PLAY PODCASTS
The Industrial Security Podcast

The Industrial Security Podcast

Your lights are on, your car runs, because industrial systems work 24/7 to keep our lives ticking. But what happens when those systems—the very pillars of modern society—are threatened? Hosted by Nate Nelson and Andrew Ginter, The Industrial Security...

PI Media

148 episodesEN

Show overview

The Industrial Security Podcast has been publishing since 2020, and across the 5 years since has built a catalogue of 148 episodes. That works out to roughly 120 hours of audio in total. Releases follow a fortnightly cadence.

Episodes typically run thirty-five to sixty minutes — most land between 42 min and 54 min — and the run-time is fairly consistent across the catalogue. None of the episodes are flagged explicit by the publisher. It is catalogued as a EN-language Technology show.

There hasn’t been a new episode in the last ninety days; the most recent episode landed 6 months ago. The busiest year was 2020, with 50 episodes published. Published by PI Media.

Episodes
148
Running
2020–2025 · 5y
Median length
48 min
Cadence
Fortnightly

From the publisher

Your lights are on, your car runs, because industrial systems work 24/7 to keep our lives ticking. But what happens when those systems—the very pillars of modern society—are threatened?Hosted by Nate Nelson and Andrew Ginter, The Industrial Security Podcast takes a deep-dive into the most pressing emerging issues in SCADA technologies today. But don't just take our word for it: each new episode of the show features a leading voice in the world of industrial control systems security. You'll hear from executives, engineers, researchers and more, each with their own unique take on what's wrong with how we do things today, and how to fix it.ICS security is complicated. Here is where it all comes together.

Latest Episodes

View all 148 episodes

Rapid Recovery - When Security Fails [The Industrial Security Podcast]

We've been hacked. Everything is down. Or more mundane - there was a power surge and 5% of our cyber gear is fried. How do we get back into operation fastest? Stephen Nichols of Acronis joins us to look at rapid recovery of OT systems - from the mundane to the arcane.

Dec 13, 202543 min

We can't - and shouldn't - fix everything [The Industrial Security Podcast]

We know there are problems in our security systems, but we can't and shouldn't fix everything. What do we fix? Who decides? How do we explain what's reasonable to people who do decide? Kayne McGladrey, CISOIn Residence at Hyperproof, joins us to explore risk, communication, and a surprising role for insurance.

Nov 21, 202554 min

Ep 210Medical Device Cybersecurity Is Tricky [The Industrial Security Podcast]

Yes the device has to be safe to use on patients, and yes it has to produce its results reliably, but patient / data confidentiality is also really important. Naomi Schwartz of Medcrypt joins us to explore the multi-faceted world of medical device cybersecurity - from MRI's to blood sugar testers.

Oct 28, 20251h 3m

Ep 218Hardware Hacking - Essential OT Attack Knowledge [the industrial security podcast]

If you can touch it, you can hack it, usually. And having hacked it, you can often more easily find exploitable vulnerabilities. Marcel Rick-Cen of Foxgrid walks us through the basics of hacking industrial hardware and software systems.

Oct 6, 202543 min

Ep 212Managing Risk with Digital Twins - What Do We Do Next? [the industrial security podcast]

Asset inventory, networks and router / firewall configurations, device criticality - a lot of information. How can we USE this information to make useful decisions about next steps to address cyber risk? Vivek Ponada of Frenos joins us to explore a new kind of OT / industrial digital twin - grab all that data and work it to draw useful conclusions.

Sep 8, 202545 min

I don't sign s**t [The Industrial Security Podcast]

We don't have budget to fix the problem, so we accept the risk? Tim McCreight of TaleCraft Security in his (coming soon) book "I don't sign s**t" uses story-telling to argue that front line security leaders should not be accepting multi-billion dollar risks on behalf of the business. We need to escalate those decisions - with often surprising results when we do.

Aug 11, 202549 min

NIS2 and the Cyber Resilience Act (CRA) [The Industrial Security Podcast]

NIS2 legislation is late in many EU countries, and the new CRA applies to most suppliers of industrial / OT computerized and software products to the EU. Christina Kiefer, attorney at reuschlaw, walks us through what's new and what it means for vendors, as well as for owner / operators.

Jul 28, 202553 min

Network Duct Tape [The Industrial Security Podcast]

Hundreds of subsystems with the same IP addresses? Thousands of legacy devices with no modern encryption or other security? Constant, acquisitions of facilities "all over the place" network-wise and security-wise? What most of us need is "network duct tape". Tom Sego of Blastwave shows us how their "duct tape" works.

Jul 11, 20251h 4m

Credibility, not Likelihood [The Industrial Security Podcast]

Safety defines cybersecurity - Kenneth Titlestad of Omny joins us to explore safety, risk, likelihood, credibility, and deterministic / unhackable cyber defenses - a lot of it in the context of Norwegian offshore platforms.

Jun 17, 202553 min

Lessons Learned From Incident Response [The Industrial Security Podcast]

How did they get in? How did we find them when they got in? What can we do in future to clean up the mess faster? Chris Sistrunk reflects on a decades' industrial cyber incident response experience at Mandiant (Google).

May 20, 202550 min

Experience & Challenges Using Asset Inventory Tools [The Industrial Security Podcast]

Asset inventory tools have become almost ubiquitous as main offerings or add-ons to OT security solutions. In this episode, Brian Derrico of Trident Cyber Partners walks us through what it's like to use these tools - different kinds of tools in different environments.

Apr 21, 202536 min

Needles in Haystacks - Recruiting OT Incident Responders [The Industrial Security Podcast]

Industrial incidents can be cyber attacks, or equipment failures, or physical equipment leaking product because of metal fatigue or incorrect welds. OT incident responders need to know a lot. Doug Leece of Enbridge explores what is OT incident response and what you look for recruiting people into that role.

Mar 17, 202556 min

Would You Rather Use a Control System That's Proven Correct? [The Industrial Security Podcast]

For safety-critical operations or for critical national infrastructures, would you rather base your system on a code that people have tested as best they can, or would you rather base your system on a platform that has been proven correct? Daly Brown and Nick Foubert of Metropolitan Technologies look at a new approach to designing OT systems.

Feb 24, 202552 min

How to Embed 30 Years of Security Funding into Capital Budgets [The Industrial Security Podcast]

Most of us struggle to get funding for industrial cybersecurity. Ian Fleming of Deloitte explains how - because cybersecurity is essential to sustaining the value of industrial assets - how we can embed up to 20 or 30 years of cybersecurity budget into capital plans, rather than fight for budget every year.

Jan 27, 202556 min

Insights into Nation State Threats [The Industrial Security Podcast]

Nation state threats are often portrayed as the "irresistible forces" of cyber threats, with little qualification. Joseph Price of Deloitte joins us to dig deeper - what are nation states capable of, what are they up to, and how should we interpret the information that is available to the public?

Dec 9, 20241h 7m

OT Security Data Science - A better vulnerability database [The Industrial Security Podcast]

Security automation needs a machine-readable vulnerability database. Carmit Yadin of Device Total joins us to look at limitations of the widely-used National Vulnerability Database (NVD), and explore a new "data science" alternative.

Nov 20, 202434 min

Driving Change - Cloud Systems and Japanese CCE [The Industrial Security Podcast]

Tomomi Aoyama translated the book Countering Cyber Sabotage - Consequence-Driven, Cyber-Informed Engineering - to Japanese. Tomomi recalls the effort of translating CCE to Japanese and looks forward to applying CCE and OT security principles to industrial cloud systems at Cognite.

Oct 21, 202442 min

Hitting Tens of Thousands of Vehicles At Once [The Industrial Security Podcast]

Compromise a cloud service and tens thousands of vehicles can be affected at once. Matt MacKinnon of Upstream Security walks us through the world of cloud security for connected vehicles, transport trucks, tractors, and other "stuff that moves."

Sep 23, 202435 min

AI takes on polymorphic malware [The Industrial Security Podcast]

The bad guys keep getting better at what they do, and so must we defenders. Gary Southwell of Aria Cyber joins us to look at using AI to get ahead of constantly-changing malware.

Aug 5, 202448 min

New Resource: Adapting IT Advice for OT [The Industrial Security Podcast]

The CIS Top 18 is widely used in IT, and Jack Bliss of 1898 & Co. has adapted that list for OT/industrial, adding a lot of industrial context and lists of related OT-centric tools and technology.

Jul 22, 202444 min
Copyright PI Media