@BEERISAC: OT/ICS Security Podcast Playlist

Anton Shipulin / Listen Notes

A curated playlist of Operational Technology (OT) and Industrial Control Systems (ICS) cybersecurity podcast episodes in any language, compiled by ICS security enthusiasts. Missing something? Contact Anton Shipulin on LinkedIn. Subscribe for updates!

  1. 5h ago

    Building the Cybersecurity Community: From 120 People to 3,000 at CYBR.SEC.CON

    Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: Building the Cybersecurity Community: From 120 People to 3,000 at CYBR.SEC.CONPub date: 2026-09-07Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationWork with Aaron: https://protectitallpod.com/work/ The book: https://protectitallpod.com/book/ This episode: https://protectitallpod.com/ep122/ The OT Security Starter Kit: https://protectitallpod.com/starter-kit/ Get your tickets for CYBR.SEC.CON., a two-day cybersecurity conference, here: https://www.cybrseccon.com/ What started with 120 people and a homemade Word flyer has grown into a cybersecurity community of more than 3,000. So what does it take to build a community that can scale without losing its personal connection? In this episode of Protect It All, host Aaron Crow sits down with Michael Farnum, CEO and co-founder of CYBR.SEC.Community, and Sam Van Ryder, co-founder and an OT sales expert, to explore the story behind the growth of CYBR.SEC.CON and the community surrounding it. Michael and Sam share how they went from a grassroots cybersecurity gathering to a thriving community while keeping the relationships and sense of connection that made the event special in the first place. The conversation goes beyond conferences. Aaron, Michael, and Sam discuss the challenges facing people trying to break into cybersecurity and OT, why entry-level opportunities can be difficult to find, and what experienced professionals can do to help develop the next generation of cyber defenders. They also share their hands-on efforts to introduce young people to cybersecurity, including bringing 75 high school students into the community, with plans to reach 150. From hiring and firing lessons to career advice, community building, and the future of OT cybersecurity, this episode offers practical insight for anyone looking to grow their career, build meaningful connections, or help strengthen the cybersecurity workforce. In this episode, you'll learn: How CYBR.SEC.Community grew from 120 people to more than 3,000 What it takes to scale a cybersecurity community without losing its personal feel Why conferences can play an important role in cybersecurity careers How to break into OT and cybersecurity when you're just starting out The challenges surrounding entry-level cybersecurity jobs How community and mentorship can help develop the next generation of cyber professionals What CYBR.SEC.Community is doing to engage high school students in cybersecurity Coming September 15 and 16, 2026 CYBR.SEC.CON 2026 brings the cybersecurity community together again on September 15 and 16 at the George R. Brown Convention Center in Houston, Texas. If you're looking to connect with cybersecurity professionals, expand your network, learn from practitioners, discover career opportunities, and be part of a growing cyber community, CYBR.SEC.CON 2026 is an event worth checking out. Tune in to hear the story behind CYBR.SEC.CON, the people building the community, and why the future of cybersecurity depends on bringing more people into the conversation. About the guests: Michael Farnum is the CEO and co-founder of CYBR.SEC.Community and has worked in IT and cybersecurity since 1994. He founded HOU.SEC.CON. in 2010, which evolved into CYBR.SEC.CON., now attracting more than 3,000 cybersecurity professionals annually. Michael is passionate about cybersecurity community building, workforce development, education, and career development, and is a frequent speaker and podcaster on security leadership and industry trends. Sam Van Ryder is the CoFounder of CYBR.SEC.Community and Director of Strategic Accounts at Dragos. With more than 20 years of experience spanning mechanical engineering and technology sales, including over a decade focused on ICS and OT security, Sam brings deep industry expertise and a strong passion for cybersecurity community building. He is also a co-founder of HOU.SEC.CON., now CYBR.SEC.CON., which has grown into a major regional cybersecurity gathering. Important Links: LinkedIn of Michael Farnum: https://www.linkedin.com/in/mfarnum/ LinkedIn of Sam Van Ryder: https://www.linkedin.com/in/svanryder/ CYBR.SEC.CON: https://www.cybrseccon.com/ CYBR.SEC.Community: https://www.cybrsec.community/ CYBR.SEC.Careers: https://www.cybrseccareers.org/ CYBR.SEC.Events on LinkedIn: https://www.linkedin.com/company/cybrsecevents/ Learn more about PrOTect IT All: Work with Aaron: https://protectitallpod.com/work/ The book: https://protectitallpod.com/book/ This episode: https://protectitallpod.com/ep122/ The OT Security Starter Kit: https://protectitallpod.com/starter-kit/ YouTube: https://www.youtube.com/@PrOTectITAll Email: info@protectitall.co X: https://twitter.com/protectitall Facebook: https://facebook.com/protectitallpodcast To be a guest or suggest a guest or episode, email info@protectitall.co. Please leave us a review on Apple or Spotify: Apple: https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124 Spotify: https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4 The podcast and artwork embedded on this page are from Aaron Crow | Operational Technology & Cybersecurity Host, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

    Building the Cybersecurity Community: From 120 People to 3,000 at CYBR.SEC.CON
  2. 5d ago

    The Blind Spot Between IT and OT Isn't Where or What You Think

    Podcast: Industrial Cybersecurity InsiderEpisode: The Blind Spot Between IT and OT Isn't Where or What You ThinkPub date: 2026-09-01Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationManufacturing cybersecurity can't succeed when IT acts as the enforcer and OT sees security as an obstacle to production. CyberHoot founder Craig Taylor joins Dino Busalachi to explain why punishment-based awareness programs create resistance, how positive reinforcement can turn employees into an active layer of defense, and why cyber preparedness belongs beside safety, quality, uptime, and availability as a core plant metric. They discuss the overlooked role of system integrators and machine builders, the danger of unmanaged laptops and remote access, the false comfort ofair-gappedd systems, and the growing risk that AI poses to aging industrial technology. Craig also shares a simple framework called PAR, which means pause, assess, and report, and makes the case for short, practical training that rewards people for speaking up before a mistake becomes a shutdown. Chapters: (00:00:00) Why IT should empower OT(00:05:18) Connecting cyber awareness to plant uptime(00:10:04) The missing role of system integrators(00:15:07) Building a culture that rewards reporting(00:20:01) Legacy equipment, limited resources, and better incentives(00:24:06) Vulnerable plants and the air gap myth(00:29:07) Treating cybersecurity like plant safety(00:34:00) The personal value of cyber literacy Links And Resources: Want to Sponsor an episode or be a Guest? Reach out here.Industrial Cybersecurity Insider on LinkedInCybersecurity & Digital Safety on LinkedInBW Design Group CybersecurityCraig Taylor on LinkedInFor 20% Off CyberHoot 1st Year, mention Industrial Cybersecurity InsiderDino Busalachi on LinkedInCraig Duckworth on LinkedIn Thanks so much for joining us this week. Want to subscribe to Industrial Cybersecurity Insider? Have some feedback you’d like to share? Connect with us on Spotify, Apple Podcasts, and YouTube to leave us a review! The podcast and artwork embedded on this page are from Industrial Cybersecurity Insider, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

    The Blind Spot Between IT and OT Isn't Where or What You Think
  3. Sep 1

    What Makes a Cybersecurity Startup Valuable in the AI Era? A VC's Perspective

    Podcast: PrOTect It All (LS 27 · TOP 10% what is this?)Episode: What Makes a Cybersecurity Startup Valuable in the AI Era? A VC's PerspectivePub date: 2026-08-31Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationAI has made it easier than ever to build a cybersecurity product. But has it also made it harder to build a valuable cybersecurity company? In this episode of Protect It All, host Aaron Crow sits down with Ken Elefant, Founding Managing Director of the venture group at Sorenson Capital, for a candid conversation about what really makes cybersecurity startups succeed. Ken shares a venture investor's perspective on the rapidly changing security market, including why simply wrapping a product around an LLM may not create lasting value, how AI is accelerating commoditization, and what founders need to do to build a meaningful competitive advantage. The conversation goes beyond technology to explore the often-overlooked role of people, process, market positioning, and execution. Aaron and Ken discuss the importance of finding the right "wedge" into enterprise security, solving real customer problems, differentiating in crowded markets, and building companies that can create lasting value rather than chasing the latest technology trend. They also draw on lessons from successful cybersecurity exits and the changing threat landscape to examine what investors are looking for as AI reshapes both cybersecurity products and the businesses behind them. Key Learning:  What venture investors look for in cybersecurity startups Why AI-powered security products can quickly become commoditized How founders can find a strong market wedge Why solving a real customer problem matters more than adding AI The role of people and process in building successful security companies How cybersecurity startups can differentiate in an increasingly crowded market What founders and operators can learn from successful security exits Where AI is creating genuine opportunity and where the hype may be ahead of the value Key Moments:  03:43 Using AI in podcasting 07:41 Trusting vendors and cybersecurity risks 10:59 Building Connections for Early Investments 15:19 Investing in emerging tech markets 17:45 Supporting AI-based startup growth 20:19 Building simple websites for businesses 26:03 Attracted to boring, overlooked markets 27:21 Building compliance products at Industrial Defender 30:16 Investing in defense tech startups 33:20 Experienced founders leveraging AI for products 38:32 Navigating fast-changing tech landscape 40:09 Importance of Building Trust in Business Whether you're a cybersecurity founder, investor, security practitioner, technology leader, or entrepreneur, this episode offers a behind-the-scenes look at how experienced investors evaluate innovation in one of the fastest-moving areas of technology. Tune in to hear what separates a promising cybersecurity idea from a company capable of creating lasting value. DISCLAIMER : "Any portfolio companies mentioned in this episode are investments of Sorenson Capital funds and do not represent all fund investments. A complete list of investments is available upon request. This podcast is for informational purposes only and does not constitute an offer to sell or solicitation to buy securities." About the guest :  Ken Elefant is a forward-thinking venture investor with a deep interest in how artificial intelligence is transforming society and business. Ken has focused on vertical applications of AI, like Jump.ai, a portfolio company that streamlines manual work for wealth managers. By backing companies that implement AI in targeted, thoughtful ways, Ken aims to help professionals become more efficient and better prepared, reflecting his belief that AI’s true value lies in practical, well-executed solutions. How to connect Ken: LinkedIn: https://www.linkedin.com/in/kenelefant/  Kencrypted newsletter: https://www.linkedin.com/newsletters/kencrypted-7307431988703940608/   Sorenson team page: https://www.sorensoncapital.com/team/ken-elefant/ Learn more about PrOTect IT All: Email: info@protectitall.co  Website: https://protectitallpod.com/ep121 X: https://twitter.com/protectitall  YouTube: https://www.youtube.com/@PrOTectITAll  FaceBook:  https://facebook.com/protectitallpodcast  To be a guest or suggest a guest/episode, please email us at info@protectitall.co Please leave us a review on Apple/Spotify Podcasts: Apple   - https://podcasts.apple.com/us/podcast/protect-it-all/id1727211124 Spotify - https://open.spotify.com/show/1Vvi0euj3rE8xObK0yvYi4 The podcast and artwork embedded on this page are from Aaron Crow | Operational Technology & Cybersecurity Host, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

    What Makes a Cybersecurity Startup Valuable in the AI Era? A VC's Perspective
  4. Aug 30

    Ophir Oren, Head of Cyber & AI Sec Innovation @Bayer on protecting against a Future only a step away

    Podcast: ICS Cyber Talks PodcastEpisode: Ophir Oren, Head of Cyber & AI Sec Innovation @Bayer on protecting against a Future only a step awayPub date: 2026-08-26Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationהמשמעות של חדשנות בעידן החדש היא פחות או יותר "מחר", היכולת שלנו כאנשי סייבר להסתמך על כלי הגנה קיימים הולכת ומצטמצמת ודורשת להערך מחדש במשך שנים אני טוען שסייבר זו לא טכנולוגיה אלא מכלול תבונות שהטכנולוגיה בקצה נועדה לשרת אותן, כיום בעידן האינטלגנציה המלאכותית והיכולות המשתנות חדשות לבקרים, ברור שאין יותר מקום להסתמך רק על טכנולוגיות הגנה היות והן משתרכות מאחור בלשון המעטה ןמעבר להגנה לפי קונטקסט. נחשון פינקו מארח את אופיר אורן ראש צוות חדשנות בסייבר ואינטליגנציה מלאכותית בחברת באייר בשיחה על תפיסת החדשנות והגורם האנושי מול התפתחויות טכנולוגיות על סטרואידים. בין שאר הנושא: סוכני אינטליגנציה מלאכותית ה"אשליות" של האינטליגנציה מלאכותית זהויות לא אנושיות   קונטום והעידן הפוסט קוונטי מעבר מערכות תפעוליות לענן ועוד   The Meaning of Innovation in the New Era Is, More or Less, “Tomorrow.” As cybersecurity professionals, our ability to rely on existing security tools is steadily diminishing, requiring us to fundamentally rethink our approach. For years, I have argued that cybersecurity is not a technology problem. It is a collection of human insights, intelligence, and ways of thinking, with technology merely serving those capabilities at the edge. Today, in the age of artificial intelligence and rapidly evolving capabilities that change almost daily, it's clear there is no longer room to rely solely on defensive technologies. To put it mildly, they are falling behind, even when moving beyond traditional context-based protection. Nachshon Pincu hosts Ophir Oren, Head of Cybersecurity Innovation and AI at Bayer, for a conversation about innovation, the human factor, and technological developments on steroids. Among the topics we discussed: AI Agents The “hallucinations” of artificial intelligence Non-human identities Quantum computing and the post-quantum era The migration of operational technology (OT) systems to the cloud And much more   Cybersecurity is no longer about keeping pace with technology. It is about anticipating what comes next. The podcast and artwork embedded on this page are from Nachshon Pincu, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

    Ophir Oren, Head of Cyber & AI Sec Innovation @Bayer on protecting against a Future only a step away
  5. Aug 29

    Risky Business #850 -- Widespread AI-enabled attacks target Siemens PLCs

    Podcast: Risky Business (LS 56 · TOP 0.5% what is this?)Episode: Risky Business #850 -- Widespread AI-enabled attacks target Siemens PLCsPub date: 2026-08-26Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationOn this week’s show Patrick Gray and James Wilson are joined by guest co-host Ollie Whitehouse, the CTO of the UK’s NCSC, to talk through the week’s news, including: Iranian hackers take down a small-scale power generator in the UK Siemens PLCs in critical US sectors are also being targeted… We’re stumped on who could be behind that one, too. Microsoft fixed a CVSS 10 deserialisation bug in Entra before someone else found it and owned the planet Prompt injection isn’t going away LLMs are deceiving us meat sacks and it’s a worry Much, much more… This week’s show is brought to you by Okta. VP of Threat Intel Brett Winterford joins the show in this week’s sponsor interview to talk James through how the company is turning its plethora of accumulated data into free alerting for its customers. They also chat about Okta’s new threat intelligence product line. This episode is also available on YouTube Show notes Iran-linked hackers blamed for cyber-attack that shut down UK power plant | theguardian.com Hackers using AI to target Siemens PLCs in critical US sectors | securityweek.com Defending Against an Active Threat to Siemens S7 Series PLCs | IC3.gov Industry Alerts US charges Iranians for sprawling hacking campaign on government agencies, universities | therecord.media T-Mobile ‘chopped a cable’ to expel Chinese hackers from its network | techcrunch.com The long tail of Clop’s PTC hack is just beginning to emerge | cyberscoop.com CISA: Medusa ransomware hit over 500 critical infrastructure orgs | BleepingComputer Ransomware disproportionately targets medium-sized firms, straining customer relationships | Cybersecurity Dive Microsoft warns of max severity Entra ID flaw exploited in attacks | BleepingComputer Critical RCE flaw in Windows IKE Extension now actively exploited | BleepingComputer Rust supply chain attack linked to North Korean hackers | securityweek.com Grok exfiltrates user data when malicious instructions are encrypted | arstechnica.com New phishing toolkit uses passkeys to maintain access after password resets | securityweek.com Password spraying attacks surge 155x as hackers exploit MFA gaps | BleepingComputer Hackers compromise 14,500 Dahua web cameras in 35-day campaign | BleepingComputer Hackers infect Android car head units with proxy botnet malware | BleepingComputer ToxicPanda Android malware uses VPN permissions to block Google Play | BleepingComputer New Manic Android malware can exfiltrate data through nearby devices | BleepingComputer Citrix urges admins to patch new NetScaler flaws as soon as possible | BleepingComputer AliExpress caught fingerprinting visitors after sending inaudible sounds to browsers | arstechnica.com EXCLUSIVE: How a Texas student blew the whistle on a rogue AI hacking attempt | reuters.com Detections and customer notifications | Okta Threat Intelligence The podcast and artwork embedded on this page are from Risky Business Media, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

    Risky Business #850 -- Widespread AI-enabled attacks target Siemens PLCs
  6. Aug 28

    012 - Cybersecurity for Water and Wastewater Systems: Lessons Learned

    Podcast: PodomationEpisode: 012 - Cybersecurity for Water and Wastewater Systems: Lessons LearnedPub date: 2026-08-25Get Podcast Transcript →powered by Listen411 - fast audio-to-text and summarizationThe recent cyberattacks against water systems have raised concerns throughout the US water sector. What should system operators consider as they move to assess their risk, shore up vulnerabilities and ensure that water systems are adequately protected? This episode addresses the role of standards such as ISA/IEC 62443, the impact of regulation and perhaps the most significant factor of all: operator training and preparation.  Interested in more on this topic?  Attend an upcoming ISA training on 26 September: Cybersecurity Awareness Training for Water/Wastewater Industry Professionals - visit ase.isa.org to registerAttend the ISA Automation Summit & Expo, where this topic will be the subject of a panel discussion on 28 September - visit ase.isa.org to registerRead "Cybersecurity in US Water Systems: Lessons from the Recent Incidents," by Steve Mustard   Panelists: Morgan Foor, ModeratorSteve Mustard, au2mationLeo Staples, Staples Farm and ISA Past PresidentArun Rajagopal, cybersecurity consultantCharles Stephens, National Rural Water Association (NRWA)The podcast and artwork embedded on this page are from ISA - International Society of Automation, which is the property of its owner and not affiliated with or endorsed by Listen Notes, Inc.

    012 - Cybersecurity for Water and Wastewater Systems: Lessons Learned
4.5
out of 5
8 Ratings

About

A curated playlist of Operational Technology (OT) and Industrial Control Systems (ICS) cybersecurity podcast episodes in any language, compiled by ICS security enthusiasts. Missing something? Contact Anton Shipulin on LinkedIn. Subscribe for updates!

You Might Also Like