Skip to content
PodcastsBusinessIndustrial Cybersecurity Insider

Industrial Cybersecurity Insider

Industrial Cybersecurity Insider
Industrial Cybersecurity Insider
Latest episode

142 episodes

  • Industrial Cybersecurity Insider

    The Blind Spot Between IT and OT Isn't Where or What You Think

    01/09/2026 | 35 mins.
    Manufacturing cybersecurity can't succeed when IT acts as the enforcer and OT sees security as an obstacle to production.
    CyberHoot founder Craig Taylor joins Dino Busalachi to explain why punishment-based awareness programs create resistance, how positive reinforcement can turn employees into an active layer of defense, and why cyber preparedness belongs beside safety, quality, uptime, and availability as a core plant metric.
    They discuss the overlooked role of system integrators and machine builders, the danger of unmanaged laptops and remote access, the false comfort ofair-gappedd systems, and the growing risk that AI poses to aging industrial technology.
    Craig also shares a simple framework called PAR, which means pause, assess, and report, and makes the case for short, practical training that rewards people for speaking up before a mistake becomes a shutdown.
    Chapters:
    (00:00:00) Why IT should empower OT
    (00:05:18) Connecting cyber awareness to plant uptime
    (00:10:04) The missing role of system integrators
    (00:15:07) Building a culture that rewards reporting
    (00:20:01) Legacy equipment, limited resources, and better incentives
    (00:24:06) Vulnerable plants and the air gap myth
    (00:29:07) Treating cybersecurity like plant safety
    (00:34:00) The personal value of cyber literacy

    Links And Resources:
    Want to Sponsor an episode or be a Guest? Reach out here.
    Industrial Cybersecurity Insider on LinkedIn
    Cybersecurity & Digital Safety on LinkedIn
    BW Design Group Cybersecurity
    Craig Taylor on LinkedIn
    For 20% Off CyberHoot 1st Year, mention Industrial Cybersecurity Insider
    Dino Busalachi on LinkedIn
    Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!
  • Industrial Cybersecurity Insider

    Why Detection Alone Can't Stop the Next OT Attack

    26/08/2026 | 32 mins.
    Detection got fast, but remediation didn't. And that gap is exactly where attackers live.
    Manufacturers have spent the last decade building visibility into their plants: sensors, dashboards, alerts flying into every SOC. But knowing about a threat and fixing it are two different problems, and most industrial teams are still solving the second one at human speed. A ticket gets opened. A maintenance window gets scheduled. Three departments get looped in. Meanwhile, the attacker isn't waiting for anyone's approval.
    In this episode, Craig Duckworth talks with Tal Kollender, founder and CEO of Remedio, about what's actually keeping industrial environments exposed: misconfigurations left untouched for months, unnecessary services quietly giving attackers a path to move laterally, and aging systems nobody wants to be the one to touch. Tal makes the case that patching alone will never close this gap and explains why safe automated remediation is becoming essential as AI accelerates attacks faster than most security teams can keep up.
    They also dig into the reality of OT: uptime and safety come first, IT security tools often can't reach the controls layer, and the wrong change can cause real damage on the plant floor. It's a candid look at what it takes to align security and operations, and why building that trust is the real first step toward proactive protection instead of reactive cleanup.
    If you're responsible for securing a plant floor, a fleet of facilities, or the budget behind either one, this conversation gives you a clear, practical way to think about closing the gap between seeing a threat and actually stopping one.
    Chapters:
    (00:00:00) Why machine speed detection needs machine speed remediation
    (00:01:00) Tal’s path from teenage hacker to cybersecurity founder
    (00:06:00) Misconfigurations and lateral movement in industrial environments
    (00:11:00) Why patching and configuration changes are difficult in OT
    (00:15:00) Moving from reactive detection to proactive hardening
    (00:17:00) Aligning people, process, and technology
    (00:22:00) AI adoption, unmanaged risk, and doing more with less
    (00:25:00) Bridging the IT and OT divide without disrupting operations
    (00:29:00) The first practical step toward proactive industrial security

    Links And Resources:
    Want to Sponsor an episode or be a Guest? Reach out here.
    Industrial Cybersecurity Insider on LinkedIn
    Cybersecurity & Digital Safety on LinkedIn
    BW Design Group Cybersecurity
    Tal Kollender on LinkedIn
    Dino Busalachi on LinkedIn
    Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!
  • Industrial Cybersecurity Insider

    From NSA Threat Intelligence to Factory-Floor Cybersecurity

    18/08/2026 | 32 mins.
    Cybersecurity in an industrial environment isn't just an IT concern. It's a question of whether the business can keep operating, and whether people stay safe when systems fail.
    Craig Duckworth talks with Tim Hoffman, a former NSA director of threat intelligence whose career spans military intelligence, defense, healthcare, finance, critical infrastructure, and industrial operations.
    They discuss why CMMC needs to be treated as a cultural shift rather than a compliance exercise, how CISOs earn trust with plant teams, and why leaders have to translate cyber risk into terms the board actually understands.
    Tim explains why tools alone can't protect OT. Craig ties digital safety back to the drills and routines plants already run. And together they look at where AI helps, where it adds risk, and why two fundamentals still matter most: clear processes and the discipline to practice them.
    Chapters:
    (00:00:00) Why Security Tools Cannot Solve Operational Risk
    (00:01:00) Lessons from an NSA and Mission Critical Security Career
    (00:05:00) Why CMMC Must Be More Than a Compliance Checklist
    (00:08:00) Closing the Authority Gap Between IT and OT
    (00:12:00) Translating Cyber Risk Into Cost and Human Consequences
    (00:17:00) Why OT Security Demands More Than IT Tools
    (00:19:00) AI, Faster Attacks, and the Need for Human Judgment
    (00:25:00) Start With Process and Build the Discipline to Follow It
    (00:27:00) Treating Cyber Response Like a Plant Safety Drill
    (00:31:00) People and Process Come Before Technology

    Links And Resources:
    Want to Sponsor an episode or be a Guest? Reach out here.
    Industrial Cybersecurity Insider on LinkedIn
    Cybersecurity & Digital Safety on LinkedIn
    BW Design Group Cybersecurity
    Tim Hoffman on LinkedIn
    Dino Busalachi on LinkedIn
    Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!
  • Industrial Cybersecurity Insider

    Your Most Critical Network May Be Your Least Protected

    11/08/2026 | 33 mins.
    The air gap you're counting on probably isn't there. Dino Busalacchi sits down with cybersecurity veteran and Tulane University Cybersecurity Professor Joshua Copeland, to talk about the realities of protecting industrial environments, where uptime, safety, and production come first.
    They dig into why legacy systems can't be secured like IT, how routine security tasks can disrupt physical operations, the leadership gap between IT and OT, and why cybersecurity needs to be treated as digital safety. A practical listen for CISOs, CIOs, engineering leaders, and plant operators.
    Chapters:
    (00:00:00) Why operational technology is critical to everyday life
    (00:03:00) Legacy systems and the hidden opportunity in OT security
    (00:07:00) Ransomware, AI, and attacks designed for physical outcomes
    (00:10:00) How standard IT security tools can stop production
    (00:13:00) What cybersecurity events get wrong about OT
    (00:16:00) The leadership gap and the myth of isolated systems
    (00:20:00) Why cybersecurity should be treated as digital safety
    (00:23:00) Compliance, asset inventory, and aging industrial equipment
    (00:27:00) Building the next generation of OT security professionals
    (00:31:00) Why every part of modern life depends on OT

    Links And Resources:
    Want to Sponsor an episode or be a Guest? Reach out here.
    Industrial Cybersecurity Insider on LinkedIn
    Cybersecurity & Digital Safety on LinkedIn
    BW Design Group Cybersecurity
    Josh Copeland on LinkedIn
    Dino Busalachi on LinkedIn
    Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!
  • Industrial Cybersecurity Insider

    Supply Chain Risk: Your Vendors Have Vendors You've Never Heard Of

    04/08/2026 | 34 mins.
    Craig Duckworth sits down with Jowanza Joseph, CEO of Parakeet Risk, to unpack why third-party risk has become one of the most urgent challenges facing manufacturers and critical infrastructure operators.
    Jowanza spent 15 years in engineering roles at Adobe, Pluralsight, and MasterCard before founding Parakeet Risk to serve an industrial sector he saw as the most underserved when it comes to technology.
    Together they address why simply knowing who your vendors are is harder than it sounds, how insurers are moving past checkbox questionnaires and demanding real evidence of controls, and what happens when contracts require you to identify a new asset in your OT environment within five minutes.
    They also get honest about the organizational problem few want to own: security leaders who carry responsibility for the plant floor without the authority to change anything on it. Jowanza closes with a practical, low-cost starting point for any organization and a look at where vendor attestation is headed over the next five years.
    Chapters:
    (00:00:00) Why industrial companies must become cybersecurity companies
    (00:02:08) Cataloging and prioritizing your most dangerous vendors
    (00:04:37) The hidden layers of subcontractors in your supply chain
    (00:06:42) Cyber insurance moves past the checkbox era
    (00:10:47) Contracts that demand new asset identification in five minutes
    (00:12:58) AI is multiplying vulnerabilities faster than solutions
    (00:16:31) Three hallmarks of a strong third party risk program
    (00:21:14) Incident response, game days, and who falls on the sword
    (00:23:42) Responsibility without authority across the IT and OT divide
    (00:28:31) Where to start today and the future of vendor attestation

    Links And Resources:
    Want to Sponsor an episode or be a Guest? Reach out here.
    Industrial Cybersecurity Insider on LinkedIn
    Cybersecurity & Digital Safety on LinkedIn
    BW Design Group Cybersecurity
    Dino Busalachi on LinkedIn
    Craig Duckworth on LinkedIn

    Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review!
More Business podcasts
About Industrial Cybersecurity Insider
Industrial Cybersecurity Insider offers a thorough look into the field of industrial cybersecurity for manufacturing and critical infrastructure. The podcast delves into key topics, including industry trends, policy changes, and groundbreaking innovations. Each episode will feature insights from key influencers, policy makers, and industry leaders. Subscribe and tune in weekly to stay in the know on everything important in the industrial cybersecurity world!
Podcast website

Listen to Industrial Cybersecurity Insider, Planet Money and many other podcasts from around the world with the radio.net app

Get the free radio.net app

  • Stations and podcasts to bookmark
  • Stream via Wi-Fi or Bluetooth
  • Supports Carplay & Android Auto
  • Many other app features