Automated Risk Assessment Process for Government Agencies & Industry Leaders: Cybersecurity Protection for Operational Technology

Djenana Campara, Steve Seiden, Leighton Johnson · 2023

As Federal ever-changing requirements for cybersecurity protection increase so has the importance and need to demonstrate their compliance and effectiveness within implemented/deployed IT (Information Technology)/ OT (Operational Technology) systems'. These requirements have placed a heavy burden on Cybersecurity Risk Assessment tools, such as the need to support the RMF (Risk Management Framework), CSF (Cyber Security Framework), CSA (Cyber Survivability Attributes), and MRAP-C (Mission-based Risk Assessment Process for Cyber). Since time is of essence, these tools need to produce systematic and comprehensive assessment results in near real-time, support T&E (Test and Evaluation) teams in their evaluation and propose a course of action to harden protection of systems to ensure a secure supply chain, protection of sensitive information, and readiness to mitigate cyber-attacks. The objective is to cover how to prepare your IT/OT to comply with today's government requirements and the necessary artifacts through automation of risk assessment process.

Read the paper · More papers on PaperTik