by learning from emerging threats across the digital landscape Nachshon Pincu hosts Uri Segal, serial entrepreneur and CEO of Israeli cybersecurity firm Cyvore, for an in-depth discussion on Workspace Security and proactive strategies to combat phishing, identity theft, and digital fraud.The podcast and artwork embedded on this page are from Nachshon Pincu, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Error Code (LS 27 · TOP 10% what is this?)Episode: EP 88: Securing the Infrastructure AI Just Made VulnerablePub date: 2026-06-09Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationCritical infrastructure is under attack. AI just made it easier. Legacy devices can't be patched. Piotr Kupisiewicz, CTO at Elisity, describes how your best defense is the basics that you're ignoring.The podcast and artwork embedded on this page are from Robert Vamosi, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: OT Security Made SimpleEpisode: The OT Incident Impact Score and the Value of Near Misses I OT Security Made SimplePub date: 2026-06-09Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationKlaus Mochalski and OT security veteran Dale Peterson (S4 Events) discuss the long-standing discrepancy between predicted cyber doom and the actual lack of catastrophic OT incidents. Discover how the crowdsourced OT Incident Impact Score helps eliminate media FUD, and learn why tracking "near misses" is the true key for asset owners to understand and mitigate real-world threats.You can find more information on OT Security Made Simple at rhebo.com or send us your ideas, questions, or guest suggestions at podcast@rhebo.com.The podcast and artwork embedded on this page are from Klaus Mochalski, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Industrial Cybersecurity InsiderEpisode: Is Your IIoT Strategy Creating More Security Risks?Pub date: 2026-06-09Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationCraig and Dino address one of the most overlooked problems in OT security: the IIoT devices your security tools don't automatically detect.Most OT intrusion detection platforms do a reasonable job of identifying core control-layer assets such as PLCs, drives, and motor control centers. The problem is everything else. Laptops plugged into the network, third-party devices brought in by contractors, and a growing range of connected IIoT equipment often go completely undetected. Those are the gaps where risk accumulates.Craig and Dino explain why the belief that machines are air-gapped is a dangerous myth, how PLCs acting as gateways prevent intrusion detection platforms from seeing the devices behind them, and why an asset inventory is not the same as knowing your real risk and CVE exposure in multi-vendor environments.They reframe OT cybersecurity as a process-integrity problem and show how unmanaged network activity, third-party remote access, and even routine IT security scans can quietly degrade OEE and trigger unplanned downtime that costs millions.Using predictive-maintenance analogies such as thermal, harmonics, and vibration sensing, they make the case for treating digital anomalies the same way mature plants already treat mechanical ones.They close by examining why so many OT detection tools become shelfware, how to escape alert fatigue, and the two practical paths to real IT/OT convergence: building the right relationships with OEMs, system integrators, and AEC partners, and designing security-ready facilities from the ground up.It's a practical listen for CISOs, plant and engineering leaders, and OT/IT teams responsible for securing manufacturing and critical infrastructure.Chapters:(00:00:00) - Why No Industrial Asset Is Truly Air-Gapped(00:01:08) - IoT vs. IIoT: How OT Assets Get Classified(00:03:15) - The Control-Layer Blind Spot: Drives, Robots, and Motor Controls(00:05:25) - How PLC Gateways Hide Assets From Intrusion Detection(00:07:30) - Asset Inventory Isn't Risk: The CVE Gap in Multi-Vendor Plants(00:08:55) - When Cyber Blind Spots Become Costly Downtime(00:10:05) - Process Integrity: How Security Scans Disrupt Production(00:11:35) - Predictive Maintenance Meets Digital Anomaly Detection(00:17:45) - Avoiding OT Shelfware and Alert Fatigue(00:19:45) - IT/OT Convergence: Choosing a Partner and Building Secure-by-DesignLinks And Resources:Want to Sponsor an episode or be a Guest? Reach out here.Industrial Cybersecurity Insider on LinkedInCybersecurity & Digital Safety on LinkedInBW Design Group CybersecurityDino Busalachi on LinkedInCraig Duckworth on LinkedInThanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you'd like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!The podcast and artwork embedded on this page are from Industrial Cybersecurity Insider, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: Continuous Trust in Cybersecurity : Why Identity Is the New Security PerimeterPub date: 2026-06-08Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationThe podcast and artwork embedded on this page are from Aaron Crow, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Industrial Cybersecurity InsiderEpisode: Five Federal Agencies. One Zero-Trust OT Briefing. Most Haven't Read it.Pub date: 2026-06-03Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationThe joint CISA, FBI, Department of War, Department of Energy, and Department of State briefing on adapting Zero Trust to operational technology landed on April 29. Has OT leadership read it?In this episode, Craig and Dino address how the European Cyber Resilience Act is quietly forcing US plants into failed audits, why IT teams still see less than a third of OT assets, how EDR tools are taking down $100K-an-hour packaging lines, and why only a handful of integrators in North America have a real OT cybersecurity practice. They walk through what zero trust and micro-segmentation actually look like inside a 20-year-old plant with flat layer-two networks, DLR rings, jump boxes, and Cradlepoint workarounds, and lay out the first concrete move every CISO and CIO should make to start closing the IT/OT gap.Chapters:(00:00:00) - Cold Open: How the European CRA Is Failing US Plants(00:01:30) - The April 29 CISA/FBI Zero Trust in OT Briefing Nobody Read(00:05:00) - Compliance Without Teeth: Why US Regulations Aren't Moving the Needle(00:07:30) - When CrowdStrike Shuts Down a $100K-an-Hour Packaging Line(00:10:30) - The Visibility Gap: IT Sees Less Than a Third of OT Assets(00:15:30) - OEM Resistance: The Million-Dollar, Six-Month Cybersecurity Tax(00:18:30) - The Cradlepoint Workaround: How Plant Managers Bypass IT(00:21:30) - Layering Zero Trust onto a 20-Year-Old Plant Without Rip-and-Replace(00:25:30) - Why Only 5–10 of 1,000 Integrators Have a Real OT Cyber Practice(00:31:30) - Where CISOs Should Actually Be Looking (Hint: Not RSA or Black Hat)Links And Resources:Want to Sponsor an episode or be a Guest? Reach out here.Industrial Cybersecurity Insider on LinkedInCybersecurity & Digital Safety on LinkedInBW Design Group CybersecurityDino Busalachi on LinkedInCraig Duckworth on LinkedInThanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you'd like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!The podcast and artwork embedded on this page are from Industrial Cybersecurity Insider, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: (CS)²AI Podcast Show: Control System Cyber SecurityEpisode: 132: Solving Problems at Scale: Kenny Mesker on OT Cybersecurity Strategy, Risk, and LeadershipPub date: 2026-06-02Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationKenny Mesker, OT Cybersecurity Strategist and Distinguished Engineer at Chevron, joins Derek Harp to share his remarkable journey from growing up on a farm in West Texas to becoming one of the industry's leading voices in operational technology (OT) cybersecurity.With more than 30 years of experience spanning electric utilities, SCADA systems, industrial control systems, and cybersecurity, Kenny reflects on the evolution of OT security from the days of air-gapped networks to today's interconnected digital environments. He discusses how a passion for problem-solving led him from electrical engineering into industrial operations and ultimately into cybersecurity strategy.Kenny offers practical advice for professionals looking to enter the OT cybersecurity field, explaining why hands-on operational experience remains one of the most valuable foundations for success. He also explores the challenges of IT/OT convergence, the importance of risk assessment, and how cybersecurity leaders must think beyond individual systems to protect entire organizations and critical infrastructure.Looking ahead, Kenny shares his perspective on artificial intelligence, cloud technologies, and the future of OT architectures, highlighting both the opportunities and challenges these emerging technologies will bring to industrial environments.Whether you're an engineer, cybersecurity professional, student, or industry leader, this episode provides valuable insights into building a successful OT cybersecurity career while helping protect the systems that power modern society.The podcast and artwork embedded on this page are from Derek Harp, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: ICS Cyber Talks PodcastEpisode: Yigal Gueta CEO & Dor Tuchman VP-Tech @Scadasudo on cyber sales and tailored solutions for customersPub date: 2026-06-02Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationאחד הנושאים היותר מאתגרים למנהל אבטחת מידע בארגון הוא בחירת טכנולוגיות הגנת סייבר, מאות מוצרים שלכל אחד מהם השטיק שלו, ברושורים ומצגות על כך שהמוצר עושה הכול כולל קפה נוסיף את העובדה שאנשי אבטחת מידע נמצאים תמיד תחת הצף וקשה להם לבדוק מגוון טכנולוגיות ולכן הם נאלצים לקבל סוג של החלטה מושכלת ולבצע בדיקת יתכנות למוצר בודד ומאידך החשש מהחלפת טכנולוגיה מוטמעת במוצר חדש נחשון פינקו מארח את יגאל גויטע מייסד ומנכ"ל ואת דור טוכמן סמנכ"ל הנדסה ופיתוח עסקי בסקאדה סודו, בשיחה על בכירה של טכנולוגיות סייבר בכובע היועץ, הצורך בהכרות עמוקה עם הצרכים של הלקוח לפני שבכלל ניגשים למציאת פתרונות והחשיבות של התאמת פתרון לצורך ולא צורך לפתרון A major challenge for Chief Information Security Officers (CISOs) is choosing the right cybersecurity technologies. With hundreds of vendors touting unique value propositions and comprehensive solutions, the selection process becomes overwhelming. Security teams, often stretched thin, lack the bandwidth to assess multiple platforms at once. As a result, CISOs must make strategic choices and conduct a Proof of Concept (PoC) on a carefully chosen solution. On the other hand, there is apprehension about replacing an embedded, established technology with a new product. Nachshon Pincu hosts Yigal Gueta, Founder & CEO, and Dor Tuchman, VP of Engineering & Business Development at SCADASudo, in a comprehensive discussion on evaluating cyber technologies from a consultant's perspective. The conversation highlights the importance of thoroughly understanding client needs before engaging with vendors and stresses the necessity of aligning solutions with business requirements—rather than adapting cyber needs to fit a specific product. The podcast and artwork embedded on this page are from Nachshon Pincu, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: Breaking Into Cybersecurity: Soft Skills, Networking & Standing Out in a Crowded MarketPub date: 2026-06-01Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationTechnical skills might get your attention - but soft skills build cybersecurity careers. In this episode of Protect It All, host Aaron Crow sits down with technology leader and mentor Robert Whetstine for a candid conversation about what it really takes to succeed in today's cybersecurity job market. As AI reshapes hiring, the market becomes more crowded, and professionals struggle to stand out, Aaron and Robert explore the overlooked factors that often determine long-term success: adaptability, networking, authenticity, and communication. This episode goes beyond résumés and certifications to focus on the human side of career growth. You'll learn: Why soft skills matter as much as technical ability in cybersecurity How networking and community create real career opportunities The impact of AI and oversaturation on the cybersecurity job market How to stand out without relying only on certifications Why adaptability and continuous learning are critical for long-term success Lessons on leadership, resilience, and professional growth from decades in tech Whether you're breaking into cybersecurity, navigating a career transition, or trying to stay relevant in a fast-changing industry, this episode delivers practical advice and honest insights for building a sustainable and rewarding career. Tune in to learn why relationships, mindset, and adaptability are becoming the true differentiators in cybersecurity - only on Protect It All. Key Moments: 07:31 Developing essential soft skills 11:44 Embracing leadership and failure 16:14 Evaluating candidates for fit 22:00 Building a career through networking 31:16 Taking risks and finding support 35:16 The importance of empathetic leadership 38:34 Networking for job opportunities 47:28 Discussing layoffs for AI investment 50:07 Concerns about infrastructure cost 53:40 Entering the tech industry About the guest : Rob Whetstine (#BowTieSecurityGuy) has been in the technology and Cyber Security space for the last two decades. Known for the Mentoring, Making and of course his nerdy bowties. Born with an obsession for problem-solving, Rob's journey into the world of technology began at a young age, where he spent countless hours tinkering with computers found in the trash. When he was laid off a year ago from Disney after almost 20 years of service. He made it his mission to help people anyway he could. Those who were struggling in this job market and people new to Cyber. He started sharing videos on LinkedIn about his journey and sharing leadership stories. He has now started a podcast and mentors people all over the world. How to connect Rob : LinkedIn https://www.linkedin.com/in/bowtiesecurityguy/ Youtube: https://www.youtube.com/@bowtiesecurityguy Connect With Aaron Crow: Website: www.corvosec.com LinkedIn: https://www.linkedin.com/in/aaronccrow Learn more about PrOTect IT All: Email: info@protectitall.co Website: https://protectitall.co/ X: https://twitter.com/protectitall YouTube: https://www.youtube.com/@PrOTectITAll FaceBook: https://facebook.com/protectitallpodcast To be a guest or suggest a guest/episode, please email us at info@protectitall.co Please leave us a review on Apple/Spotify Podcasts: Apple - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124 Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4The podcast and artwork embedded on this page are from Aaron Crow, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Nexus: A Claroty Podcast (LS 32 · TOP 5% what is this?)Episode: Jon Holzbauer on IT/OT's Divergent Approaches to Asset SecurityPub date: 2026-05-31Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationJon Holzbauer, OT Systems Manager at Silgan Containers, joins the Nexus Podcast to discuss where IT security teams and OT operations run into challenges in protecting these diverse complicated environments in manufacturing. A clash of approaches may lead to rash decisions around cybersecurity that could disrupt key processes or impact safety and reliability. This interview was pulled from Episode 3 of Nexus Digest, a monthly recap of content published on Nexus. Subscribe and listen to the Nexus Podcast here. The podcast and artwork embedded on this page are from Claroty, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Exploited: The Cyber Truth Episode: The Cyber-Physical Truth: What We Get Wrong About Attacks on Critical InfrastructurePub date: 2026-05-28Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationIn this episode of Exploited: The Cyber Truth, host Paul Ducklin is joined by RunSafe Security CEO Joseph M. Saunders and Danielle “DJ” Jablanski, Cybersecurity Consulting Program Lead for Operational Technology at STV and former OT Cybersecurity Strategist at CISA, to examine what defenders often get wrong about attacks on critical infrastructure. With experience across government, threat intelligence, engineering, and industrial environments, DJ explains why sectors like water, rail, energy, and manufacturing require a different way of thinking about cybersecurity. Together, they explore: How cyber-physical risk differs from traditional IT riskWhy attacks can target engineering logic, process variables, and safety systemsThe challenge of securing long-lived OT assets and heterogeneous environmentsHow visibility, asset identification, and segmentation shape OT defenseWhy secure-by-design and secure-by-demand both matterWhy patching alone cannot keep up with distributed critical infrastructure From water systems to transportation networks, this episode breaks down what security leaders, asset owners, OEMs, and operators must understand to stay ahead of cyber-physical threats.The podcast and artwork embedded on this page are from RunSafe Security, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Industrial Cybersecurity InsiderEpisode: IT vs OT: The Internal Misalignment Costing Manufacturers MillionsPub date: 2026-05-27Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationMost manufacturing organizations still operate with a dangerous blind spot: IT and OT teams working in completely different dimensions with no shared visibility into plant floor cybersecurity.In this episode, Dino and Jim break down why 90% of manufacturers remain in the unaware-to-awareness phase when it comes to OT cybersecurity. They address what happens when IT tries to shoehorn enterprise security into operational environments they don't understand, and how the lack of collaboration between these two groups leads to costly unplanned downtime — sometimes at $100,000 per hour or more.Drawing from real client engagements, they reveal why OT must take a leadership role in cybersecurity (just like safety), how OT IDS tools can deliver operational value far beyond threat detection, and what it actually takes to get IT and OT speaking the same language before a breach forces them to.Chapters:(00:00:00) - Why IT and OT Need to Get to the Table Now(00:01:47) - Cats and Dogs Living Together: The IT/OT Culture Clash(00:03:00) - 90% of Manufacturers Are Still in the Dark on OT Cyber(00:06:00) - What Is OT and Why Don't OT People Know They're OT?(00:08:45) - Real Client Story: The Missing OT Team on a Global Kickoff(00:13:00) - Ask Forgiveness, Not Permission: How OT Workarounds Create Risk(00:15:00) - The OT IDS Tool Nobody's Sharing With OT(00:19:30) - Why Manual Discovery Assessments Are Throwing Money Away(00:21:00) - 15 Switch Manufacturers in One Plant: The Architecture Nightmare(00:25:30) - OT Cybersecurity Is the New Safety — Treat It Like One(00:29:00) - Final Advice for IT and OT Teams Ready to ConvergeLinks And Resources:Want to Sponsor an episode or be a Guest? Reach out here.Industrial Cybersecurity Insider on LinkedInCybersecurity & Digital Safety on LinkedInBW Design Group CybersecurityDino Busalachi on LinkedInCraig Duckworth on LinkedInThanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you'd like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!The podcast and artwork embedded on this page are from Industrial Cybersecurity Insider, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: teissPodcast - Cracking Cyber Security (LS 31 · TOP 5% what is this?)Episode: teissTalk: Measuring the return on security investments for Cyber-Physical SystemsPub date: 2026-05-28Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationQuantifying the tangible impact of unplanned downtime, regulatory fines, and equipment damageStrategies for security teams and asset owners to present CPS security projects in a language that Finance and Operations understandStreamlining asset management and reducing manual audit hours with dedicated IoMT, OT, IoT, and BMS securityThom Langford, Host, teissTalkhttps://www.linkedin.com/in/thomlangford/Danny Dresner, Professor of Cyber security, The University of Manchesterhttps://www.linkedin.com/in/danny-dresner-fciis-6382381/Elliot Gidley, Field CTO, Clarotyhttps://www.linkedin.com/in/elliotgidley/The podcast and artwork embedded on this page are from TEISS, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Error Code (LS 27 · TOP 10% what is this?)Episode: EP 87: Backup, Control Gaps, and the Real Cost of Agentic AI ActionsPub date: 2026-05-27Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationAn AI agent wiped out an entire company's data in just 9 seconds — no hacker, no ransomware involved. Todd Thorsen, Chief Information Security Officer at CrashPlan, explains how a misconfigured AI agent operating without safeguards may have caused the incident — and asks a troubling question: could your organization be next? The podcast and artwork embedded on this page are from Robert Vamosi, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Unsolicited Response (LS 33 · TOP 5% what is this?)Episode: Interview With Acting CISA Director Nick AndersenPub date: 2026-05-27Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationDale Peterson interviews acting CISA Director Nick Andersen. They briefly begin with the impact of the personnel changes at CISA, both at the leadership level and widespread exodus of anyone involved in OT. What are the plans for the rebuild of OT capabilities. The bulk of the discussion is on the need, implementation, and metrics related to CISA's ruthless prioritization of efforts and resources. What CISA and US critical infrastructure must do, and what they won't have the resources to do.The podcast and artwork embedded on this page are from Dale Peterson: ICS Security Catalyst and S4 Conference Chair, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Hack the Plant (LS 35 · TOP 3% what is this?)Episode: Kindness and Critical Infrastructure: Rethinking OT SecurityPub date: 2026-05-27Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationIn this bonus episode, Bryson Bort sits down with Andrea Haddad, a leader in technology and infrastructure architecture. Andrea has almost two decades of global experience across infrastructure, including network operations, enterprise architecture, cybersecurity, and cloud strategy. After beginning her career on the IT side, Andrea now specializes in building secure, scalable, and resilient digital foundations. She takes Bryson through her transition from IT to OT, segmentation in the real world, and why the future of manufacturing depends on both better architectures—and better intentions. What are the unique security challenges of a manufacturing environment? What are the best - and worst case scenarios for manufacturing and cyber conflict? And what's the secret to overcoming cultural differences between IT and OT? “In our industry, our main concern is protecting…. In people, protecting production, protecting society, environment. So we can work all day long to come up with new architecture, new ideas. But if there's another hacker that wants to hack into the organization, he's going to always find a way. So the magic wand, to be honest, would be just simply kindness,” Andrea said. Join us for this and more on this episode of Hack the Plan[e]t. This June 17-18, join us for Critical Effect DC! Register here: https://www.eventbrite.com/e/critical-effect-dc-2026-tickets-1987141703327?aff=oddtdtcreator The views and opinions expressed in this podcast represent those of the speaker, and do not necessarily represent the views and opinions of their employers. Hack the Plant is brought to you by ICS Village and the Institute for Security and Technology. The podcast and artwork embedded on this page are from Bryson Bort, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: OT Security Made SimpleEpisode: Der blinde Fleck der Industrie: Warum das OT Asset Inventory noch lange nicht gelöst ist | OT Security Made SimplePub date: 2026-05-26Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationKlaus Mochalski und David Petrikat (AMDT) beleuchten den blinden Fleck der OT-Security: das Asset Inventory. Erfahren Sie, warum klassische Netzwerk-Scanner oft scheitern, über die Hälfte der Unternehmen noch am Anfang steht und wie intelligentes Konfigurationsmanagement stattdessen eine verlässliche Basis für echte Cyber-Resilienz schafft.Mehr zum Thema OT Security Made simple findet Ihr auf rhebo.com oder schreibt uns mit Euren Ideen, Fragen oder Gastvorschlägen an podcast@rhebo.com. The podcast and artwork embedded on this page are from Klaus Mochalski, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: AI, Cybersecurity & Career Growth: Why Curiosity Matters More Than CredentialsPub date: 2026-05-25Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarization The future of cybersecurity belongs to people who can adapt - not just those with the longest list of certifications. In this episode of Protect It All, host Aaron Crow sits down with Peter Schawacker for a candid conversation about the evolving intersection of AI, cybersecurity, talent, and career growth. With nearly 30 years of experience in cybersecurity and technology leadership, Peter shares real-world insights on what organizations are getting wrong about hiring, why curiosity often matters more than credentials, and how AI is reshaping both technical work and the future of security teams. Together, Aaron and Peter unpack the changing role of CISOs, the dangers of checkbox-driven hiring, and why nontraditional talent may hold the key to solving the industry's growing skills gap. You'll learn: Why soft skills and curiosity are becoming critical cybersecurity assets How AI is transforming cybersecurity recruiting and technical roles The growing challenges around technical debt and workforce readiness Why traditional credentials don't always predict success How CISOs and leaders should think differently about talent and culture Practical career advice for cybersecurity professionals navigating rapid change Whether you're building a cyber team, hiring talent, or planning your next career move, this episode delivers honest insights into what it really takes to thrive in the AI-driven future of cybersecurity. Tune in to learn why adaptability, curiosity, and human ingenuity still matter most - only on Protect It All.. Key Moments: 04:08 The role of security in business 09:24 Managing Aramis online security 11:22 Hiring mindset for troubleshooting skills 13:55 Evaluating AI talent challenges 16:26 Discussing vulnerabilities in software 22:24 Early days of hacking and tech 25:55 Realizing the power of soft skills 28:15 Browsing eclectic book collections 32:13 Recent grads and AI opportunities 33:24 Getting into cybersecurity careers 37:22 Unexpected paths into security careers 40:41 Importance of critical thinking 44:35 Explaining tech's evolution over time About the Guest : Peter Schawacker is the Founder & CEO of Nearshore Cyber and a cybersecurity executive with more than 25 years of experience across multiple industries. A former CISO in four sectors, Peter specializes in cyber risk, AI governance, and workforce development. He is the creator of ARAMIS Insight, an AI-powered cybersecurity workforce competency platform aligned to the NIST NICE framework, and author of Governing AI at the Edge: An Operating Model for Citizen Development in the Enterprise. How to connect Peter: LinkedIn: https://www.linkedin.com/in/schawacker Nearshore Cyber: https://nearshorecyber.com.mx | ARAMIS Insight: https://project-aramis.com/insight Email: peter@nearshorecyber.com.mx Phone: +1 (760) 880-4258 Connect With Aaron Crow: Website: www.corvosec.com LinkedIn: https://www.linkedin.com/in/aaronccrow Learn more about PrOTect IT All: Email: info@protectitall.co Website: https://protectitall.co/ X: https://twitter.com/protectitall YouTube: https://www.youtube.com/@PrOTectITAll FaceBook: https://facebook.com/protectitallpodcast To be a guest or suggest a guest/episode, please email us at info@protectitall.co Please leave us a review on Apple/Spotify Podcasts: Apple - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124 Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4The podcast and artwork embedded on this page are from Aaron Crow, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Nexus: A Claroty Podcast (LS 32 · TOP 5% what is this?)Episode: Ric Derbyshire on Living-Off-the-Plant OT CyberattacksPub date: 2026-05-25Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationRic Derbyshire, a Principal Security Researcher at Orange Cyberdefense and an Honorary Researcher at Imperial College London, joins the Nexus Podcast to discuss how attackers are able to gain lateral movement across operational technology (OT) assets through a tactic known as Living Off the Plant.Similar to Living-off-the-Land attacks, Living-Off-the-Plant TTPs leverage native functionality specific to OT, with a potential negative impact on physical assets and safety concerns. Subscribe and listen to the Nexus Podcast here. The podcast and artwork embedded on this page are from Claroty, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Casos de Ciberseguridad IndustrialEpisode: 4/4 Desenlace de la Resiliencia Colectiva en el Sector FerroviarioPub date: 2026-05-25Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationEn este episodio se analiza qué cambios estructurales, en los ámbitos regulatorio, contractual y técnico, son imprescindibles para que la seguridad deje de depender de la buena voluntad y se consolide como una responsabilidad industrial común y obligatoria.The podcast and artwork embedded on this page are from Centro de Ciberseguridad Industrial, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Exploited: The Cyber Truth Episode: You Can't Patch Your Way Out of This: What Mythos Means for the Future of CybersecurityPub date: 2026-05-21Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationIn this episode of Exploited: The Cyber Truth, RunSafe Security Founder and CEO Joe Saunders and EVP and CSO Doug Britton join us for a strategic discussion on what Anthropic's “Mythos moment” means for the future of cyber defense. Joe and Doug explore why AI-driven vulnerability discovery marks a fundamental turning point for enterprises, critical infrastructure, and national security. As AI accelerates the discovery and weaponization of vulnerabilities, traditional patch-and-remediate strategies are becoming increasingly unsustainable, especially for safety-critical and mission-critical systems that cannot be patched quickly or frequently. Together, Joe and Doug examine: Why “find and fix” alone cannot scale in the AI eraHow AI is shifting the balance between attackers and defendersWhy patch timelines are widening as vulnerability discovery acceleratesThe growing need for resilience-based cybersecurityHow organizations can reduce exploitability without rewriting legacy systemsWhy mitigation technologies are becoming essential for critical infrastructure and national security Whether you secure embedded systems, manage cyber risk across critical infrastructure, or lead product security strategy, this episode makes the case for a new approach: one built not around chasing every vulnerability faster, but around ensuring systems remain resilient even when flaws exist.The podcast and artwork embedded on this page are from RunSafe Security, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: The Smart Buildings Academy Podcast | Teaching You Building Automation, Systems Integration, and Information Technology (LS 43 · TOP 1% what is this?)Episode: SBA 546: VPN and Remote Access in BASPub date: 2026-05-21Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationRemote access is no longer optional in building automation. But every connection to your BAS can also become a pathway for risk if security is treated as an afterthought. In this episode, you'll learn how VPNs, remote desktop tools, and zero trust strategies are reshaping the way automation professionals manage buildings remotely. You'll also hear why many BAS networks remain vulnerable and where even experienced teams make costly mistakes. Topics Covered • Why BAS cybersecurity is different from traditional IT security • The real differences between site-to-site, client-to-site, and zero trust access • How network segmentation protects building systems from larger threats • Common remote access mistakes that create hidden vulnerabilities • What a practical and secure remote access strategy should include As building systems become more connected, the challenge is no longer just enabling access. It's securing it without compromising operations.The podcast and artwork embedded on this page are from Smart Buildings Academy, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Smashing Security (LS 55 · TOP 0.5% what is this?)Episode: High-speed train hacks and homicidal lawnmowersPub date: 2026-05-20Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationA 23-year-old radio enthusiast spent £300 on a piece of kit from the internet, and used it to bring four packed high-speed trains to a screeching halt. His defence in court? Possibly the most creative excuse we've heard all year.Meanwhile, owners of $4,000 robot lawnmowers are discovering that their gadget can be hijacked over the internet, redirected at journalists who foolishly lie down in front of it, and used to harvest Wi-Fi passwords, email addresses, and GPS coordinates. Change the default password? Sure - until the next firmware update silently resets it back.Plus - don't miss our featured interview with XBOW's Brendan Dolan-Gavitt about how AI is transforming penetration testing.All this and more in episode 468 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Geoff White.EPISODE LINKS:Open source tool maker Grafana Labs says hackers stole its code, refuses to pay ransom - TechCrunch.Man accused of stealing Beyoncé's unreleased music takes guilty plea - ABC News.Shai-Hulud code drop: Open season for supply chain attacks- ReversingLabs.Student hacked Taiwan high-speed rail to trigger emergency brakes - BleepingComputer.Polish teen derails tram after hacking train network - The Register.The Cheap Radio Hack That Disrupted Poland's Railway System - WIRED.The man with an army of Yarbo robot lawn mowers - The Verge.Ever been run over by a robot? I have - for science! - TikTok.RD280UA 28” WQXGA BenQ Programming Monitor with Backlight and Flexible Arm - BenQ.Kai Shun DM-0708 combination sharpening stone, grain 300/1000 - Knives and Tools.AI-Assisted ICS Attack on a Water Utility - Dragos.Adversaries Leverage AI for Vulnerability Exploitation, Augmented Operations, and Initial Access - Google Cloud Blog.Smashing Security merchandise (t-shirts, mugs, stickers and stuff)SPONSORS:Vanta - Expand the scope of your security program with market-leading compliance automation… while saving time and money. Smashing Security listeners get $1000 off!XBOW - The autonomous offensive security platform that helps security teams scale. Start a pentest today.OPSWAT - Read Benny Czarny's book, "Cybersecurity Upside Down", to rethink how you protect your organization from file-based threats, including those powered by AI.SUPPORT THE SHOW:Tell your friends and colleagues about “Smashing Security”, and leave us a review on Apple Podcasts or Podchaser.Become a supporter! Join Smashing Security PLUS via Patreon or Apple Podcasts for ad-free episodes on our early-release feed!FOLLOW THE SHOW:Follow us on Bluesky or Mastodon, or on the Smashing Security subreddit, and visit our website for more episodes.THANKS:Theme tune: "Vinyl Memories" by Mikael Manvelyan.Assorted sound effects: AudioBlocks.Privacy & Opt-Out: https://redcircle.com/privacyThe podcast and artwork embedded on this page are from Graham Cluley, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Emerson Automation Experts (LS 24 · TOP 10% what is this?)Episode: Protecting Critical Infrastructure: NERC CIP-015-01 and Internal Network Security Monitoring (INSM)Pub date: 2026-05-20Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationWe unpack what the NERC CIP-015-01 standard requires, the compliance timelines utilities must plan for, and the practical challenges of deploying monitoring inside operational technology environments.The podcast and artwork embedded on this page are from Emerson Team, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: ICS Cyber Talks PodcastEpisode: Liron Ner VP Engineering & Oren Valdman ResiliOTech product manager @DVplan on Cyber Risk AssessmentPub date: 2026-05-19Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationהשגרה המקובלת בעולמות אבטחת המידע מבוססת על מחזוריות מתמדת: ביצוע סקר סיכוני סייבר, גיבוש תוכנית פעולה, תיקון פערים ומבדקי חדירות – תהליך החוזר חלילה מדי 12 עד 18 חודשים. למרות ההתקדמות הטכנולוגית בתחום הגנת הסייבר, סקר סיכוני הסייבר נותר אחד התהליכים הבודדים שכמעט ולא השתנו. הוא עדיין נשען במידה רבה על הידע האישי של הסוקר, מומחיותו והמתודולוגיה הנבחרת על ידו. בעתיד הקרוב מגמה זו עשויה להשתנות, עם כניסתם לשימוש של מודלי שפה גדולים במוצר כמו רזיליוטק לעיבוד תשובות משאלונים והצלבתן מול מתקפות סייבר בפועל, סקרי סיכונים אחרים ותקני התעשייה המקובלים. נחשון פינקו מארח את לירון נר, סמנכ"ל הנדסה וטכנולוגיה, ואת אורן ולדמן, מנהל מוצר רזילויוטק בחברת די.וי פלאן בדיון על אופטימיזציה של סקרי סיכוני סייבר במטרה להשיג תוצאות טובות יותר, תוכניות עבודה יישומיות ותיקון פערים אפקטיבי. The podcast and artwork embedded on this page are from Nachshon Pincu, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: Industrial Cybersecurity InsiderEpisode: OT Security Isn't an IT Problem: What it Takes to Get it RightPub date: 2026-05-19Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationCraig sits down with Wil Klusovsky, a 26-year cybersecurity veteran and CRO at viLogics, to break down why asset visibility and exposure management are the foundation of any solid OT security strategy.From the myth of the air-gapped shop floor to the real-world math behind quantifying cyber risk in dollars and cents, Will and Craig explore how manufacturers can move beyond fear-based selling, bridge the gap between IT and operations, and build programmatic cybersecurity that protects both production uptime and the bottom line.They discuss how to frame cyber risk as business risk, why compensating controls and context matter more than raw vulnerability numbers, and why the CISO's real job is "chief inside selling officer."Chapters:(00:00:00) - Welcoming Will to the Podcast!(00:02:12) - Why Asset Visibility Is the Starting Point for OT Security(00:03:48) - The Air Gap Myth and Legacy Systems on the Shop Floor(00:04:52) - Translating Cyber Risk Into Dollars and Cents(00:07:05) - Quantifying Downtime: Mean Time to Recovery and True Cost of Ownership(00:09:55) - Risk Appetite: Spend to Mitigate or Accept the Exposure?(00:11:32) - Who Really Owns the Risk? Executives, Not CISOs(00:13:00) - Uptime, OEE, and Why Cybersecurity Risk Is Business Risk(00:15:45) - Remote Access Risks and Competing Priorities on the Shop Floor(00:18:04) - The "Chief Inside Selling Officer" — Getting Buy-In Before Budget(00:19:48) - The Get Out of Jail Free Card: Aligning Incentives Across Teams(00:22:30) - Context Over CVE Counts: 600 Critical Vulns, Zero Exploitable(00:25:42) - Prioritizing Remediation by Business Impact, Not Severity Score(00:26:30) - Wrap-Up and Part 2 Preview: Business Impact AnalysisLinks And Resources:Wil Klusovsky on LinkedInWant to Sponsor an episode or be a Guest? Reach out here.Industrial Cybersecurity Insider on LinkedInCybersecurity & Digital Safety on LinkedInBW Design Group CybersecurityDino Busalachi on LinkedInCraig Duckworth on LinkedInThanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you'd like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!The podcast and artwork embedded on this page are from Industrial Cybersecurity Insider, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: AI in OT Cybersecurity: Real-World Risks, Smarter Defenses & the Future of Critical InfrastructurePub date: 2026-05-18Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationAI is rapidly transforming cybersecurity but are critical infrastructure environments ready for what comes next? In this episode of Protect It All, host Aaron Crow sits down with longtime colleague and cybersecurity expert Clark Liu to explore how artificial intelligence is reshaping both IT and OT security operations. From incident response and compliance frameworks to workforce shifts and operational resilience, Aaron and Clark unpack the real-world opportunities and very real risks of integrating AI into industrial environments. Together, they tackle the evolving role of frameworks like NERC CIP and NIST, the challenges of balancing compliance with actual security outcomes, and how organizations can responsibly adopt AI without increasing exposure. You'll learn: How AI is changing OT and IT cybersecurity operations The role of AI in incident response, documentation, and monitoring Why compliance frameworks alone don't guarantee resilience The risks of adopting AI without strong operational foundations How organizations can prepare for AI-powered threats and workforce changes Practical insights for balancing innovation, budgets, and security priorities Whether you're leading OT security, managing critical infrastructure, or evaluating AI adoption in your organization, this episode delivers practical guidance for navigating cybersecurity's next major shift. Tune in to learn how AI is transforming cyber defense and what organizations must do to stay resilient only on Protect It All. Key Moments; 05:33 Understanding cybersecurity compliance frameworks 07:11 Overlooked vulnerabilities in systems 09:59 Balancing multiple firewall vendors 15:17 Delegating tasks to AI 19:11 Importance of documenting commits 21:51 Hospital system shutdown crisis 25:11 AI uncovering software vulnerabilities 26:37 Engineers implementing AI in automation 31:26 AI tools and personal security 32:55 Password security practices 36:46 Using AI for basic tasks 39:38 Transition to off-the-shelf software 42:29 Going back to basics with appliances 47:02 Excitement About Future AI Capabilities Guest Profile : Clark Liu is a veteran OT cybersecurity expert and one of the original contributors to the NERC CIP standards. With nearly two decades in energy and critical infrastructure security - including leadership roles at EY and GALLO - Clark specializes in OT risk management, compliance strategy, and securing industrial operations from the plant floor to the cloud. How to connect Clark: LinkedIn : https://www.linkedin.com/in/clarkliu/ Connect With Aaron Crow: Website: www.corvosec.com LinkedIn: https://www.linkedin.com/in/aaronccrow Learn more about PrOTect IT All: Email: info@protectitall.co Website: https://protectitall.co/ X: https://twitter.com/protectitall YouTube: https://www.youtube.com/@PrOTectITAll FaceBook: https://facebook.com/protectitallpodcast To be a guest or suggest a guest/episode, please email us at info@protectitall.co Please leave us a review on Apple/Spotify Podcasts: Apple - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124 Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4The podcast and artwork embedded on this page are from Aaron Crow, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.