Critical infrastructures and OT systems, how to protect them according to Nicola Mugnato (Gyala)

What is still missing in the protection of critical infrastructures today?
Most critical infrastructures, like companies in general, are reinforcing their infrastructures by adding defence systems, of varying degrees of sophistication, mainly to meet regulatory requirements rather than a genuine concern to protect their business. I believe that a change of perspective is needed: Cybersecurity is not an optional extra and is not a cost, rather it is as essential an investment as the IT systems themselves. What the Civil Code defines as “”business continuity”” depends on it, and therefore it is the primary objective that the director must guarantee to shareholders. Starting from this assumption, I believe that the resources invested in cybersecurity by critical infrastructures and companies are still not commensurate with the level of threat they are facing, essentially due to a lack of knowledge and awareness on the subject.
startupitalia.eu