BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//pretalx//pretalx.com//bsides-ot-uk-2025//talk//FBQWJP
BEGIN:VTIMEZONE
TZID:GMT
BEGIN:STANDARD
DTSTART:20001029T030000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=10
TZNAME:GMT
TZOFFSETFROM:+0100
TZOFFSETTO:+0000
END:STANDARD
BEGIN:DAYLIGHT
DTSTART:20000326T020000
RRULE:FREQ=YEARLY;BYDAY=-1SU;BYMONTH=3
TZNAME:BST
TZOFFSETFROM:+0000
TZOFFSETTO:+0100
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
UID:pretalx-bsides-ot-uk-2025-FBQWJP@pretalx.com
DTSTART;TZID=GMT:20260410T142000
DTEND;TZID=GMT:20260410T144000
DESCRIPTION:Operational Technology (OT) cyber risk is one of the few topics
  where you can brief three audiences—engineers\, the Board\, and a regul
 ator—and still feel like you’ve spoken three different languages.\n\nT
 his talk is about that translation problem. I’ll share a practical way t
 o explain OT cyber risk at leadership level (without turning it into eithe
 r a Hollywood script or “it’s just IT”)\, and how the complexity inc
 reases when you also need to provide confidence to an external overseer—
 without over-promising\, name-dropping frameworks\, or producing a one-off
  “assurance pack” that nobody maintains.\n\nWe’ll cover:\n\nWhy OT i
 s different in ways that matter to governance: safety\, availability\, lif
 ecycle\, and constraints that are genuinely non-negotiable\n\nThe Board na
 rrative vs the regulator narrative: what changes\, what must stay consiste
 nt\n\nWhat credible evidence looks like (and what looks like security thea
 tre)\n\nThe small set of artefacts that do most of the work: ownership\, a
 sset visibility\, remote access\, segmentation\, monitoring\, incident rea
 diness\n\nHandling the awkward questions (“So are we safe?”\, “Is it
  compliant?”\, “What’s our worst day?”) with honesty and momentum\
 n\nNo war stories and no named organisations—just patterns\, pitfalls\, 
 and a set of reusable structures you can take back to your own environment
 .
DTSTAMP:20260501T121858Z
LOCATION:Track 2
SUMMARY:Explaining OT Cyber to the Board Was Hard Enough: Then the Regulato
 r Asked for Evidence - David Jones
URL:https://pretalx.com/bsides-ot-uk-2025/talk/FBQWJP/
END:VEVENT
END:VCALENDAR
