Uploaded September 2025 | Updated September 2026, 1 week ago
Ahmik estimates that 60-70% of asset owner ICS have not incorporated any form of hardening in their PLCs. This session covers the no-product cost defense in depth hardening capabilities that every manufacturer should be implementing. Least privileges concepts specific to liming specific tag access in the PLC’s to external resources, PLC endpoint hardening with disabling both physical and logical ports, ingress/egress backplane access, and more.
He finished up with some zero trust principles through the enablement of ODVA’s CIP Security between HMI’s/EWS’s and the PLC’s and from PLC’s to IO to create zones and conduits of communication, providing granular device identity/authentication, integrity, and confidentiality.
Subscribe to Dale’s ICS Security: Friday News & Notes email here:
friday.dale-peterson.com/signup
Check out S4x26. Feb 23 - 26 in Miami South Beach:
s4xevents.com
Ahmik estimates that 60-70% of asset owner ICS have not incorporated any form of hardening in their PLCs. This session covers the no-product cost defense in depth hardening capabilities that every manufacturer should be implementing. Least privileges concepts specific to liming specific tag access in the PLC’s to external resources, PLC endpoint hardening with disabling both physical and logical ports, ingress/egress backplane access, and more.
He finished up with some zero trust principles through the enablement of ODVA’s CIP Security between HMI’s/EWS’s and the PLC’s and from PLC’s to IO to create zones and conduits of communication, providing granular device identity/authentication, integrity, and confidentiality.
Subscribe to Dale’s ICS Security: Friday News & Notes email here:
friday.dale-peterson.com/signup
Check out S4x26. Feb 23 - 26 in Miami South Beach:
s4xevents.com










