A Matter of Trust: Remote Access for ICS
ID: 9d79f24a-de0f-508f-900b-f9aeaaefdfb8
STIX ID: report--9d79f24a-de0f-508f-900b-f9aeaaefdfb8
Feed Name: Dragos Blog
**Executive summary:** This guidance outlines risks and best practices for enabling remote access to OT/ICS environments, advising that remote access should not be enabled by default, must involve OT/IT/engineering stakeholders, and should follow standards such as ISA/IEC 62443, NIST SP 800-82, and NERC CIP. Recommended controls include using a DMZ and dedicated jump hosts, multi-factor authentication, local re-authentication to ICS systems, strict allow-listing of access, thorough logging and monitoring, and careful vendor evaluation; the report emphasizes engineering rigor and that remote access is not a 'set it and forget it' capability.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
