Internet of Things (IoT)

Joint CISA FBI NSA DOT Improving Security of Open Source Software in Operational Technology and Industrial Control Systems

  • 1.  Joint CISA FBI NSA DOT Improving Security of Open Source Software in Operational Technology and Industrial Control Systems

    Posted Oct 11, 2023 01:17:00 AM
      |   view attached

    Hi All,

    CISA FBI NSA DOT jointly published  "Improving Security of Open Source Software in Operational Technology and Industrial Control Systems"

    The Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), National Security Agency (NSA), and U.S. Department of the Treasury are releasing this fact sheet for senior leadership and operations personnel at operational technology (OT) vendors and critical infrastructure facilities. This fact sheet will assist with better management of risk from OSS use in OT products and increase resilience using available resources. While several resources and recommendations within this fact sheet are best suited for execution by the vendor or the critical infrastructure owner, collaboration across parties will result in less friction for operator workflows and promote a safer, more reliable system and provision of National Critical Functions. This fact sheet aims to:  Promote the understanding of open source software (OSS) and its implementation in OT and industrial control systems (ICS) environments (hereinafter referred to as "OT").  Highlight best practices and considerations for the secure use of OSS in OT. 



    ------------------------------
    Michael Roza CPA, CISA, CIA, CC, MBA, Exec MBA, CSA Research Fe
    ------------------------------