SCADA/ICS systems are frequently used within critical infrastructure to control and read data in industrial processing. These systems are generally not designed with security in mind; rather, they are simply designed to work and to last.
More and more, however, these systems are being connected to internal networks and (indirectly) to the internet. This carries a number of risks. Disruption of SCADA/ICS systems can impact the physical world. Locks open, power plants cease operation, or water treatments suddenly become unreliable.
One of our SCADA experts Roy Duisters, Senior Security Specialist at Secura, gave a workshop about the usage of threat modeling to manage the ever changing attack surface of ICS/SCADA networks during the 5th Annual Cyber and SCADA Security for the Oil & Gas Industry 2018.