
Advertise on podcast: @BEERISAC: OT/ICS Security Podcast Playlist
Rating
4.5from
This podcast has
297 episodes
Language
EnglishPublisher
Anton Shipulin / Listen NotesExplicit
No
Date created
2019/04/13
Latest episode
2026/02/04
Average duration
46 min.
Release period
1 days
Description
A curated playlist of Operational Technology and ICS Cyber Security related podcast episodes [any language] by ICS Security enthusiasts. Contact Anton Shipulin / @shipulin_anton on Twitter or LinkedIn if something is missing. Subscribe!
Unlock @BEERISAC: OT/ICS Security Podcast Playlist podcast Email contact info,
Listeners & Audience details
Email contact information
Direct podcast contact details

Listeners
Audience numbers & engagement insights

Audience details
Podcast Insights

Podcast episodes
Check latest episodes from @BEERISAC: OT/ICS Security Podcast Playlist podcast
OT Remote Access After COVID: Why IT Tools Fail and What Critical Infrastructure Needs Now
2026/02/04
Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: OT Remote Access After COVID: Why IT Tools Fail and What Critical Infrastructure Needs NowPub date: 2026-02-02Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationRemote access transformed overnight - and OT environments are still feeling the impact.
In this episode of Protect It All, host Aaron Crow is joined by Steve Rutherford, VP of Sales at Hyperport and former military officer, for a candid conversation on how secure remote access in operational technology (OT) has evolved - and where it’s heading next.
They unpack how COVID accelerated remote connectivity across critical infrastructure, why many traditional IT security tools fall short in OT environments, and what protection really looks like when safety, reliability, and uptime are non-negotiable. Drawing from military discipline and frontline OT experience, Steve shares a grounded perspective on managing risk in environments where failure has physical-world consequences.
You’ll learn:
How COVID permanently changed OT remote access expectations
Why IT-first security approaches don’t translate well to OT
The role of layered access controls and policy-driven permissions
How dynamic access and trust scoring are reshaping OT security
Where IT/OT convergence helps - and where it creates new risk
What leaders must prioritize to balance access, safety, and resilience
If you’re responsible for enabling remote access while protecting critical operations, this episode delivers real-world insight, practical guidance, and a forward-looking view of OT cybersecurity.
Tune in to understand what secure OT access really requires in today’s threat landscape- only on Protect It All.
Key Moments:
00:00 Securing Critical Infrastructure Access
03:59 "OT Mindset: Defense and Offense"
07:26 "Remote Access Challenges in Operations"
11:45 "Challenges in OT-IT Integration"
16:07 Authority Must Match Responsibility
18:23 Simplifying OT Authentication Challenges
21:53 "Dynamic Trust Scoring with AI"
24:05 "Access Control and Segmentation"
28:57 "Secure Access Without Overreach"
33:12 "Left of Boom Awareness"
35:56 OT Security and Local Control
39:35 "Driving Early Adoption Awareness"
41:54 "Proactive Support for Critical Infrastructure"
45:52 "Remote Work Enhances Team Efficiency"
47:17 "Exciting Tech for Cybersecurity"
About the guest :
Steve Rutherford is a former U.S. Army officer and aviator who transitioned his mission-driven mindset from military service to protecting critical infrastructure through operational technology (OT) security. After exploring multiple industries, Steve found a natural alignment between military operations and OT environments - where safety, reliability, and uptime are non-negotiable. Today, he works in secure user access for OT, helping organizations protect the systems that power modern life.
How to connect steve :
Website : https://hyperport.io/
Linkedin: https://www.linkedin.com/in/steverutherford1/
Connect With Aaron Crow:
Website: www.corvosec.com
LinkedIn: https://www.linkedin.com/in/aaronccrow
Learn more about PrOTect IT All:
Email: [email protected]
Website: https://protectitall.co/
X: https://twitter.com/protectitall
YouTube: https://www.youtube.com/@PrOTectITAll
FaceBook: https://facebook.com/protectitallpodcast
To be a guest or suggest a guest/episode, please email us at [email protected]
Please leave us a review on Apple/Spotify Podcasts:
Apple - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124
Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4
The podcast and artwork embedded on this page are from Aaron Crow, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
4/4 Desenlace en Monitorización de seguridad OT con telemetría del proceso
2026/02/04
Podcast: Casos de Ciberseguridad IndustrialEpisode: 4/4 Desenlace en Monitorización de seguridad OT con telemetría del procesoPub date: 2026-02-02Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationEste episodio aborda el impacto real observado en reducción de incidentes y decisiones preventivas, la evolución futura de la seguridad OT basada en señales de proceso y el consejo clave para responsables de ciberseguridad industrial.The podcast and artwork embedded on this page are from Centro de Ciberseguridad Industrial, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Policy Pulse: Regulatory Roundtable - NERC CIP, Cybersecurity Strategy, AI & Electric Sector
2026/02/03
Podcast: Critical Assets PodcastEpisode: Policy Pulse: Regulatory Roundtable - NERC CIP, Cybersecurity Strategy, AI & Electric SectorPub date: 2026-02-01Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationWelcome to the Policy Pulse Panel, a new monthly series within the Critical Assets Podcast. Hosted by Patrick Miller (Ampyx Cyber), Earl Shockley (CEO, Inpowerd), and Joy Ditto (CEO, Joy Ditto Consulting), this recurring panel dives into the most significant policy shifts and regulatory developments impacting critical infrastructure, operational technology (OT), and industrial cybersecurity. Each month, we unpack emerging legislation, agency actions, and standards updates - connecting the dots between policy and the practical realities faced by asset owners, utilities, vendors, and government partners. If you're trying to stay ahead of your auditors and your legislators, this is your monthly must-listen.
https://ampyxcyber.com/podcast/policy-pulse-regulatory-roundtable-nerc-cip-cybersecurity-strategy-ai-electric-sector
The podcast and artwork embedded on this page are from Patrick Miller, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Medical Devices Exposed | 29
2026/02/03
Podcast: ICS Arabia PodcastEpisode: Medical Devices Exposed | 29Pub date: 2026-01-31Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationIn this episode , I’m joined by Alessio Rosas, an OT cybersecurity expert from Italy, to dive deep into the world of medical devices and the potential risks they face when exposed to the internet.
The podcast and artwork embedded on this page are from ICS ARABIA PODCAST, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
FAT/SAT for ICS/OT: Break Early, Build Secure | 70
2026/02/02
Podcast: ICS Arabia PodcastEpisode: FAT/SAT for ICS/OT: Break Early, Build Secure | 70Pub date: 2026-01-31Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationWe’re excited to host Dieter Sarrazyn , Industrial Security Advisor and Founder of Secudea — a specialist in SCADA/ICS/OT cybersecurity, IEC 62443, and FAT/SAT security validation.In this episode, we dive into:
🔹 Dieter’s background and his journey in OT security
🔹 FAT & SAT and why they matter for secure system delivery 🔹 How IEC 62443 fits across the project lifecycle
🔹 Cybersecurity validation steps during FAT & SAT
🔹 Common challenges and practical lessons from the field
🔹 Best practices for vendors, integrators, and asset owners
The podcast and artwork embedded on this page are from ICS ARABIA PODCAST, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
A destructive cyberattack in Poland raises NATO 'red-line' questions
2026/02/01
Podcast: Three Buddy Problem (LS 39 · TOP 2% what is this?)Episode: A destructive cyberattack in Poland raises NATO 'red-line' questionsPub date: 2026-01-30Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarization(Presented by Material Security: We protect your company’s most valuable materials -- the emails, files, and accounts that live in your Google Workspace and Microsoft 365 cloud offices.)
Three Buddy Problem - Episode 83: Poland's CERT documents a rare, explicit wiper attack on civilians in a NATO country, including detailed attribution of a Russian government op targeting the electric grid in the heart of winter. We examine why this crosses a long-avoided threshold, why attribution suddenly matters again, and what it says about pre-positioned access, vendor insecurity, and the shrinking gap between cyber operations and acts of war.
Plus, another Fortinet fiasco, a new batch of Ivanti zero-days under attack, an emergency patch from Microsoft and the return of the mysterious KasperSekrets account.
Cast: Juan Andres Guerrero-Saade, Ryan Naraine and Costin Raiu.
Links:
Transcript (unedited, AI-generated)Material Security (Use Cases)ESET DynoWiper update: Technical analysis and attributionPoland CERT on Russian wiper attacksPoland blames two Ukrainians allegedly working for Russia for railway blastBritain’s New Spy Chief Has a New MissionTwo New Ivanti 0days ExploitedMicrosoft ships emergency Office patch to thwart attacksAnalysis of Single Sign-On Abuse on FortiOSFortinet PSIRT: Administrative FortiCloud SSO authentication bypassDiverse Threat Actors Exploiting Critical WinRAR Vulnerability CVE-2025-8088WhatsApp Strict Account SettingsChina Executes 11 People Linked to Cyberscam Centers in MyanmarSingapore to start caning for scammersGermany on hacking attacks: "We will strike back, including abroad"Acting CISA chief uploaded sensitive files into a public version of ChatGPTTLP BLACKLABScon 2026KasperSekretsThe podcast and artwork embedded on this page are from Security Conversations, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Embedded Industrial Security: The Network-Native Advantage
2026/01/31
Podcast: SecurityWeek Podcast Series - Cybersecurity InsightsEpisode: Embedded Industrial Security: The Network-Native AdvantagePub date: 2026-01-29Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationAndrew McPhee, Industrial IoT Security Solution Manager at Cisco, joins the SecurityWeek podcast and dives into why traditional monitoring and SPAN-based approaches fail to deliver true visibility in industrial environments, and how network-native security embeds inspection, segmentation, and protection directly into the network. We discuss real-world implementation challenges, economic tradeoffs, and how to move from visibility to action without disrupting operations. (Want to continue the discussion? Contact Cisco.)
Follow SecurityWeek on LinkedIn
The podcast and artwork embedded on this page are from SecurityWeek, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Ramy Nahum CEO & owner @Triple C veteran of Israeli IT infrastructure industry on BCP, recovery & backup
2026/01/31
Podcast: ICS Cyber Talks PodcastEpisode: Ramy Nahum CEO & owner @Triple C veteran of Israeli IT infrastructure industry on BCP, recovery & backupPub date: 2026-01-30Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationנושא ההתאוששות מכשל מערכות ו/או אירוע סייבר דורש הכנה אפקטיבית שמתחילה בגיבוש תוכנית המשכיות עסקית (ביי.סיי.פיי) ותוכנית להתאוששות מאסון (דיי. אר. פיי) המגדירות תפקידים ושלבי פעולה ברורים בזמן אמת. נדבך מרכזי בהכנה הוא יישום מערך גיבויים אוטומטי ומבוזר (כולל גיבויים "קרים" המנותקים מהרשת הראשית) ובדיקת תקינותם באופן תקופתי. בנוסף, על הארגון לקיים תרגולים המדמים תרחישי קיצון בקנה מידה משמעותי
ממפגשים עם ארגונים רבים נראה שיש חוסר הבנה על ההבדל בין דיי.אר וגיבוי, תרומה משמעותית לבלבול הזה מגיע מכיוון יצרני תוכנות הגיבוי והמעבר להתאוששות וגיבוי בענן. הפרק הזה הוא חובה לכול מנכ"ל, מנהל מערכות מידע ומנהל אבטחת מידע ונועד לעשות סדר במונחים והפעולות השונות
נחשון פינקו מארח את רמי נחום המנכ"ל והבעלים של חברת טריפל סי מוותיקי התחום בישראל, בשיחה על התאוששות, גיבוי וכול מה שביניהם.
מה ההבדל בין אתר התאוששות לבין מערכת גיבויים
מתי מספיק גיבוי באמצעי איחסון אלקטרונים ומתי מומלץ להוסיף גם קלטות כגיבוי קר (מבחינתי תמיד!) למה נדרש לבצע תרגולים בקנה מידה גדול ולא רק ע"ג שרת או שניים ומספר קטן של משתמשים
למה נדרש לבדוק גיבויים באופן שוטף ועוד
The podcast and artwork embedded on this page are from Nachshon Pincu, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Opportunistic by Default: How OT gets pulled into the blast radius
2026/01/30
Podcast: Safe Mode Podcast (LS 25 · TOP 10% what is this?)Episode: Opportunistic by Default: How OT gets pulled into the blast radiusPub date: 2026-01-29Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationIn this episode of Safe Mode, we look at how opportunistic campaigns—often starting as loud disruption like DDoS—can probe for weak points and, in some cases, move closer to operational technology and industrial control systems. Using a recent Justice Department case tied to pro‑Russia hacktivist groups as a jumping-off point, we discuss what this pattern says about the OT threat landscape in 2025, from remote access and trust boundaries to engineering workflows and data integrity risk. Chris Grove, Director of Cybersecurity Strategy at Nozomi Networks, joins to explain what defenders should prioritize now to keep “noise” from becoming real-world operational impact.The podcast and artwork embedded on this page are from Safe Mode Podcast, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Balancing Speed and Security: The Open Source Dilemma in Embedded Development
2026/01/30
Podcast: Exploited: The Cyber Truth Episode: Balancing Speed and Security: The Open Source Dilemma in Embedded DevelopmentPub date: 2026-01-29Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationIn this episode of Exploited: The Cyber Truth, host Paul Ducklin is joined by RunSafe Security Founder and CEO Joseph M. Saunders and embedded systems expert Elecia White, host of Embedded.fm and author of Making Embedded Systems, to discuss the trade-offs of using open source in embedded development.
The conversation goes beyond debates about “open vs. proprietary” to explore how a single library can quietly introduce sprawling dependency chains, unclear maintenance responsibilities, licensing obligations, and long-term security exposure, especially in devices expected to operate for years or decades.
Elecia and Joe share guidance for using open source intentionally, including how to set guardrails early, limit dependency blast radius, and design systems that can respond when vulnerabilities emerge, even when patching isn’t easy.
Together, they cover:
Why embedded teams don’t get burned by open source, they get burned by unexamined dependenciesHow transitive dependencies and “helpful” packages quietly expand attack surfaceWhy professionalism, documentation, and disclosure practices signal trustworthy projectsWhy build-time SBOMs matter more than after-the-fact analysisHow Secure by Design thinking reduces reliance on emergency patching
For embedded engineers, product leaders, and security teams balancing delivery pressure with long-lived risk, this episode offers advice for using open source without inheriting future incidents.
The podcast and artwork embedded on this page are from RunSafe Security, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
OT.SEC.CAST – The OT.SEC.CON. Podcast with Mike Holcomb
2026/01/29
Podcast: CYBR.SEC.CASTEpisode: OT.SEC.CAST – The OT.SEC.CON. Podcast with Mike HolcombPub date: 2026-01-28Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationThis week, Michael and Sam chat with educator, founder, and OT.SEC.CON opening keynote speaker Mike Holcomb! They discuss his free, in-person training coming up on March 31 in Houston, how—like many others—the movie WarGames played a role in his journey into the cybersecurity industry, and how his focus has shifted toward OT/ICS security education
Things Mentioned:
Mike’s site - https://www.mikeholcomb.com/Mike’s YouTube Channel - https://www.youtube.com/@utilsecBSides ICS - https://www.bsidesics.org/Sign up for Mike’s free class on March 31, 2026 when you sign up for OT.SEC.CON. - https://www.xcdsystem.com/cybrseccommunity/attendee/index.cfm?ID=DwWuEm5Register for Jeremiah Grossman's Webinar - https://www.cybrsecmedia.com/webinar/Do you have a question for the hosts? Reach out to us at [email protected]
Keep up with CYBR.SEC.CON.:
LinkedInXFacebookInstagramKeep up with CYBR.SEC.Media:
LinkedInXFacebookInstagramCheck out our Conferences and Events:
CYBR.SEC.CON.OT.SEC.CON.CYBR.HAK.CON.EXEC.SEC.CON.CSC User GroupSupport or apply to our Scholarship Program:
TAB Cyber FoundationSubscribe to the podcast:
AppleSpotifyListen to our other show:
CYBR.HAK.CAST In this episode:
Host: Michael FarnumHost: Sam Van RyderGuest: Mike HolcombProduction and editing: Lauren AndrusMusic by: August HoneyThe podcast and artwork embedded on this page are from CYBR.SEC.Media, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
The Patching Gap Putting Industrial Operations at Risk: IT vs OT
2026/01/28
Podcast: Industrial Cybersecurity InsiderEpisode: The Patching Gap Putting Industrial Operations at Risk: IT vs OTPub date: 2026-01-27Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationCraig and Dino tackle one of industrial cybersecurity's most critical challenges in this Rewind episode: the massive gap between IT and OT patching strategies.
IT organizations patch constantly—think Patch Tuesday. OT environments rarely patch at all, creating dangerous vulnerability gaps across connected networks.
The hosts explore why this disconnect exists. Production floor downtime costs are astronomical, making patching a risky business decision.
OEM restrictions complicate matters further. Many vendors won't support systems or warranties after unauthorized updates.
Managing decades-old equipment alongside modern systems creates another layer of complexity. Legacy PLCs weren't designed with patching in mind.
The consequences of not patching are mounting. Insurance companies are tightening requirements and regulatory pressures are intensifying.
Craig and Dino offer practical solutions that don't require shutting down production lines. Virtual patching technologies can protect legacy control systems without traditional software updates.
The hosts emphasize the urgent need for IT-OT collaboration. All stakeholders—including OEMs and system integrators—must be part of strategic cybersecurity conversations.
This episode is essential listening for CISOs, plant managers, and anyone responsible for protecting industrial operations. The connected world isn't waiting for OT to catch up.
Chapters:
00:00:00 - Introduction to Patching Challenges00:01:08 - IT vs OT Patching: Key Differences00:02:55 - Understanding the Cost of Downtime in OT00:03:32 - Overcoming Challenges with Legacy Systems00:05:21 - Navigating OEMs and Safety Concerns00:06:45 - The Role of Safety in OT Patching00:08:52 - Exploring Virtual Patching Solutions00:13:11 - Enhancing Vendor Collaboration and Risk Management00:16:48 - Impact of Mergers and Acquisitions on Cybersecurity00:18:33 - Addressing Insurance and Compliance Issues00:20:12 - Significant Consequences of Not Patching00:23:14 - Building an Effective Collaborative Cybersecurity Strategy00:24:03 - Conclusion and Actionable Insights
Links And Resources:
Want to Sponsor an episode or be a Guest? Reach out here.Industrial Cybersecurity Insider on LinkedInCybersecurity & Digital Safety on LinkedInBW Design Group CybersecurityDino Busalachi on LinkedInCraig Duckworth on LinkedIn
Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!
The podcast and artwork embedded on this page are from Industrial Cybersecurity Insider, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
3/4 Acciones en Monitorización de seguridad OT con telemetría del proceso
2026/01/27
Podcast: Casos de Ciberseguridad IndustrialEpisode: 3/4 Acciones en Monitorización de seguridad OT con telemetría del procesoPub date: 2026-01-26Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationEste episodio trata de las acciones prácticas: los primeros pasos para iniciar un proyecto de telemetría aplicada a la seguridad, la conexión con equipos de operación y mantenimiento, y el papel de los proveedores de automatización.The podcast and artwork embedded on this page are from Centro de Ciberseguridad Industrial, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Safety Services Provide an Answer
2026/01/26
Podcast: Today with ISSSourceEpisode: Safety Services Provide an AnswerPub date: 2026-01-22Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationWe are going through an advancing digital age, no one can deny that. Data is coming at workers from all directions. There is great knowledge in that data, but who has the time to sort through it, after all, we have to keep making product and keep the process moving safe and sound.
For safety and functional safety, manufacturers need to manage data and be able to identify trends to understand all levels of risk. That is where safety services can come into playThe podcast and artwork embedded on this page are from Gregory Hale, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
EP 79: Ignore OT Security At Your Own Peril
2026/01/25
Podcast: Error Code (LS 27 · TOP 10% what is this?)Episode: EP 79: Ignore OT Security At Your Own PerilPub date: 2026-01-22Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationThe growing importance of OT security, highlighting overlooked risks in critical infrastructure, legacy systems, and supply chains. Through real-world examples, Eric Durr, Chief Product Officer at Tenable, shows why OT security differs from IT, emphasizing visibility, resilience, and risk prioritization to protect safety, operations, and business continuity.
The podcast and artwork embedded on this page are from Robert Vamosi, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.
Podcast reviews
Read @BEERISAC: OT/ICS Security Podcast Playlist podcast reviews
Brad from NoVA 2019/04/16
Thank you!!!
Anton — thank you for curating and making it available on iTunes.
[REDACTED] USER 2023/06/24
Podcast doesn’t play while on VPN.
Podcast doesn’t play while on VPN.
Podcast sponsorship advertising
Start advertising on @BEERISAC: OT/ICS Security Podcast Playlist relevant audience podcasts
You may also like to advertise on these Podcasts

4.4371061566
The Megyn Kelly Show
SiriusXM

4.888901269
Fearless with Jason Whitlock
Blaze Podcast Network

4.8118931000
Mind Pump: Raw Fitness Truth
Sal Di Stefano, Adam Schafer, Justin Andrews, Doug Egge

4.8102131585
Tara Brach
Tara Brach

4.541561215
Something You Should Know
Mike Carruthers | OmniCast Media

4.513841343
Strictly Anonymous Confessions
Kathy Kay

4.8292781897
Fantasy Footballers - Fantasy Football Podcast
Fantasy Football

4.62382612
Football Weekly
The Guardian

4.45387666
Two Judgey Girls
Two Judgey Girls

3.8258501152
The Viall Files
Nick Viall