OT Network Segmentation
Sanobar Khan
Product Manager | Identity and Access Management, Data Leakage Prevention, Data Migration, Data Classification
Network Segmentation
Network segmentation is a physical security layer that separates one network from another, such as an OT network from an IT network, a guest network from a corporate network, or one essential industrial network from another.
What does OT mean in Networks??
OT deals with machines. In smart buildings, operational technology (OT) networks include elevators, lights, HVAC, security, and anything else related to the building. It is conceivable to merge IT and OT networks as these devices become more integrated and networked.
OT Network Segmentation?
One of the greatest approaches to OT network segmentation is to construct zones within the OT network and build internal firewalls between them, limiting mobility. Segmenting functions into different zones, such as isolating the manufacturing execution system (MES), the human machine interface (HMI), and the programmable logic controller (PLC), helps to limit network traffic between the zones and avoid malicious actions. Creating discrete network security zones inside the multiple levels of the OT network, also known as micro segmentation, adds further protection and separates devices from one another. Lateral movement and the transmission of harmful software are no longer feasible within the network. This facilitates the detection and remediation of threats.