→ Back to Home
Incident Management

Experts Warn of 'Mismatch' in US Response to OT Hacking

A recent warning from cybersecurity experts highlights a critical vulnerability in the United States' ability to respond to large-scale cyberattacks targeting operational technology (OT) within vital infrastructure and services. According to Josh Corman, executive in residence for public safety and resilience at the Institute for Security and Technology, there is a substantial "mismatch between expected capacity, expected demand, and current capacity" in the nation's incident response framework. This suggests that a significant cyber incident could rapidly exhaust the available resources, leading to prolonged disruptions and cascading failures across interconnected sectors, such as power and water supplies. The urgency of this concern is underscored by recent developments in the cybersecurity industry. Dragos, a leading OT cybersecurity company, recently announced that consulting giant Accenture has acquired a majority stake in its operations, valuing the firm at $3.2 billion. Rob Lee, founder and CEO of Dragos, stated that this acquisition will significantly enhance OT incident response capabilities. He emphasized that the combined forces of Dragos's specialized incident response team and Accenture's extensive expertise will create a more robust and comprehensive platform for addressing OT cybersecurity incidents. This strategic move aims to provide a stronger defense mechanism, not only for responding to active incidents but also for proactive preparation in customer environments. The integration of these capabilities is crucial given the increasing sophistication of cyber threats targeting critical infrastructure. The interconnectedness of modern systems means that a successful attack on one sector can have ripple effects across others, making a coordinated and well-resourced response absolutely essential. Experts like Corman point out that "cross sector dependencies mean no power equals no water," illustrating the severe consequences of an inadequate response. The acquisition by Accenture is a clear indication that industry leaders are recognizing the growing need for specialized and scalable incident response solutions to protect operational technology from advanced persistent threats. The goal is to ensure that when an incident occurs, teams are not only capable of identifying and containing the threat but also have the necessary tools and personnel to restore services swiftly and effectively, thereby mitigating widespread impact.
#cybersecurity#operational technology#incident response#critical infrastructure#hacking#accenture
Read original source