socel.net is one of the many independent Mastodon servers you can use to participate in the fediverse.
Socel is a place for animation professionals, freelancers, independents, students, and fans to connect and grow together. Everyone in related fields are also welcome.

Server stats:

321
active users

#ot

8 posts8 participants1 post today

Any #OT / #ICS #cybersecurity folks here who would be able to give me an idea about compensation for roles in the field? I'm working on something that might lead to some OT/ICS security work, but I need to know what's a "good" hourly rate for pros in the US and abroad. Thank you!!

🆕 Matthew Rogers, ICS Cybersecurity Strategy & R&D Lead at #CISA, joined the 🎙️ Nexus Podcast to discuss the agency's and its international partners' release of a procurement guide for operational technology (#OT) owners and operators. The guide describes 12 OT #cybersecurity elements buyers should be looking for, hopefully influencing #automation and control system vendors to implement. Rogers hopes this initiative not only gives asset owners some agency during procurement but also creates a market-influenced demand among leading vendors to integrate these security elements by default into OT products.

🎧 Listen to the full episode: nexusconnect.io/podcasts/nexus

🏒🥅 Anaheim Ducks 4 @ Winnipeg Jets 3, 2025-01-02

I elected to watch Jets v Ducks, in part because I’d seen the Ducks undo the Oilers last weekend. This time they undid the Jets. Very exciting third period. And the “under Ducks” did it in OT. They are a team that will surprise you.

Gameflow and heatmap by NaturalStatTrick

#hnom #nhlJets #nhlDucks #winnipeg #anaheim #nhl #hockey #ot #oilers
@hnom

naturalstattrick.com/game.php?

Ahoy infosec.exchange!

After I've been lurking around here for quite a while, I think it's time for an #introduction.

My current Mastodon mode of operation is to randomly stick my head into this collaborative stream of consciousness from time to time, observe whatever floats by quietly and most likely leave without any interaction.

In general, I seek to understand the reality we live in and try to figure out how to improve it. This involves far too many details and unfortunately I tend to engage in all kinds of side quests instead of working on what matters the most.

I've not decided yet how much and what parts of myself I want to disclose around here. So, expect some more lurking. If I post something, it will probably revolve around #automation, #communication, #cybersecurity, #education, #it, #networks, #ot, #privacy or #python.

DATE: December 19, 2024 at 04:57PM
SOURCE: HEALTHCARE INFO SECURITY

Direct article link at end of text block below.

@HHSgov Urges #Healthcare Sector to Beef Up #OT, #IoMT #Cybersecurity t.co/a5h5xYK6MH

Here are any URLs found in the article text:

t.co/a5h5xYK6MH

Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

-------------------------------------------------

Private, vetted email list for mental health professionals: clinicians-exchange.org

Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

-------------------------------------------------

#security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

Last week I mentioned a SCADA mgr position available at Seattle Public Utilities (SPU).

That listing is now live:

governmentjobs.com/careers/sea

This position leads, manages, organizes, and directs SPU’s SCADA 23 person OT team. They maintain a standalone zero trust network, servers, workstations, and 250 remote sites used to monitor and control the public water and wastewater systems.

#water #OT #ICS #infosec

I am not the hiring mgr. I am just a deeply invested colleague.

PLEASE BOOST!!

www.governmentjobs.comSCADA Operations Technology Manager (Mgr. 3)An online application must be fully completed to receive consideration. This position is open continuous until filled. First consideration will be given to candidates who apply by 5:00pm (PT) on January 10, 2025.Are you a seasoned SCADA Operations Technology Manager who's interested in protecting Seattle's public water and wastewater systems?Seattle Public Utilities (SPU) is recruiting for a SCADA Operations Technology Manager. This position leads, manages, organizes, and directs SPU’s Supervisory Control and Data Acquisition (SCADA) Operations Technology (OT) team consisting of 23 highly skilled professional staff which maintains a standalone zero trust network, servers, workstations, and 250 remote sites used to monitor and control the public water and wastewater systems.Additionally, this team engineers Industrial Control Systems (ICS) which consists of combining various control components (e.g., electrical, mechanical, hydraulics, pneumatic, etc.) and SPU’s ability to collect real-time data within our systems. The services supported by SCADA support safe and reliable delivery of drinking water to 1.6M customers regionally, and wastewater services for all 750,000 City of Seattle residents.SCADA is mission critical in the safety of our systems from cyber-attacks, and this team enables the secure monitoring and control with this division's Control Center operations of SPU's regional infrastructure and prevents any outside parties from accessing SPU’s critical systems. An outside attack could paralyze part or all of SPU’s water and wastewater systems.About Seattle Public Utilities: Seattle Public Utilities (SPU) is a community-centered utility that delivers vital services to Seattle residents and businesses including drinking water, drainage and wastewater, and garbage/recycling/compost. SPU also provides drinking water for 1.5 million customers in the region. SPU’s work includes system maintenance and improvements and keeping Seattle clean. Over 1,400 SPU employees work with our community to provide affordable and equitable stewardship of our water and waste resources for future generations.  For more information about Seattle Public Utilities (SPU), checkout the:  SPU Website SPU Workplace Expectations Strategic Business Plan  SPU commits to Our City Values and Race and Social Justice as core principles that guide our work. We actively take steps to dismantle systemic racism and increase service equity. We value diverse life experiences and strive to create a workplace that is welcoming to all. We take steps to be inclusive and equitable in our recruiting, hiring and promotional opportunities. 

💡 On Nexus, Jim Miller, Director of OT Cybersecurity for Magna International explains how distributed #OT factory environments manage #cybersecurity from cultural issues to the need for proper #NetworkSegmentation, and how to tune #firewall rules to automate reviews. Miller explains how his team started with basic security configurations that should be in place, how risk scores are calculated for network segments against a safe baseline, and how those scores illuminate risk and improve protection versus just improving firewall rules. Watch here: nexusconnect.io/videos/jim-mil #Nexus24

NexusJim Miller on Establishing OT Cybersecurity Baselines for Factory EnvironmentsJim Miller, Director of OT Cybersecurity for Magna, explains how distributed OT factory environments manage cybersecurity from cultural issues, to the need for proper network segmentation, and how to tune firewall rules in order to automate reviews. Miller explains how his team started with a set of basic security conf...

Our team at @censys has studied Internet exposure of #ICS for the better part of a year, learning more about the products, protocols, and nuances of this space.

Today I'm excited to share our third annual ✨State of the Internet Report detailing what we've learned! A few highlights:

🛜 Most ICS protocols and HMIs we've observed run on 5G/LTE (e.g., Verizon) or SOHO/business-grade ISPs (e.g., Comcast). We initially observed this in the U.S. and in this most recent research found that it's a global phenomenon. This surprised me initially, but industrial devices often need to run in places where a wired connection might not be available. While great for connectivity, use of such networks makes it often impossible to determine who owns or operates a given service, as the host metadata points back to the telco itself.

💧 Analysis of over 200 C-More human-machine interfaces (HMIs) revealed over a third appear to be related to water and wastewater systems (WWS). WWS has seen increased targeting over the last ~year, and these exposures suggest still more work is needed to adequately protect and defend this sector.

⛔️ We found nearly 200 hosts globally running HMIs alongside products banned by U.S. NDAA Section 889. While this act applies only to a specific set of operators within the U.S. federal government, it's interesting to note what technologies operators implement alongside potentially critical services.

#infosec #cybersecurity #OT

You can find a copy of the report with all the details here! 👇

censys.com/the-2024-state-of-t

Censys · The 2024 State of the Internet Report | CensysIn their third annual State of the Internet Report, the Censys Research Team is back with fresh insights into the state of internet security and its implications for organizations and their security teams.