Conference Description
Key Takeaways
- Longest-running global conference dedicated to Industrial Control Systems and Operational Technology cybersecurity
- Focuses on securing SCADA, DCS, PLC and field controller environments across critical infrastructure sectors
- Designed for ICS/OT security professionals, control engineers, CISOs and government representatives
- Addresses IT/OT convergence challenges, legacy system vulnerabilities and regulatory compliance
- Features presentations, hands-on workshops and training sessions alongside vendor showcases
Introduction
The ICS Cyber Security Conference returns as the longest-running global event dedicated to industrial cybersecurity, bringing together professionals responsible for protecting Industrial Control Systems and Operational Technology environments. Now in its third decade since launching in 2002, the conference serves security practitioners, control engineers and executives working across energy, utilities, manufacturing and other critical infrastructure sectors. With industrial environments facing increasingly sophisticated cyber threats and mounting regulatory pressure, the event provides a forum for examining real-world incidents, emerging vulnerabilities and practical defence strategies.
About This Event
Held at the W Hotel Nashville, the ICS Cyber Security Conference combines technical depth with executive-level strategic discussions. The programme features presentations analysing recent cyber incidents affecting industrial operations, hands-on workshops for practitioners and specialised training sessions. The event functions as a meeting point where ICS asset owners can engage directly with security vendors, system integrators and government representatives to share intelligence and develop collaborative approaches to industrial defence.
The conference format balances structured learning with networking opportunities, recognising that informal knowledge exchange between peers often proves as valuable as formal sessions. Attendees gain exposure to both established security frameworks and emerging technologies designed specifically for operational environments.
Securing Industrial Control Systems and Critical Infrastructure
The technical programme centres on the unique challenges of protecting systems that were never designed with cybersecurity in mind. SCADA systems, Distributed Control Systems and Programmable Logic Controllers form the backbone of industrial operations, yet many installations rely on legacy equipment with limited security capabilities. The conference examines practical approaches to vulnerability management in these constrained environments, where patching cycles measured in years rather than days remain common.
Sessions address incident response procedures tailored to operational contexts, where the consequences of security decisions extend beyond data protection to physical safety and environmental impact. Threat intelligence sharing features prominently, with discussions exploring how adversaries target industrial processes and what indicators defenders should monitor.
Bridging the IT/OT Security Divide
One persistent theme throughout the conference concerns the organisational and technical challenges of aligning Information Technology and Operational Technology security practices. These two domains historically operated independently, with different priorities, toolsets and risk tolerances. IT security teams typically prioritise confidentiality and rapid patching, while OT engineers focus on availability and system stability.
As industrial networks become increasingly connected to enterprise systems and cloud services, this separation has become untenable. The conference explores governance models, communication strategies and technical architectures that enable effective collaboration without compromising operational reliability. Regulatory developments in multiple jurisdictions are accelerating this convergence, making compliance an additional driver for integrated security programmes.
Industry Participation and Technology Landscape
The event draws participation from established industrial cybersecurity vendors including Dragos, Nozomi Networks, Claroty and Palo Alto Networks, alongside specialists such as Dispel Networks, OWL Cyber Defense and Fortinet. Secure remote access providers including Secomea and Tosibox address the growing need for controlled connectivity to operational environments. This vendor presence reflects the maturing market for purpose-built OT security solutions that account for industrial protocols, safety requirements and extended equipment lifecycles.
Who Should Attend
The conference serves professionals with direct responsibility for industrial security, including ICS/OT Security Engineers, SCADA Engineers, Plant Managers and Risk Managers. Chief Information Security Officers seeking to extend their programmes into operational environments will find relevant strategic content, while Security Analysts benefit from technical sessions on threat detection and incident investigation. Government officials involved in critical infrastructure protection and academics researching industrial security also form part of the audience.
Attendees typically arrive with specific operational challenges and leave with actionable approaches informed by peer experiences and expert guidance. The conference provides a rare opportunity to engage with others facing similar constraints in environments where public information sharing remains limited.

