Joint Guidance: Cyber Security for Operational Technology

The National Cyber Security Centre (NCSC) has joined the Australian Signals Directorate’s Australian Cyber Security Centre (ASD's ACSC) and international partners to support the release of new guidance about cyber security for operational technology (OT).

ASD has consulted with industry to develop Principles of operational technology cyber security(external link). These principles are designed to help leaders, developers, and other stakeholders consider key cyber security risks in OT environments and actions they can take to secure their OT.

The six principles are:

  • ensure the system is safe
  • know and defend your vital systems
  • protect your OT data – it is valuable
  • separate OT from other networks
  • secure your supply chain
  • prepare your people – they are your first line of defence.

These can be used for OT to identify and mitigate the cyber security risks within your operational technology and specific requirements. This will help critical infrastructure protect their systems and online supply chains.

Designing robust cyber security measures for operational technology (OT) environments is vital to protect the safety, availability, integrity and confidentiality of essential services. It is important that decision makers are able to make informed and comprehensive decisions when designing, implementing, and managing IT environments.

Read Principles of operational technology cyber security.(external link)