WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home H2OSecCon 2026 ICS/SCADA Resilience – Many Struggle Securing PLCs, but They Don’t Have To
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partners
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

ICS/SCADA Resilience – Many Struggle Securing PLCs, but They Don’t Have To

Author: Jennifer Walker

Created: Tuesday, March 12, 2024 - 16:59

Categories: OT-ICS Security

A recent post at DarkReading, The Ongoing Struggle to Protect PLCs (pardon the author’s reference to “Stuxnet”) on the vulnerability of PLCs has prompted a reminder that PLCs don’t have to stay woefully insecure. The author generally reviews the challenges that have plagued PLCs and lightly discusses “best practices” toward resilience. However, this seemed like a great opportunity to remind members of twenty practical applications toward securing PLCs – the Top 20 Secure PLC Coding Practices.

The Top 20 Secure PLC Coding Practices are intended to be used by automation engineers and technicians that program and maintain PLCs. Each practice includes guidance, examples, benefits, and reference mappings to the MITRE ATT&CK® for Industrial Control Systems and IEC 62443. (To my knowledge) the Top 20 Secure PLC Coding Practices remain the only one of its kind guidance to secure the inherently insecure-by-design PLCs. If you haven’t already, get this guidance into the hands of your engineers and operators today!

Related Resources

Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 14, 2026)

May 14, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

(TLP:CLEAR) CISA ICS Advisories, Additional Alerts, Updates, and Bulletins – May 14, 2026

May 14, 2026 in Cybersecurity, Federal & State Resources, OT-ICS Security
Members Only

(TLP:GREEN) Individual Charged in Water System Tampering Incident

May 7, 2026 in Cybersecurity, OT-ICS Security, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar