The Dangerous Workarounds OT Teams Use to Bypass Security

The Dangerous Workarounds OT Teams Use to Bypass Security

🎙 Dino Busalacchi and Jim Cook 👥 192 📅 May 27, 2026 ⏱ 34 min 👁 52 📄 expert opinion 🧭 2026-08-16
Available in: English (current) Français

Keywords

OT securityIT/OT convergencecybersecuritymanufacturingOTIDS

Summary

In this episode of Industrial Cybersecurity Insider, hosts Dino Busalacchi and Jim Cook discuss the challenges of IT/OT convergence in manufacturing environments. They highlight that 90% of manufacturers are still in the early stages of OT cybersecurity awareness, citing industry reports. The conversation covers the cultural clash between IT and OT teams, the tendency for IT to avoid the plant floor, and the dangerous workarounds OT teams use to bypass security, such as asking for forgiveness rather than permission. They emphasize the importance of collaboration and communication, using real client stories to illustrate common pitfalls, such as IT deploying OT intrusion detection systems without involving OT teams. The hosts argue that OT must take a leadership role in cybersecurity, similar to safety, and that IT can bring value by helping reduce unplanned downtime. They also discuss the complexity of plant floor architectures, with multiple switch vendors and legacy systems, and advocate for continuous asset inventory tools over manual assessments. The episode concludes with advice for IT and OT teams to start working together through tabletop exercises and proof-of-value projects.

179 words

Critical Evaluation

Value of the Information & Strength of the Argument

The value of the information lies in the practical insights from real client engagements, illustrating common challenges in IT/OT convergence. The hosts provide actionable advice, such as involving OT teams in cybersecurity decisions and using OTIDS tools for operational benefits beyond security. The argumentation is based on anecdotal evidence and industry experience, which is credible but not rigorously scientific. They reference industry reports from Cisco, Claroty, and Armis, but without specific data, weakening the argument’s strength. The discussion is persuasive for practitioners but lacks empirical backing.

Scientific Rigor, Source Quality, Title Accuracy

The scientific rigor is moderate; the hosts rely on personal experience and general industry reports rather than peer-reviewed studies. They mention sources like Cisco, Claroty, and Armis, but do not provide specific references or URLs. The title accurately reflects the content, focusing on risky workarounds by OT teams. The discussion is coherent and well-structured, but the lack of concrete data and citations reduces its scientific credibility. No comments were provided, so no analysis of public reception is included.

179 words

Title / Content Match

The title accurately reflects the content, focusing on risky workarounds by OT teams and the need for IT/OT convergence.

Quality & Reliability

7/10

The hosts are experienced professionals in IT and OT cybersecurity, drawing on real client engagements. They cite industry reports from Cisco, Claroty, and Armis, but without specific references or data. The discussion is anecdotal and opinion-based, lacking empirical evidence or peer-reviewed sources.

Key Moments

Cited Sources

  • Cisco — Mentioned as a source of industry statistics on OT cybersecurity awareness.
  • Claroty — Mentioned as a source of industry statistics on OT cybersecurity awareness.
  • Armis — Mentioned as a source of industry statistics on OT cybersecurity awareness.

Concurring Sources

  • Cisco — Industry reports on OT cybersecurity awareness.
  • Claroty — Industry reports on OT cybersecurity awareness.
  • Armis — Industry reports on OT cybersecurity awareness.

Contribution & Novelties

The episode provides practical insights from real client engagements, highlighting the cultural and operational challenges in IT/OT convergence. It emphasizes the need for OT to take a leadership role in cybersecurity and demonstrates how OTIDS tools can deliver operational value beyond threat detection. The hosts offer actionable advice for IT and OT teams to collaborate effectively, such as involving OT in security decisions and using continuous asset inventory tools.

Pour aller plus loin :

118 words

Radar Profile

The radar profile shows balanced scores across information quantity, quality, technical level, and reliability, with a slight emphasis on practical experience over formal rigor. This reflects a practitioner-oriented discussion with actionable insights but limited empirical evidence.

Reliability 6/10