POPULARITY
Cyber threats are mounting for utilities' critical infrastructure assets globally. If used by savvy hackers, AI also provides new tools for those trying to disrupt power supply or extract data. Decentralization of assets through the rollout of renewables is growing the attack vector for malign actors, NERC SVP Manny Cancel tells Energy Evolution correspondent Camilla Naschert. Cybersecurity expert Andrew Ginter of Waterfall Security lays out the threat landscape and why IT teams and engineers need to layer their prevention approaches. Subscribe to Energy Evolution to stay current on the energy transition and its implications. The show is co-hosted by veteran journalists Dan Testa and Taylor Kuykendall.
Cyber threats are mounting for utilities' critical infrastructure assets globally. If used by savvy hackers, AI also provides new tools for those trying to disrupt power supply or extract data. Decentralization of assets through the rollout of renewables is growing the attack vector for malign actors, NERC SVP Manny Cancel tells Energy Evolution correspondent Camilla Naschert. Cybersecurity expert Andrew Ginter of Waterfall Security lays out the threat landscape and why IT teams and engineers need to layer their prevention approaches. Subscribe to Energy Evolution to stay current on the energy transition and its implications. The show is co-hosted by veteran journalists Dan Testa and Taylor Kuykendall.
Podcast: (CS)²AI Podcast Show: Control System Cyber SecurityEpisode: 104: Author Spotlight: Andrew Ginter - Illuminating the Path to Industrial Security Excellence with Waterfall Security SolutionsPub date: 2023-12-05Today, we are bringing you a fresh, new format called the Author Spotlight, where we focus on the authors within our community. We are delighted to launch the Author Spotlight by shining our light on Andrew Ginter, the VP of Industrial Security at Waterfall Security Solutions. Andrew has been a steadfast CS2AI supporter since its inception, dedicating considerable time to CS2AI initiatives, and Waterfall is one of our oldest sponsors. We are grateful to Andrew for generously sharing his insights and all the invaluable contributions he and his company, Waterfall, have made. Andrew's offerings include editing, reading, and committing much of his time to community projects. Join us today as we explore Andrew's wealth of wisdom and experience.Show HighlightsAndrew reflects on his writing process and discusses his new book, The Golden Black Book.Andrew talks about a new approach of combining cybersecurity and engineering to manage risk.How Andrew structured his book for a mixed audience of engineers and managersThe importance of using mathematical modeling when making cybersecurity decisions rather than relying on intuition or guessworkAndrew highlights the lack of cybersecurity expertise within industrial settings.How complex risks have created the need for a multi-faceted approach to cybersecurityAndrew emphasizes the importance of security by design within product development.Why it's essential to understand the broader definition of vulnerability Andrew discusses the challenges of writing a book on industrial cybersecurity Links and resources:(CS)²AI Derek Harp on LinkedInAndrew Ginter on LinkedInWaterfallSecurityThe podcast and artwork embedded on this page are from Derek Harp, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Podcast: New Cyber Frontier (LS 27 · TOP 10% what is this?)Episode: NCF-334 Security Engineering for Industrial SystemsPub date: 2023-11-13Welcome back, everybody, to NewCyberFrontier. In today's episode, guest Andrew Ginter, Vice President of Industrial Security and Waterfall Security. Mr Ginter is also the author of a book titled, "Engineering Grade OT Security: A Managers Guide." He defines his book as sitting at the intersection of industrial systems and Engineering. These systems could range from inputs and outputs from computer systems such as power plants, Shoe factories, and high-speed passenger train rails. Mr. Ginter explains his book further by saying, "Small Shoe factories and High-speed train rail switches are very different on the Industrial system spectrum. What determines the difference is worst case consequences of compromise." What would be the worst outcome to a Shoe factory versus Passenger Train Rail switches if all commands to computer systems fail? Shoe factories might have to replace all the equipment and a couple million dollars worth of expenses that insurance could cover, but for the switches on a train, if all computer commands fail, this could result in massive casualties and two trains colliding, which insurance can not cover. These are two diverse examples of industrial systems that need to face different approaches to computer systems. Mr Ginter also explains in his book that Engineering Security is a public safety issue with no room for errors. "In recent years, we have been automating everything, which is not always the best option; we must have fail-safes in place with security and protection." We face many problems and cyber attacks in the engineering world that must be considered today. Thank you for watching NewCyberFrontier.The podcast and artwork embedded on this page are from Logic Central Online, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Podcast: New Cyber Frontier (LS 27 · TOP 10% what is this?)Episode: NCF-334 Security Engineering for Industrial SystemsPub date: 2023-11-13Welcome back, everybody, to NewCyberFrontier. In today's episode, guest Andrew Ginter, Vice President of Industrial Security and Waterfall Security. Mr Ginter is also the author of a book titled, "Engineering Grade OT Security: A Managers Guide." He defines his book as sitting at the intersection of industrial systems and Engineering. These systems could range from inputs and outputs from computer systems such as power plants, Shoe factories, and high-speed passenger train rails. Mr. Ginter explains his book further by saying, "Small Shoe factories and High-speed train rail switches are very different on the Industrial system spectrum. What determines the difference is worst case consequences of compromise." What would be the worst outcome to a Shoe factory versus Passenger Train Rail switches if all commands to computer systems fail? Shoe factories might have to replace all the equipment and a couple million dollars worth of expenses that insurance could cover, but for the switches on a train, if all computer commands fail, this could result in massive casualties and two trains colliding, which insurance can not cover. These are two diverse examples of industrial systems that need to face different approaches to computer systems. Mr Ginter also explains in his book that Engineering Security is a public safety issue with no room for errors. "In recent years, we have been automating everything, which is not always the best option; we must have fail-safes in place with security and protection." We face many problems and cyber attacks in the engineering world that must be considered today. Thank you for watching NewCyberFrontier.The podcast and artwork embedded on this page are from Logic Central Online, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Welcome back, everybody, to NewCyberFrontier. In today's episode, guest Andrew Ginter, Vice President of Industrial Security and Waterfall Security. Mr Ginter is also the author of a book titled, "Engineering Grade OT Security: A Managers Guide." He defines his book as sitting at the intersection of industrial systems and Engineering. These systems could range from inputs and outputs from computer systems such as power plants, Shoe factories, and high-speed passenger train rails. Mr. Ginter explains his book further by saying, "Small Shoe factories and High-speed train rail switches are very different on the Industrial system spectrum. What determines the difference is worst case consequences of compromise." What would be the worst outcome to a Shoe factory versus Passenger Train Rail switches if all commands to computer systems fail? Shoe factories might have to replace all the equipment and a couple million dollars worth of expenses that insurance could cover, but for the switches on a train, if all computer commands fail, this could result in massive casualties and two trains colliding, which insurance can not cover. These are two diverse examples of industrial systems that need to face different approaches to computer systems. Mr Ginter also explains in his book that Engineering Security is a public safety issue with no room for errors. "In recent years, we have been automating everything, which is not always the best option; we must have fail-safes in place with security and protection." We face many problems and cyber attacks in the engineering world that must be considered today. Thank you for watching NewCyberFrontier.
Podcast: Control System Cyber Security Association International: (CS)²AIEpisode: 50: Solution Spotlight: Waterfall SecurityPub date: 2022-09-20We are excited to introduce The Solutions Spotlight, our new format for the (CS)²AI Podcast! Today's guests, Lior Frenkel and Andrew Ginter have both been on the show before to share their biographies and personal journeys in our series of interviews with various leaders across the industry in cybersecurity for control systems. Lior is the Co-founder of Waterfall Security, and Andrew is Waterfall's VP of Industrial Security. Lior and Andrew are long-time industry supporters and supporters of (CS)²AI. They join us today for today's episode of The Solutions Spotlight to talk about Waterfall Security, what it does, and how the company got to where it is today.Stay tuned to hear what Lior and Andrew have to say about how Waterfall originated and what they do!Show highlights:Why they do not like to use the term segmentation at Waterfall and prefer to think of it as safe connectivity.How Waterfall provides all the benefits of connectivity without the risks. How ransomware has changed the market.What data diodes are, what they get used for, and how they differ from unidirectional gateways. How Waterfall's unidirectional security gateway connects and protects industrial and corporate networks.How does Waterfall's unidirectional security gateway work?Where Waterfall's technology gets applied today.Lior shares Waterfall's origin story. Lior expected the industry to be more advanced than it is currentlyWhat excites Lior for the future?The changes Andrew foresees for the future.Mentioned in this episode:Join CS2AIJoin the largest organization for cybersecurity professionals. Membership has its benefits! We keep you up to date on the latest cybersecurity news and education. Preroll MembershipOur Sponsors:We'd like to thank our sponsors for their faithful support of this podcast. Without their support we would not be able to bring you this valuable content. We'd appreciate it if you would support these companies because they support us! Network Perception Waterfall Security Tripwire KPMG CyberThe podcast and artwork embedded on this page are from Derek Harp, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Control System Cyber Security Association International: (CS)²AI
We are excited to introduce The Solutions Spotlight, our new format for the (CS)²AI Podcast! Today's guests, Lior Frenkel and Andrew Ginter have both been on the show before to share their biographies and personal journeys in our series of interviews with various leaders across the industry in cybersecurity for control systems. Lior is the Co-founder of Waterfall Security, and Andrew is Waterfall's VP of Industrial Security. Lior and Andrew are long-time industry supporters and supporters of (CS)²AI. They join us today for today's episode of The Solutions Spotlight to talk about Waterfall Security, what it does, and how the company got to where it is today. Stay tuned to hear what Lior and Andrew have to say about how Waterfall originated and what they do! Show highlights: Why they do not like to use the term segmentation at Waterfall and prefer to think of it as safe connectivity. How Waterfall provides all the benefits of connectivity without the risks. How ransomware has changed the market. What data diodes are, what they get used for, and how they differ from unidirectional gateways. How Waterfall's unidirectional security gateway connects and protects industrial and corporate networks. How does Waterfall's unidirectional security gateway work? Where Waterfall's technology gets applied today. Lior shares Waterfall's origin story. Lior expected the industry to be more advanced than it is currently What excites Lior for the future? The changes Andrew foresees for the future. Mentioned in this episode: Join CS2AI Join the largest organization for cybersecurity professionals. Membership has its benefits! We keep you up to date on the latest cybersecurity news and education. https://cs2ai.captivate.fm/cs2ai (Preroll Membership) Our Sponsors: We'd like to thank our sponsors for their faithful support of this podcast. Without their support we would not be able to bring you this valuable content. We'd appreciate it if you would support these companies because they support us! Network Perception Waterfall Security Tripwire KPMG Cyber
We had the pleasure of hosting Lior Frenkel, CEO and Co-Founder of Waterfall Security for today's informative session about cybersecurity and energy. Lior has over 20 years of experience with hardware and software research and development and his knowledge in the industry is unparalleled. We had an engaging and eye-opening conversation about cybersecurity threats and Waterfall's unidirectional gateway technology.Headquartered in Israel, Waterfall's technology protects power plants, pipelines, food and beverage manufacturers, railway systems, airports and more. Their mission is to revolutionize how industries protect physical assets and industrial processes from cyber-attacks. While we may think we are all non-targets for cyber-attacks, with the right capabilities and motivation all institutions are at risk, especially in the industrial sector. Thank you Lior for spending time with us!To start the session, Mike Bradley talked about overall market volatility, crude oil trading levels, ranges and technical support, and lastly the mood in the market following the SPR announcement, the new COVID variant, and today's Fed testimony. Matt Portillo added to Mike's comments with an update on natural gas and Colin Fenton closed out the opening with a crude oil options market deep dive.----------Copyright 2021, Tudor, Pickering, Holt & Co. The information contained in this update is based on sources considered to be reliable but is not represented to be complete and its accuracy is not guaranteed. This update is designed to provide market commentary only. This update does not constitute an offer to sell or a solicitation of an offer to buy any securities. Nothing contained in this update is intended to be a recommendation of a specific security or company nor is any of the information contained herein intended to constitute an analysis of any company or security reasonably sufficient to form the basis for any investment decision. Past performance is not indicative of future results. Tudor, Pickering, Holt & Co., and its officers, directors, shareholders, employees and affiliates and members of their families may have positions in any securities mentioned and may buy or sell such securities before, after or concurrently with the publication of this update. In some instances, such investments may be inconsistent with the views expressed herein. Tudor, Pickering, Holt & Co. may, from time to time, perform or solicit investment banking or other services for or from a company, person or entities mentioned in this update. Additional important disclosures, including disclosures regarding companies covered by TPH's research department, may be found at www.tphco.com/Disclosure. Tudor, Pickering, Holt & Co. (TPH) is the global brand name for Tudor, Pickering, Holt & Co. Securities, LLC, Tudor, Pickering, Holt & Co. Securities – Canada, ULC, Perella Weinberg Partners LP, and their affiliates worldwide. Institutional Communication Only. Under FINRA Rule 2210, this communication is deemed institutional sales material and it is not meant for distribution to retail investors. Recipients should not forward this communication to a retail investor.
Kyle Carreau (Partner Enablement Engineer) sits down with Michael Firstenberg (Director of Industrial Security, Waterfall Security Solutions) to discuss the recent cyber attack on the Oldsmar, Florida Water/Waste Water treatment facility. The two also discuss the security challenges that come with the ever growing IoT landscape. Michael also gives his recommendations on thinking about security first during the design phase, and gives a list of resources to keep yourself and your company informed.
Podcast: Cyber Senate PodcastEpisode: Industrial Control Cybersecurity: A discussion "Confidentiality, integrity, and availability versus Safety and Reliability"Pub date: 2020-10-12Cyber Senate discusses confidentiality, integrity, and availability versus Safety and Reliability with Michael Firstenberg, Waterfall Security Solution's Director of Industrial Security. Mr Firstenberg will be moderating and contribution to a Panel Discussion on November 4th with the Cyber Senate for the 7th annual Industrial Control Cybersecurity Europe online conference 2020. Mike Firstenberg is the Director of Industrial Security for Waterfall Security. Mike brings almost two decades of experience in Control System Security, specializing in Control System Cyber Security. With a proven track record as a hands-on engineer - researching, designing, and implementing strategic security solutions, Mike has an established background working with governmental institutions, regulatory authorities, and industrial utilities. The former chair of the American Water SCADA Council, Mike studied Computer Science, Chemical Engineering, and Mathematics at the University of Pennsylvania, and has served as a speaker and panelist at numerous conferences and events.Waterfall Security Solutions is the global leader in industrial cybersecurity, protecting critical industrial networks since 2007. Our mission is to revolutionize how entire industries protect physical assets and industrial processes from cyber attacks. Waterfall’s patented, unidirectional products enable safe IT/OT integration, remote monitoring and diagnostics, cloud connectivity and tamper-proof forensics, without the vulnerabilities that always accompany firewalled connectivity. The company’s growing list of customers includes national critical infrastructures and utilities, power plants, nuclear plants, water and wastewater systems, offshore platforms, refineries, pipelines, pharmaceutical, chemical and manufacturing plants, and many more. Deployed world-wide, Waterfall products support the widest range of industrial and remote monitoring platforms, applications, databases and protocols in the market. As a global leader in industrial control system security, Waterfall contributes routinely to national and international standards, best practice guidance and control system security educational programs. As a result, our products are widely recognized as simplifying compliance with security regulations, standards and best practices. https://www.waterfall-security.comThe podcast and artwork embedded on this page are from James Nesbitt / Cyber Senate, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Cyber Senate discusses confidentiality, integrity, and availability versus Safety and Reliability with Michael Firstenberg, Waterfall Security Solution's Director of Industrial Security. Mr Firstenberg will be moderating and contribution to a Panel Discussion on November 4th with the Cyber Senate for the 7th annual Industrial Control Cybersecurity Europe online conference 2020. Mike Firstenberg is the Director of Industrial Security for Waterfall Security. Mike brings almost two decades of experience in Control System Security, specializing in Control System Cyber Security. With a proven track record as a hands-on engineer - researching, designing, and implementing strategic security solutions, Mike has an established background working with governmental institutions, regulatory authorities, and industrial utilities. The former chair of the American Water SCADA Council, Mike studied Computer Science, Chemical Engineering, and Mathematics at the University of Pennsylvania, and has served as a speaker and panelist at numerous conferences and events.Waterfall Security Solutions is the global leader in industrial cybersecurity, protecting critical industrial networks since 2007. Our mission is to revolutionize how entire industries protect physical assets and industrial processes from cyber attacks. Waterfall’s patented, unidirectional products enable safe IT/OT integration, remote monitoring and diagnostics, cloud connectivity and tamper-proof forensics, without the vulnerabilities that always accompany firewalled connectivity. The company’s growing list of customers includes national critical infrastructures and utilities, power plants, nuclear plants, water and wastewater systems, offshore platforms, refineries, pipelines, pharmaceutical, chemical and manufacturing plants, and many more. Deployed world-wide, Waterfall products support the widest range of industrial and remote monitoring platforms, applications, databases and protocols in the market. As a global leader in industrial control system security, Waterfall contributes routinely to national and international standards, best practice guidance and control system security educational programs. As a result, our products are widely recognized as simplifying compliance with security regulations, standards and best practices. https://www.waterfall-security.com
Podcast: The Threatpost PodcastEpisode: Sponsored Podcast: Security Dangers in Rail SystemsPub date: 2020-07-07Jesus Molina, with Waterfall Security, talks to Threatpost host Cody Hackett about the risks that rail operators are facing - from the security issues in railways to the trains themselves - and how railways can stay up-to-date on the best cybersecurity measures by adopting unidirectional gateways and separating enterprise and operational networks.The podcast and artwork embedded on this page are from Mike Mimoso, Chris Brook, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Jesus Molina, with Waterfall Security, talks to Threatpost host Cody Hackett about the risks that rail operators are facing - from the security issues in railways to the trains themselves - and how railways can stay up-to-date on the best cybersecurity measures by adopting unidirectional gateways and separating enterprise and operational networks.
In the Enterprise News, Paul and Matt cover new InfoSec products of the week, CyberArk's new JIT access capabilities, a Micro patch that simulates a workaround for the recent zero-day IE flaw, easier and faster AD rollback and recovery with STEALTHbits StealthRECOVER, automating protection from advanced threats with the new Kaspersky Sandbox, compromised credentials monitoring with FlashPoint, and some funding and acquisition updates from Security Compass, Sysdig, Waterfall Security, ServiceNow, and FireEye! Visit https://www.securityweekly.com/esw for all the latest episodes! Show Notes: https://wiki.securityweekly.com/ESWEpisode169
In the Enterprise News, Paul and Matt cover new InfoSec products of the week, CyberArk's new JIT access capabilities, a Micro patch that simulates a workaround for the recent zero-day IE flaw, easier and faster AD rollback and recovery with STEALTHbits StealthRECOVER, automating protection from advanced threats with the new Kaspersky Sandbox, compromised credentials monitoring with FlashPoint, and some funding and acquisition updates from Security Compass, Sysdig, Waterfall Security, ServiceNow, and FireEye! Visit https://www.securityweekly.com/esw for all the latest episodes! Show Notes: https://wiki.securityweekly.com/ESWEpisode169
Podcast: The Energy Exchange: An EnerNex PodcastEpisode: Season 2 Episode #3 | Cybersecurity – Are We Really Prepared?Pub date: 2019-11-21Cybersecurity is at the front of mind for many utility operators, IT specialists, and has risen to the level of importance for many utilities that actually have a Chief Information Security Officer. While there is a growing need to have access to more field assets in the grid, the result is that we now expose more potential threat vectors. Secure devices, secure communication links and secure systems are many of the typical tools that utilities employ to thwart the potential for intrusion. There is a significant difference between IT Security and OT security. On this episode, we hear from Andrew Ginter, VP of Industrial Security with Waterfall Security. The author of two books, SCADA Security: What's Broken and How To Fix It (the red book) and Secure Operations Technology (the black book) and is the host of The Industrial Security Podcast series. To download the brief on this topic, visit: www.enernex.com/theenergyexchange/.The podcast and artwork embedded on this page are from EnerNex, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Cybersecurity is at the front of mind for many utility operators, IT specialists, and has risen to the level of importance for many utilities that actually have a Chief Information Security Officer. While there is a growing need to have access to more field assets in the grid, the result is that we now expose more potential threat vectors. Secure devices, secure communication links and secure systems are many of the typical tools that utilities employ to thwart the potential for intrusion. There is a significant difference between IT Security and OT security. On this episode, we hear from Andrew Ginter, VP of Industrial Security with Waterfall Security. The author of two books, SCADA Security: What's Broken and How To Fix It (the red book) and Secure Operations Technology (the black book) and is the host of The Industrial Security Podcast series. To download the brief on this topic, visit: www.enernex.com/theenergyexchange/.
Podcast: Industrial IoT SpotlightEpisode: EP041: Cybersecurity, reliability, and safety in an industrial environment - An Interview with Jesus Molina of Waterfall SecurityPub date: 2018-10-17*This episode of the Industrial IoT Spotlight Podcast is sponsored by the Industrial Internet Consortium We discuss the IIC's approach to security in an industrial context. What are the differences between consumer-facing and industrial applications of IoT when it comes to security? How did tinkering with a hotel lighting system evolve into securing industrial IoT systems? How should we view security and secure industrial IoT systems? Jesus Molina discusses his views of security, common misconceptions around cybersecurity, and his approach to securing IoT systems. Jesus Molina is the Director Of Business Development at Waterfall Security Solutions Ltd. He is also the co-chair of the IIC Security Working Group. Accelerating the Industrial Internet of Things. IoT ONE is an insights and advisory firm focused on helping companies manage the threats and opportunities presented by the Internet of Things. https://www.iotone.comThe podcast and artwork embedded on this page are from Erik Walenza: CEO, IoT ONE | Chair, IIC Smart Factory Task Group | Director, Startup Grind, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
*This episode of the Industrial IoT Spotlight Podcast is sponsored by the Industrial Internet Consortium We discuss the IIC's approach to security in an industrial context. What are the differences between consumer-facing and industrial applications of IoT when it comes to security? How did tinkering with a hotel lighting system evolve into securing industrial IoT systems? How should we view security and secure industrial IoT systems? Jesus Molina discusses his views of security, common misconceptions around cybersecurity, and his approach to securing IoT systems. Jesus Molina is the Director Of Business Development at Waterfall Security Solutions Ltd. He is also the co-chair of the IIC Security Working Group. Accelerating the Industrial Internet of Things. IoT ONE is an insights and advisory firm focused on helping companies manage the threats and opportunities presented by the Internet of Things. https://www.iotone.com
Lior Frenkel is the CEO and Co-Founder of Waterfall Security, a leading provider of unidirectional security gateways and stronger-than-firewall perimeter security solutions for industrial control networks and critical infrastructures. With more than 20 years of hardware and software research and development experience, Lior leads Waterfall Security with extensive business and management expertise. Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/ES_Episode32 Visit http://securityweekly.com/esw for all the latest episodes!
Lior Frenkel is the CEO and Co-Founder of Waterfall Security, a leading provider of unidirectional security gateways and stronger-than-firewall perimeter security solutions for industrial control networks and critical infrastructures. With more than 20 years of hardware and software research and development experience, Lior leads Waterfall Security with extensive business and management expertise. Full Show Notes: http://wiki.securityweekly.com/wiki/index.php/ES_Episode32 Visit http://securityweekly.com/esw for all the latest episodes!
Lior Frenkel of Waterfall Security joins us. In the Enterprise News, CyberArk beefs up its cloud security, Kenna Security partners with Exodus, Gigamon is eliminating network blind spots, and more. Stay tuned!
Lior Frenkel of Waterfall Security joins us. In the Enterprise News, CyberArk beefs up its cloud security, Kenna Security partners with Exodus, Gigamon is eliminating network blind spots, and more. Stay tuned!