Rockwell Automation Acquires Verve … Part 2

Rockwell Automation Acquires Verve … Part 2

Last week ICS manufacturer Rockwell Automation bought OT security company Verve Industrial Protection for an undisclosed (non-material) price. On Tuesday I wrote on this from the Verve and OT security company’s point of view. Today’s article covers the...
Rockwell Automation Acquires Verve … Part 1

Rockwell Automation Acquires Verve … Part 1

Last week ICS manufacturer Rockwell Automation bought OT security company Verve Industrial Protection for an undisclosed (non-material) price. Today I’ll cover this from the Verve and OT security company’s point of view. On Thursday I’ll have a bonus...
CISA’s Proper Use Of Cyber Hygiene

CISA’s Proper Use Of Cyber Hygiene

CISA has a Secure Our World campaign as part of October being Cybersecurity Awareness Month. The tag line is “simple ways to protect yourself, your family and your business from online threats.” There’s a 1-minute video aimed every...
SEC Rules: No Change, Boilerplate, and Some Change

SEC Rules: No Change, Boilerplate, and Some Change

A lot of content about the recent SEC rules around cyber security and cyber incidents is missing the mark, imo. No Change Companies already had the requirement to report any unscheduled material event, including cyber incidents that had a material impact,...
25 Years of Success & Happiness

25 Years of Success & Happiness

Digital Bond was born on October 5, 1998. We turn 25 this month. In this article I’ll crow a bit about successes and joy. Last week I covered failures and lessons learned. Nurturing Talent Most of the first 15 years were spent trying to grow a ICS security consulting...
25 Years Of Failures And Lessons Learned

25 Years Of Failures And Lessons Learned

Digital Bond was born on October 5, 1998. We turn 25 this month. In this article I’ll highlight the biggest failures and lessons learned, and next week I’ll crow a bit about the success.  Swing(s) And A Miss In 1998 the dot com bubble was ballooning. With...
Reputational Risk … The Highest Consequence Category?

Reputational Risk … The Highest Consequence Category?

The classic 5 x 5 risk matrix with consequence broken out by category: financial, health & safety, customer impact, and reputation. Create scenarios and see where they fall on the martrix, with the ever present challenge of determining likelihood.  The first...
Major ICS Vendors As OT Security Suppliers

Major ICS Vendors As OT Security Suppliers

There has been a steady series of announcements over the last four years of the largest ICS vendors, Emerson, Honeywell, Scheider Electric, Siemens, Yokogawa, etc., offering OT security services and security products. The marketing and sales of these solutions tends...
The Benefit Of Limits In The Era Of Cyber Hygiene

The Benefit Of Limits In The Era Of Cyber Hygiene

I performed my first ICS cybersecurity risk assessment in 2000 for a large water utility. Eye opening to the power of automation and lack of cybersecurity and cyber maintenance. In the six years that followed, the Digital Bond team performed numerous assessments and...
OT & Engineers … Lawyers & CEOs

OT & Engineers … Lawyers & CEOs

Two weeks ago I wrote Not OT v IT … It’s OT & Engineering. While the article received a lot of positive comments, the most emphatic comments were from a small number of engineers and automation professionals who essentially said: We’ve got this....