Make work harder for testers and hackers

The National Cyber Security Centre of UK recently published an article on what penetration testers see as harder to compromise. The article focuses on several recommendations that are especially relevant to OT environments: secure-by-design systems, strong segmentation, controlled IT/OT boundaries, useful logging and monitoring, and rehearsed incident response. The key takeaway: when security is built into architecture, not added afterwards.

Critical infrastructure operators do not need another reminder that IT and OT are connected. They live with that reality every day. What matters now is the discipline of the connection. Which data moves? Who receives it? Which direction does it travel? What happens when something unexpected appears? Resilient infrastructure is built by answering those questions before an incident forces the issue.

BlackBear Intelligent Gateways are designed for that space between isolation and exposure — helping organizations share operational data without surrendering control of the environment that produces it.

The NCSC recommends secure-by-design thinking. For us, that means designing communication paths around what is actually required, rather than allowing broad connectivity and trying to manage the risk later. In many OT environments, communications are relatively stable: a PLC talks to a SCADA system, a SCADA system sends data to a historian, or a historian shares selected information with reporting tools. The BIG9000 approach supports this by helping organizations define and manage approved data flows at key network boundaries. This aligns with an allowlist model: permit what is needed, reduce what is not, and make exceptions deliberate.

The article also highlights segmentation. Segmentation is often discussed as a network design principle, but its effectiveness depends on what happens between segments. A boundary that allows too much traffic can weaken the value of the segmented design. Positioned between zones, an intelligent gateway can help enforce specific communication routes between OT, DMZ, and IT environments. This supports the NCSC’s recommendation to reduce exposed connections and make movement between trust zones more difficult.

The NCSC’s emphasis on controlling what crosses the IT/OT boundary is particularly important. OT environments often require data to leave the plant floor for visibility, reporting, compliance, or maintenance planning. However, that does not mean the OT network should be treated as another branch of the corporate network. BlackBear features such as industrial protocol handling, network configuration, FTP-related transfer settings, and managed gateway functions can help organizations structure these exchanges more carefully. The goal is not connectivity for its own sake, but controlled connectivity that supports operations without unnecessarily expanding access.

The article also stresses logging and monitoring. Here, gateways provide a useful observation point. Because they sit at meaningful boundaries, they can help teams understand what is moving between zones. BlackBear Intelligent Gateway syslog capabilities, including syslog configuration and duplication, can support centralized monitoring and investigation. This does not replace a full security operations process, but it can improve visibility where it matters: at the points where data moves from one environment to another.

Finally, the NCSC reminds organizations that resilience depends on preparation as much as prevention. Clear architecture, well-understood data flows, useful logs, and tested response plans all make operational environments easier to defend and recover.

The BlackBear Intelligent Gateway is not a complete security program by itself. No single product is. But mapped against the NCSC’s recommendations, it provides a practical way to strengthen segmentation, control IT/OT communication, support allowlist-based design, and improve visibility at critical boundaries.

情報セキュリティに妥協せず、万全を尽す

連絡先

電話:+81-3-4530-3390
本社住所:
No. 146, Sec. 1, Dongxing Rd., Zhubei City, Hsinchu County , Taiwan
日本分社住所:東京都千代田区丸の内1-1-3日本生命丸の内ガーデンタワー3F
メール:jp-sales@blackbear-ics.com

Scroll to Top