NCSC Released an Advisory to Secure Cloud-hosted SCADA
ID: ae4a8926-5270-5e53-a289-d46887c5b1ec
STIX ID: report--ae4a8926-5270-5e53-a289-d46887c5b1ec
Feed Name: GBHackers
This document provides guidance for OT organizations considering cloud-hosted SCADA, emphasizing risk-based decision-making, understanding deployment models (full, hybrid, cold standby), and leveraging cloud-native services for security and resiliency. It stresses identity and access management (including PAM and secrets management), use of KMS, SDN monitoring, MSP due diligence and ownership, and readiness in skills and policies. The piece also highlights challenges such as legacy systems, latency, and data sensitivity, and recommends approaches like containerization, VPNs, edge computing, and zero-trust principles, while referencing NCSC design principles and promoting a related webinar on vulnerability fatigue.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
