SEC536: Adversarial AI - Penetration Testing AI Systems

Mike Hoffman will explain how Dispel’s OT-first remote access platform implements 5CC-aligned safeguards—covering architecture, deployment patterns, connection models, and operational controls. You’ll see how moving-target defense, disposable sessions, vaulted credentials, granular auditing, and compliance artifacts can reduce dwell time and simplify investigations—while preserving operator productivity.

Implementing a secure remote access solution can reduce overall organizational risk by more than 12% (12.18%), according to the Dragos 2025 OT Security Financial Risk Report cited in the SANS review.
They are ICS Incident Response, Defensible Architecture, ICS Network Visibility and Monitoring, Secure Remote Access, and Risk-Based Vulnerability Management.
Remote access remains one of the top three initial access vectors in OT security incidents, with compromised credentials, misconfigured VPNs, and unsecured vendor connections enabling attackers to bridge the IT/OT divide.
Three modes: clientless browser-connect for fast, task-based sessions; virtual desktop infrastructure (VDI) for complex engineering work; and local application access for single-protocol, time-limited connections to legacy systems.
Yes. Dispel supports SaaS, bring-your-own-cloud (private-cloud), and fully on-premises deployment models to accommodate different regulatory and data residency requirements.