{"id":24758,"date":"2023-04-28T18:04:28","date_gmt":"2023-04-28T18:04:28","guid":{"rendered":"https:\/\/one.sightlinemg.com\/c4isrnet\/uncategorized\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/"},"modified":"2026-08-08T05:01:46","modified_gmt":"2026-08-08T05:01:46","slug":"addressing-ot-security-under-the-national-cybersecurity-strategy","status":"publish","type":"post","link":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/","title":{"rendered":"Addressing OT security under the National Cybersecurity Strategy"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">The recently released <a href=\"https:\/\/www.whitehouse.gov\/wp-content\/uploads\/2023\/03\/National-Cybersecurity-Strategy-2023.pdf\">National Cybersecurity Strategy<\/a> sets a strategic objective for the federal government to modernize Information Technology and Operational Technology infrastructure, and to \u201creplace or update IT and OT systems that are not defensible against sophisticated cyber threats.\u201d<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In recent years, advances in technology, coupled with the ease of digital connection, have greatly increased the convergence of IT and OT across critical infrastructure sectors and even within the federal government. In fact, <a href=\"https:\/\/www.gao.gov\/products\/gao-20-577\">56 out of 90 agencies<\/a> report using Internet of Things technologies to control, monitor, access, or track equipment, systems, facilities, or physical assets.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Convergence brings significant benefits, from increased visibility to user-centric capabilities. Unfortunately, it also greatly increases agencies\u2019 attack surface, so now must be included under the NCS.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">IT and OT are not created equal<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Lessons learned from modernizing IT unfortunately won\u2019t apply to OT because of OT\u2019s unique operating requirements. Efforts taken under the NCS must first consider each individually and then together.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">For instance, when an IT system reaches end-of-life, an agency must decide to either continue using it at risk, pay for extended manufacturer service, or sunset and replace it all together. Each option has pros and cons, but agencies at least <i>have<\/i> options and can usually plan accordingly\u2014sunset dates will be known in advance, diminishing potential impacts of the time variable.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">However, timing is actually critical for approaching OT modernization. <a href=\"https:\/\/www.gartner.com\/en\/newsroom\/press-releases\/2021-07-21-gartner-predicts-by-2025-cyber-attackers-will-have-we\">Gartner<\/a> predicts that by 2025 cyber attackers will have weaponized OT environments to successfully harm or even kill humans. Ramifications of an attack on IT could be devastating, but might pale in comparison to the long-term human safety and critical infrastructure impacts of a well-executed attack on OT. We simply lack the luxury of time to modernize OT security that has been given to securing IT over many years.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Additionally, it is often feasible and more cost effective to simply rip-and-replace an IT system at its end-of-life. Because of how OT systems were designed, rip-and-replace isn\u2019t a viable approach for them. Legacy OT systems were built on the engineering paradigm of twenty years ago\u2014to be long-lasting and achieve the functional goals of monitoring and controlling critical processes.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Connectivity wasn\u2019t a functional requirement, so neither was security. Times have changed since these systems were put in place and security risks must now be a consideration.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Further, because of the nature of what OT systems do, continuity requires that they can\u2019t just be turned off and replaced with a new, more secure system. Unlike VoIP phones in an office, airplanes and tanks, for example, aren\u2019t mass produced or easy to replace. When replacement of OT systems deployed in-field <i>is<\/i> possible, such efforts would take years and the required costs would be prohibitive.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Three tenets for OT security<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">Instead, OT security modernization should focus on improving security by augmentation, particularly for defense and weapons systems. Here are a few tips for agency decision-makers to consider when assessing OT modernization approaches:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u2014 Any given defense or weapons system has up to hundreds of different types of hardware, components and \u2018standard\u2019 protocols in use. Tooling for cyber modernization efforts should not be limited to addressing only a subset of them. Instead, chosen solutions should be hardware and protocol agnostic. The tool must accommodate the platform rather than trying to force the platform to conform to the tool\u2019s limitations.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u2014 As data is the building block of IT network security, so it should be within OT systems as well. Defense and weapons systems continually produce tremendous amounts of valuable data that in its raw form isn\u2019t of much use. But when captured, enriched and translated, it could be turned into information, when coupled with historical data and context, that can become actionable intelligence for critical security decision-making.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u2014 \u201cYou can\u2019t protect what you can\u2019t see\u201d is a common IT security maxim that also holds true for OT. The aim of OT security modernization should be complete observability\u2014the ability to understand what is happening inside a system based on external data that the system produces and exposes. Observability can enable decision-making to be based not on backward-looking indicators and uncertain predictions, but on leading indicators providing facts, knowledge and understanding.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">As the interconnection between IT and OT in onboard weapon systems increases, digital threats now put previously isolated OT at unprecedented risk. Meeting the objectives of the NCS will require a skillful approach to protecting each separately and both together to protect our warfighters and preserve American battlefield dominance.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><i>Colby Proffitt is a cybersecurity strategist at Shift5, an Arlington, Virginia-based supplier of computer security services.<\/i><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Have an opinion?<\/h2>\n\n\n\n<p class=\"wp-block-paragraph\">This article is an Op-Ed and the opinions expressed are those of the author. If you would like to respond, or have an editorial of your own you would like to submit, please <a href=\"https:\/\/mail.google.com\/mail\/?view=cm&#038;fs=1&#038;tf=1&#038;to=cary.oreilly@federaltimes.com\">email C4ISRNET and Federal Times Senior Managing Editor Cary O\u2019Reilly.<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Lessons learned from modernizing IT won\u2019t apply to OT because of the latter&#8217;s unique operating requirements.<\/p>\n","protected":false},"author":7,"featured_media":55555,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_yoast_wpseo_meta-robots-noindex":"","_yoast_wpseo_meta-robots-nofollow":"","_yoast_wpseo_canonical":"","_acf":"","_yoast_wpseo_primary_category":24,"_jetpack_feature_clip_id":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","_smg_distribution_targets":[]},"categories":[10,29,16,24,20],"tags":[],"coauthors":[5849],"class_list":["post-24758","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cyber","category-home","category-it-networks","category-opinion","category-thought-leadership"],"acf":{"subheadline":"","legacy_arc_id":"3XXSLNEY4NE2LNLGICO6Y5TGRY","arc_canonical_url":"\/thought-leadership\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/","remove_feature_photo":false,"is_sponsored":false,"subtype":"","redirect_url":"","disable_inline_ads":false,"native_logo_pretext":"Presented By:"},"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v26.0 (Yoast SEO v28.1) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Addressing OT security under the National Cybersecurity Strategy - C4ISRNet<\/title>\n<meta name=\"description\" content=\"Lessons learned from modernizing IT won\u2019t apply to OT because of the latter&#039;s unique operating requirements.\" \/>\n<meta name=\"robots\" content=\"noindex, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Addressing OT security under the National Cybersecurity Strategy\" \/>\n<meta property=\"og:description\" content=\"Lessons learned from modernizing IT won\u2019t apply to OT because of the latter&#039;s unique operating requirements.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/\" \/>\n<meta property=\"og:site_name\" content=\"C4ISRNet\" \/>\n<meta property=\"article:published_time\" content=\"2023-04-28T18:04:28+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-08-08T05:01:46+00:00\" \/>\n<meta name=\"author\" content=\"Colby Proffitt\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Colby Proffitt\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\n\t    \"@context\": \"https:\\\/\\\/schema.org\",\n\t    \"@graph\": [\n\t        {\n\t            \"@type\": \"Article\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/#article\",\n\t            \"isPartOf\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/\"\n\t            },\n\t            \"author\": {\n\t                \"name\": \"migration\",\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#\\\/schema\\\/person\\\/cc76c831bb37a926738c8391fca7a3b1\"\n\t            },\n\t            \"headline\": \"Addressing OT security under the National Cybersecurity Strategy\",\n\t            \"datePublished\": \"2023-04-28T18:04:28+00:00\",\n\t            \"dateModified\": \"2026-08-08T05:01:46+00:00\",\n\t            \"mainEntityOfPage\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/\"\n\t            },\n\t            \"wordCount\": 819,\n\t            \"commentCount\": 0,\n\t            \"publisher\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#organization\"\n\t            },\n\t            \"image\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/#primaryimage\"\n\t            },\n\t            \"thumbnailUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/635955465509758537-cybersecurity-lockjpg.jpg\",\n\t            \"articleSection\": [\n\t                \"Cyber\",\n\t                \"Home\",\n\t                \"IT and Networks\",\n\t                \"Opinion\",\n\t                \"Thought Leadership\"\n\t            ],\n\t            \"inLanguage\": \"en-US\",\n\t            \"potentialAction\": [\n\t                {\n\t                    \"@type\": \"CommentAction\",\n\t                    \"name\": \"Comment\",\n\t                    \"target\": [\n\t                        \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/#respond\"\n\t                    ]\n\t                }\n\t            ]\n\t        },\n\t        {\n\t            \"@type\": \"WebPage\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/\",\n\t            \"name\": \"Addressing OT security under the National Cybersecurity Strategy - C4ISRNet\",\n\t            \"isPartOf\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#website\"\n\t            },\n\t            \"primaryImageOfPage\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/#primaryimage\"\n\t            },\n\t            \"image\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/#primaryimage\"\n\t            },\n\t            \"thumbnailUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/635955465509758537-cybersecurity-lockjpg.jpg\",\n\t            \"datePublished\": \"2023-04-28T18:04:28+00:00\",\n\t            \"dateModified\": \"2026-08-08T05:01:46+00:00\",\n\t            \"description\": \"Lessons learned from modernizing IT won\u2019t apply to OT because of the latter's unique operating requirements.\",\n\t            \"breadcrumb\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/#breadcrumb\"\n\t            },\n\t            \"inLanguage\": \"en-US\",\n\t            \"potentialAction\": [\n\t                {\n\t                    \"@type\": \"ReadAction\",\n\t                    \"target\": [\n\t                        \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/\"\n\t                    ]\n\t                }\n\t            ]\n\t        },\n\t        {\n\t            \"@type\": \"ImageObject\",\n\t            \"inLanguage\": \"en-US\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/#primaryimage\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/635955465509758537-cybersecurity-lockjpg.jpg\",\n\t            \"contentUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/635955465509758537-cybersecurity-lockjpg.jpg\"\n\t        },\n\t        {\n\t            \"@type\": \"BreadcrumbList\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/2023\\\/04\\\/28\\\/addressing-ot-security-under-the-national-cybersecurity-strategy\\\/#breadcrumb\",\n\t            \"itemListElement\": [\n\t                {\n\t                    \"@type\": \"ListItem\",\n\t                    \"position\": 1,\n\t                    \"name\": \"Home\",\n\t                    \"item\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/\",\n\t                    \"ad_zone\": \"home\"\n\t                },\n\t                {\n\t                    \"@type\": \"ListItem\",\n\t                    \"position\": 2,\n\t                    \"name\": \"Opinion\",\n\t                    \"item\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/opinion\\\/\",\n\t                    \"ad_zone\": \"opinion\"\n\t                },\n\t                {\n\t                    \"@type\": \"ListItem\",\n\t                    \"position\": 3,\n\t                    \"name\": \"Addressing OT security under the National Cybersecurity Strategy\"\n\t                }\n\t            ]\n\t        },\n\t        {\n\t            \"@type\": \"WebSite\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#website\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/\",\n\t            \"name\": \"C4ISRNet\",\n\t            \"description\": \"Media for the Intelligence-Age Military | C4ISRNET\",\n\t            \"publisher\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#organization\"\n\t            },\n\t            \"potentialAction\": [\n\t                {\n\t                    \"@type\": \"SearchAction\",\n\t                    \"target\": {\n\t                        \"@type\": \"EntryPoint\",\n\t                        \"urlTemplate\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/?s={search_term_string}\"\n\t                    },\n\t                    \"query-input\": {\n\t                        \"@type\": \"PropertyValueSpecification\",\n\t                        \"valueRequired\": true,\n\t                        \"valueName\": \"search_term_string\"\n\t                    }\n\t                }\n\t            ],\n\t            \"inLanguage\": \"en-US\"\n\t        },\n\t        {\n\t            \"@type\": \"Organization\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#organization\",\n\t            \"name\": \"C4ISRNet\",\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/\",\n\t            \"logo\": {\n\t                \"@type\": \"ImageObject\",\n\t                \"inLanguage\": \"en-US\",\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#\\\/schema\\\/logo\\\/image\\\/\",\n\t                \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/c4isrnet-logo-white.png\",\n\t                \"contentUrl\": \"https:\\\/\\\/one.sightlinemg.com\\\/wp-content\\\/uploads\\\/2026\\\/06\\\/c4isrnet-logo-white.png\",\n\t                \"caption\": \"C4ISRNet\"\n\t            },\n\t            \"image\": {\n\t                \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#\\\/schema\\\/logo\\\/image\\\/\"\n\t            }\n\t        },\n\t        {\n\t            \"@type\": \"Person\",\n\t            \"@id\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/#\\\/schema\\\/person\\\/cc76c831bb37a926738c8391fca7a3b1\",\n\t            \"name\": \"migration\",\n\t            \"image\": {\n\t                \"@type\": \"ImageObject\",\n\t                \"inLanguage\": \"en-US\",\n\t                \"@id\": \"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=gcf4cb6ee0ec29e49e7a963234e4340ec\",\n\t                \"url\": \"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g\",\n\t                \"contentUrl\": \"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g\",\n\t                \"caption\": \"migration\"\n\t            },\n\t            \"url\": \"https:\\\/\\\/one.sightlinemg.com\\\/c4isrnet\\\/author\\\/migration\\\/\"\n\t        }\n\t    ]\n\t}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Addressing OT security under the National Cybersecurity Strategy - C4ISRNet","description":"Lessons learned from modernizing IT won\u2019t apply to OT because of the latter's unique operating requirements.","robots":{"index":"noindex","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"og_locale":"en_US","og_type":"article","og_title":"Addressing OT security under the National Cybersecurity Strategy","og_description":"Lessons learned from modernizing IT won\u2019t apply to OT because of the latter's unique operating requirements.","og_url":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/","og_site_name":"C4ISRNet","article_published_time":"2023-04-28T18:04:28+00:00","article_modified_time":"2026-08-08T05:01:46+00:00","author":"Colby Proffitt","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Colby Proffitt","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/#article","isPartOf":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/"},"author":{"name":"migration","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#\/schema\/person\/cc76c831bb37a926738c8391fca7a3b1"},"headline":"Addressing OT security under the National Cybersecurity Strategy","datePublished":"2023-04-28T18:04:28+00:00","dateModified":"2026-08-08T05:01:46+00:00","mainEntityOfPage":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/"},"wordCount":819,"commentCount":0,"publisher":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#organization"},"image":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/#primaryimage"},"thumbnailUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/635955465509758537-cybersecurity-lockjpg.jpg","articleSection":["Cyber","Home","IT and Networks","Opinion","Thought Leadership"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/","url":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/","name":"Addressing OT security under the National Cybersecurity Strategy - C4ISRNet","isPartOf":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#website"},"primaryImageOfPage":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/#primaryimage"},"image":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/#primaryimage"},"thumbnailUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/635955465509758537-cybersecurity-lockjpg.jpg","datePublished":"2023-04-28T18:04:28+00:00","dateModified":"2026-08-08T05:01:46+00:00","description":"Lessons learned from modernizing IT won\u2019t apply to OT because of the latter's unique operating requirements.","breadcrumb":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/#primaryimage","url":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/635955465509758537-cybersecurity-lockjpg.jpg","contentUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/635955465509758537-cybersecurity-lockjpg.jpg"},{"@type":"BreadcrumbList","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/2023\/04\/28\/addressing-ot-security-under-the-national-cybersecurity-strategy\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/one.sightlinemg.com\/c4isrnet\/","ad_zone":"home"},{"@type":"ListItem","position":2,"name":"Opinion","item":"https:\/\/one.sightlinemg.com\/c4isrnet\/opinion\/","ad_zone":"opinion"},{"@type":"ListItem","position":3,"name":"Addressing OT security under the National Cybersecurity Strategy"}]},{"@type":"WebSite","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#website","url":"https:\/\/one.sightlinemg.com\/c4isrnet\/","name":"C4ISRNet","description":"Media for the Intelligence-Age Military | C4ISRNET","publisher":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/one.sightlinemg.com\/c4isrnet\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#organization","name":"C4ISRNet","url":"https:\/\/one.sightlinemg.com\/c4isrnet\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#\/schema\/logo\/image\/","url":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/06\/c4isrnet-logo-white.png","contentUrl":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/06\/c4isrnet-logo-white.png","caption":"C4ISRNet"},"image":{"@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/one.sightlinemg.com\/c4isrnet\/#\/schema\/person\/cc76c831bb37a926738c8391fca7a3b1","name":"migration","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=gcf4cb6ee0ec29e49e7a963234e4340ec","url":"https:\/\/secure.gravatar.com\/avatar\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/9e8d47be443ce94ce7fc357677b5f9c70235bb1f59e7267a102a74af58c04f59?s=96&d=mm&r=g","caption":"migration"},"url":"https:\/\/one.sightlinemg.com\/c4isrnet\/author\/migration\/"}]}},"jetpack_sharing_enabled":true,"distributor_meta":false,"distributor_terms":false,"distributor_media":false,"distributor_original_site_name":"C4ISRNet","distributor_original_site_url":"https:\/\/one.sightlinemg.com\/c4isrnet","push-errors":false,"jetpack_featured_media_url":"https:\/\/one.sightlinemg.com\/wp-content\/uploads\/2026\/08\/635955465509758537-cybersecurity-lockjpg.jpg","_links":{"self":[{"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/posts\/24758","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/users\/7"}],"replies":[{"embeddable":true,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/comments?post=24758"}],"version-history":[{"count":1,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/posts\/24758\/revisions"}],"predecessor-version":[{"id":24761,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/posts\/24758\/revisions\/24761"}],"wp:attachment":[{"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/media?parent=24758"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/categories?post=24758"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/tags?post=24758"},{"taxonomy":"author","embeddable":true,"href":"https:\/\/one.sightlinemg.com\/c4isrnet\/wp-json\/wp\/v2\/coauthors?post=24758"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}