WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Community Partnerships 15 Cybersecurity Fundamentals Revisited – Advanced Training for Technical Staff & Practice Makes Proficient
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Directory
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

15 Cybersecurity Fundamentals Revisited – Advanced Training for Technical Staff & Practice Makes Proficient

Author: Jennifer Walker

Created: Thursday, September 19, 2019 - 16:53

Categories: Cybersecurity, General Security and Resilience, Security Preparedness

Awareness training is a key organizational risk strategy component to create and maintain a culture of cybersecurity, all personnel should receive regular, ongoing cybersecurity awareness training. Likewise, technical IT and OT personnel should participate in advanced training, and include red team/blue team exercises to practice and reinforce cybersecurity defense concepts and strategies. To highlight how red teams and blue teams can collaborate to protect water treatment systems, industrial cybersecurity firm Radiflow shares their experience in a report from their participation at The International Critical Infrastructure Security Showdown (CISS) 2019 challenge in Singapore last month. The report describes each attack scenario and Radiflow’s mitigation measures. The test lab environment was set up as a modern physical six-stage water treatment process closely mimicking a real-world water treatment plant. According to Radiflow, the cyber portion of the challenge consisted of a layered communications network, Rockwell PLCs, HMIs, a SCADA workstation, and a Historian. The report provides a succinct description of the attack phases, from initial scanning, to exploiting known IT and SCADA vulnerabilities. During one of the attacks, assets were detected opening unauthorized connections to internet IPs that might provide access to C2 servers or malicious IPs. Members considering teaming exercises are encouraged to read Radiflow’s report. In addition, industrial cybersecurity firm Dragos has a three part series on Purple Teaming ICS Networks. Finally, WaterISAC’s 15 Cybersecurity Fundamentals #8 Creating a Cybersecurity Culture discusses free training opportunities and options for “teaming” exercises, and #11 Plan for Incidents, Emergencies and Disasters reinforces the need for exercises. Read the summary at Radiflow

Related Resources

(TLP:CLEAR) FIRESTARTER Backdoor and Updated Emergency Directive for CISCO Firepower and Secure Firewall Devices

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:GREEN) FBI FLASH – Newly Observed Ransomware Variant Black Shrantac Threat to U.S. Entities

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness
Members Only

(TLP:AMBER+STRICT) Likely PRC State-Sponsored Activity Observed in the Water Sector – DocuSign Phishing Tactics Identified

Apr 23, 2026 in Cybersecurity, Federal & State Resources, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar