
Multi-national CI Fortify Guidance at a Glance
Four governments just advised critical infrastructure operators to prepare to isolate their most important OT systems. Here’s what that means, who should care, and what to do about it.
Welcome to the resources page! We have compiled a collection of useful information, tools, and resources to help you

Four governments just advised critical infrastructure operators to prepare to isolate their most important OT systems. Here’s what that means, who should care, and what to do about it.

This webinar reviews recent government directives, clears up the controversy, and introduces practical approaches to islanding. We evaluate islanding advice in the context of the emerging era of AI-based zero-day exploits.

OT security is “hard” – engineering change control (ECC) makes patching slow and expensive, many OT devices and systems have no real support for zero trust (ZT)…

In this webinar we connect first principles to modern practice: Biba, SEC-OT, CIE mitigations, UK NCSC connectivity guidance and modern “islanding” requirements all lead to OT designs whose security materially exceeds that of conventional IT networks.

Two decades ago, we founded Waterfall with one purpose: to defeat nation-state attacks impacting OT environments and critical infrastructure.

Anthropic’s Claude Mythos is the latest example of a trend many of us in industrial cybersecurity have been warning about for years.

Introducing a new, ‘entry-level’ unidirectional solution

If only we could wave a magic wand and patch everything and zero-trust everything, just like with our IT networks, then our OT networks would be “secure”

Discover why common OT security assumptions are wrong

Ask different questions, get different answers. What should you be asking your OT “secure” remote access (SRA) vendor?