As organizations modernize their operational technology (OT) environments, the segregation between IT and OT is a key strategy to reduce cyber risk and protect critical infrastructure. However, this separation also creates identity management challenges that must be addressed holistically. This presentation explores how Identity and Access Management (IAM) can provide a secure foundation for IT/OT segmentation, enabling strong access governance while allowing necessary interoperability.
We will examine how to design IAM architectures that support both IT and OT requirements, including identity federation, authentication for legacy OT systems, and the secure use of service and machine accounts across domains. Special focus will be placed on implementing Privileged Access Management (PAM) with tiering models (e.g., Tier 0/1/2 separation) to protect administrative credentials and limit the blast radius of potential attacks.
Attendees will gain strategic insights into reducing lateral movement risks, supporting compliance, and enabling scalable, secure operations across the IT/OT divide.