Defending Critical Infrastructure in Hot War with Tim Conway

Defending Critical Infrastructure in Hot War with Tim Conway

🎙 SANS Institute 👥 70K 📅 April 22, 2026 ⏱ 49 min 👁 361 📄 expert opinion 🧭 2026-08-15
Available in: English (current) Français

Keywords

critical infrastructurecyber warfareICS securityIran conflictgeopolitical risk

Summary

In this special episode of Cyber Leaders, hosts James Line and Ciaran Martin are joined by Tim Conway, Technical Director of Industrial Control Systems Security at SANS, to discuss the cyber dimensions of the ongoing conflict between the US, Israel, and Iran. The conversation begins with an overview of the conflict’s context, emphasizing that while it is not primarily a cyber war, cyber operations are integral to military and geopolitical strategies. Tim highlights the historical capabilities of Iranian cyber actors, their focus on disruption, and the evolution of their tactics from simple DDoS to more sophisticated attacks on critical infrastructure. He draws parallels with the Ukraine conflict, noting similarities in targeting critical infrastructure but also differences in the immediacy of retaliation and the use of cyber-physical coordination. The discussion covers the offensive use of cyber by the US and Israel, including the Stuxnet precedent and recent operations like the pager attacks. Tim emphasizes the importance of defending critical infrastructure, noting that adversaries often use common tools and that even less sophisticated attacks can have significant impacts. He stresses the need for organizations to focus on fundamentals like asset inventory, network segmentation, and incident response. The episode concludes with practical advice for defenders, highlighting the importance of understanding the threat landscape and preparing for potential attacks.

215 words

Critical Evaluation

Value of the Information & Strength of the Argument

The value of the information is high, providing unique insights from a leading expert in ICS security. Tim Conway’s arguments are well-structured and grounded in real-world experience, particularly his analysis of the Iran conflict and its implications for critical infrastructure defenders. He effectively connects geopolitical events to practical cybersecurity concerns, offering a strategic perspective that is often missing in technical discussions. The argumentation is solid, though it relies heavily on anecdotal evidence and personal observations rather than formal data or citations.

Scientific Rigor, Source Quality, Title Accuracy

The scientific rigor is moderate; while the guest is highly credible, the discussion lacks formal citations and relies on general knowledge. The sources cited are primarily the hosts’ and guest’s own expertise, with no external references provided. The title accurately reflects the content, focusing on defending critical infrastructure during a hot war. The episode is an expert opinion piece rather than a research presentation, which is appropriate for the format but limits its scientific rigor.

171 words

Title / Content Match

The title accurately reflects the content, focusing on defending critical infrastructure during a hot war, with Tim Conway providing expert commentary.

Quality & Reliability

8/10

High expertise of the guest (Tim Conway, Technical Director of ICS Security at SANS) and practical insights grounded in real-world experience. However, the discussion is largely anecdotal and lacks formal citations or verifiable data, limiting its scientific rigor.

Key Moments

Cited Sources

  • SANS Institute — The podcast is produced by SANS Institute, and Tim Conway is a Technical Director there.

Concurring Sources

  • CISA — CISA provides guidance on protecting critical infrastructure, aligning with the episode's recommendations.

Contribution & Novelties

This episode provides a timely and expert analysis of the cyber dimensions of a major geopolitical conflict, offering unique insights into the targeting of critical infrastructure and the evolution of cyber warfare tactics. It bridges the gap between high-level geopolitical discussions and practical cybersecurity concerns, making it valuable for both technical and strategic audiences.

Pour aller plus loin :

  • Industrial Control Systems Cyber Emergency Response Team (ICS-CERT) — Official resource for ICS security alerts and best practices.
  • Stuxnet — Background on the landmark cyber-physical attack.
  • NIST Cybersecurity Framework — Framework for improving critical infrastructure cybersecurity.

95 words

Radar Profile

The radar profile shows high scores in information quantity and quality, reflecting the expert insights and depth of discussion. The technical level is moderate, suitable for a broad audience, while reliability is strong due to the guest's credibility. Overall, the episode is a valuable resource for understanding cyber threats to critical infrastructure.

Reliability 7/10

💬 No comments were provided for analysis.