CA-CYOLO
21.2.2024 14:31:29 CET | Business Wire | Press release
Today, Cyolo, the access company for the digital enterprise, in partnership with Ponemon Institute, released a global study exploring how organizations that operate critical infrastructure, industrial control systems (ICS), and other operational technology (OT) systems are managing access and risk in an era of rising connectivity.
“Our world has become increasingly interconnected, and the findings of this report highlight the vital need for organizations to reevaluate and enhance their strategies for ensuring secure access into OT environments,” said Larry Ponemon, Chairman and Founder of the Ponemon Institute.
The report, “Managing Access & Risk in the Increasingly Connected Operational Technology (OT) Environment,” reveals that many industrial organizations lack the resources, expertise, and collaborative processes to effectively mitigate threats and ensure secure access to OT systems. The report is based on a survey of 1,056 security professionals across the United States and EMEA who work in organizations that run an OT environment and are knowledgeable about their organization’s approach to managing OT security and risk.
Ensuring secure access to OT environments is about more than just cybersecurity. These environments contain highly sensitive systems and critical infrastructure responsible for keeping manufacturing lines running, water and electricity flowing, and performing other tasks vital to the smooth functioning of our communities.
OT systems were historically isolated for security reasons but are now facing increased connectivity to IT networks and the internet (sometimes called IT/OT convergence). At the same time, more third-party vendors and contractors are being given remote access to OT environments. These shifts introduce serious new risks that can leave organizations exposed to safety and security threats if access and connectivity are not properly controlled.
Overall key findings include:
- Organizations allow dozens of third-party users to access OT environments. 73% permit third-party access to OT environments, with an average of 77 third parties per organization granted such access. Challenges to securing third-party access include preventing unauthorized access (44%), aligning IT and OT security priorities (43%), and giving users too much privileged access (35 percent).
- Visibility into industrial assets is dismal. 73% lack an authoritative OT asset inventory, putting organizations at significant risk.
- IT and OT teams share responsibility for OT security but do not communicate enough to achieve optimal outcomes. 71% report that IT or IT and OT together are responsible for securing OT environments. However, collaboration and communication are lacking, with 37% reporting little or no collaboration, and 19% reporting that teams talk about OT security issues only when an incident occurs.
- Security is seen not only as a goal of IT/OT convergence but also as an obstacle. Reducing security risk is the top objective of companies pursuing IT/OT convergence (59%), and yet one-third (33%) of organizations not pursuing convergence cite security risk as a top factor for their decision.
“We are at a crucial point in the evolution of OT security, and the need to secure access to critical systems from internal and external threats is more urgent than ever. The stakes are exceptionally high, as a breach could jeopardize not just data but also the functioning of critical infrastructure, risking the safety of workers and the environment,” said Joe O'Donnell, Executive Vice President of Corporate Development and General Manager of OT at Cyolo. “This research reveals a pressing need for new approaches, especially in areas like third-party and privileged access, the security of legacy systems, and collaboration between IT and OT teams. Cyolo is dedicated to supporting organizations in navigating these challenges and working towards a secure, resilient future for OT environments.”
Access the full report here.
Register to attend a joint webinar from Cyolo and Ponemon Institute, on Tuesday, March 12 at 11am ET here: Behind the Ponemon Report: Risk & Access Management in the OT Environment.
During this session Dr. Larry Ponemon will share top insights from the research, with industry analysis added by Cyolo’s Joe O’Donnell and Adi Karisik, Global Principal for OT Cybersecurity at Jacobs Engineering.
About Cyolo
Cyolo enables privileged remote operations by connecting verified identities directly to applications with continuous authorization throughout the connection. Purpose-built for deployment in every type of environment, Cyolo’s Remote Privileged Access Management (RPAM) solution combines multiple security functions required to mitigate high risk access, including zero-trust access for users and devices, MFA for the last mile, IdP capabilities, credentials vault, secure file transfer, supervised access, session recording, and much more into a single, cost-effective, easy to deploy, and user-friendly platform.
Consolidate your security stack and experience the power of seamless and secure operations across any application in any environment, from critical infrastructure to cloud. Visit https://cyolo.io/ to learn more.
About Ponemon Institute
Ponemon Institute is dedicated to independent research and education that advances responsible information and privacy management practices within business and government. Our mission is to conduct high quality, empirical studies on critical issues affecting the management and security of sensitive information about people and organizations. We uphold strict data confidentiality, privacy and ethical research standards. We do not collect any personally identifiable information from individuals (or company identifiable information in our business research). Furthermore, we have strict quality standards to ensure that subjects are not asked extraneous, irrelevant or improper questions.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20240221222283/en/
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Reply at VivaTech 2026: Making AI, Agents and Robotics Happen Across the Enterprise8.6.2026 10:00:00 CEST | Press release
Reply[EXM, STAR: REY] is taking part in VivaTech 2026, Europe's largest innovation and technology event, held from June 17 to 20 at Paris Expo Porte de Versailles. At the event, Reply will showcase its latest innovations around AI for software engineering, AI-powered experiences, data and AI, and industrial AI. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260608667672/en/ At VivaTech 2026 Reply will showcase its latest innovations around AI for software engineering, AI-powered experiences, data and AI, and industrial AI. Industries are being reshaped by AI, autonomous agents, robotics and new digital experiences. From strategy to execution, Reply helps companies move beyond experimentation and innovative ideas into concrete business value. Visitors can meet Reply in Hall 7.1, booth 1G12, and explore how, through real use cases, scalable solutions and live demonstrations, the group makes innovation happen. This year, Reply'
Cardiolife Partners with Bhutan Ministry of Health to Strengthen Nationwide Cardiac Care8.6.2026 10:00:00 CEST | Press release
Cardiolife is proud to partner with the Ministry of Health of Bhutan to roll out its advanced AI-powered ECG diagnostics system nationwide. The collaboration will provide access to early ECG diagnosis and prevention, marking a major step forward in the country’s effort to strengthen heart health and preventive care. Bhutan has a population of just over 700,000 people and heart failure and other cardiac conditionsare among the leading causes of death. Following constructive meetings in Thimphu, His Excellency, the Health Minister, officially endorsed the national rollout of Cardiolife’s solution and expressed appreciation for Cardiolife’s commitment to advancing cardiac care through the provision of free software and ECG equipment in Bhutan. “We are grateful to the Cardiolife team for their commitment to improving heart health in Bhutan. With cardiovascular diseases on the rise, this collaboration marks an important milestone in our journey to strengthen early detection and prevention a
Cegid Closes Acquisition of Shine to Create Europe's First Complete AI-Driven Platform for SMBs and Accountants8.6.2026 09:28:00 CEST | Press release
Accelerates Cegid’s trajectory to become the leading European financial solutions hub integrating e-invoicing, accounting, digital finance, payment services and accounts, and HR solutionsTransaction supported by new €1.1 billion debt financing facility secured from leading direct credit funds, underscoring Cegid’s strong business performance and unique leadership positioning in rapidly evolving software sector Cegid, a European leader in cloud management solutions for professionals in the finance (treasury, tax, ERP), human resources (payroll, talent management), accountancy, retail and entrepreneurship sectors, today announced the completion of its acquisition of Shine. The transaction creates the first fully integrated, cloud-native and AI-driven financial hub for SMBs and accounting professionals in Europe. Shine – a fast-growing European fintech unicorn providing electronic invoicing, accounting, business accounts, and payroll software to small and medium-sized businesses across Eu
ARIS Announced as Exclusive Process Intelligence Launch Partner for AWS European Sovereign Cloud8.6.2026 09:00:00 CEST | Press release
Partnership Will Enable Enterprises to Accelerate AI Adoption While Ensuring Digital Sovereignty ARIS, the process context foundation for enterprise AI deployment, today announced its collaboration with Amazon Web Services (AWS) to support organizations navigating increasingly complex digital sovereignty requirements while accelerating AI-driven transformation. Many European enterprises face growing pressure to ensure sensitive operational and business data remains under European governance and regulatory control. Through the AWS European Sovereign Cloud (ESC), they will be able to combine advanced cloud and AI capabilities with enhanced operational separation, EU-based governance, and strict data residency controls. ARIS will support customers looking to operationalize AI safely and at scale within these boundaries by providing the process intelligence, governance, and operational context required for trusted enterprise AI deployment. “AI is moving rapidly from experimentation to oper
Cosylab Launches PlanOne™ Treatment Planning System for Particle Therapy8.6.2026 08:00:00 CEST | Press release
Cosylab today announced the commercial launch of PlanOne™, a treatment planning system for particle therapy, bringing physics-accurate, radiobiologically informed planning and a unified clinical workflow into a single environment. PlanOne™ is FDA 510(k) cleared. "PlanOne™ began with listening. Over the years, our work on control systems in radiation oncology has put us in direct, ongoing contact with medical physicists and clinical teams at some of the leading facilities in the world," said Mark Pleško, CEO of Cosylab. "Our partners have been clear on what matters most for particle therapy: physics accuracy they can defend, clinical confidence at the point of plan approval, and a platform built to grow with AI and adaptive workflows. We designed PlanOne™ around those three priorities, and we'll keep developing it together with the clinical community that helped shape it." Physics-accurate, radiobiologically informed planning PlanOne™ is built on a GPU-accelerated Monte Carlo dose engin
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
