Improving ICS/OT Security Perimeters with Network Segmentation
ID: fbd9d91e-3245-56ab-afcc-a987c87d1287
STIX ID: report--fbd9d91e-3245-56ab-afcc-a987c87d1287
Feed Name: Dragos Blog
**Executive summary:** This guidance paper explains best practices for securing ICS/OT network perimeters, emphasizing the risks of flat networks and rule creep, the value of proper segmentation using the Purdue model, the role of firewalls and DMZs, and specific controls to mitigate boundary bypasses (for example MFA, monitoring, limited host access, data diodes, and one-way replication) to reduce adversary lateral movement and protect critical operational assets.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
