Back to blog

Tech & Meet

The Road To A Defensible IT/OT Structure

Recently, I attended a Tech&Meet session titled “The Road To A Defensible IT/OT Structure” by Dieter Sarrazyn from Secudea.

SecurityOT/IT

The session focused on the growing connection between traditional IT environments and Operational Technology (OT). While IT and OT were historically more separated, modern environments increasingly connect industrial systems, monitoring platforms, and enterprise infrastructure together. This creates new opportunities, but also introduces additional cybersecurity challenges.

One of the central themes of the session was the importance of building a defensible architecture rather than relying on a single security measure. In industrial environments, availability and stability are often just as important as confidentiality, which creates a different security mindset compared to traditional IT systems. Downtime in an office environment can already be problematic, but downtime in industrial environments may directly impact production processes or operational continuity.

The presentation also touched on the role of frameworks and regulations such as NIS2 and IEC62443. NIS2 continues to increase the focus on cybersecurity governance and risk management across organizations, while IEC62443 specifically targets industrial and OT security. The combination of both highlights how cybersecurity is becoming an increasingly important part of operational environments.

Another interesting aspect was the idea that IT and OT can no longer be treated as completely separate worlds. As environments become more interconnected, organizations need to think carefully about segmentation, controlled communication flows, monitoring, and limiting attack surfaces. A secure environment is not only about adding more technology, but also about structuring systems in a way that limits risk and improves resilience.

Overall, I found the session very interesting because it showed how cybersecurity extends far beyond traditional office networks and endpoints. OT security introduces additional challenges where security, operational continuity, and legacy systems all need to coexist. It was a valuable insight into an area of cybersecurity that is becoming increasingly relevant.