<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Claroty Archives - Scadea Solutions</title>
	<atom:link href="https://scadea.com/tag/claroty/feed/" rel="self" type="application/rss+xml" />
	<link>https://scadea.com/tag/claroty/</link>
	<description>Data, AI, Automation &#38; Enterprise App Delivery with a Quality-First Partner</description>
	<lastBuildDate>Thu, 06 Aug 2026 10:20:47 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0.2</generator>

<image>
	<url>https://scadea.com/wp-content/uploads/2026/05/cropped-Group-163-32x32.png</url>
	<title>Claroty Archives - Scadea Solutions</title>
	<link>https://scadea.com/tag/claroty/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Securing OT and IT Convergence: AI Governance for the Connected Factory</title>
		<link>https://scadea.com/securing-ot-and-it-convergence-ai-governance-for-the-connected-factory/</link>
					<comments>https://scadea.com/securing-ot-and-it-convergence-ai-governance-for-the-connected-factory/#respond</comments>
		
		<dc:creator><![CDATA[Joshua Chretien]]></dc:creator>
		<pubDate>Thu, 06 Aug 2026 08:40:26 +0000</pubDate>
				<category><![CDATA[Cluster Post]]></category>
		<category><![CDATA[Cybersecurity]]></category>
		<category><![CDATA[Manufacturing]]></category>
		<category><![CDATA[AI governance]]></category>
		<category><![CDATA[Claroty]]></category>
		<category><![CDATA[connected factory]]></category>
		<category><![CDATA[ICS security]]></category>
		<category><![CDATA[ISA/IEC 62443]]></category>
		<category><![CDATA[IT OT convergence]]></category>
		<category><![CDATA[manufacturing cybersecurity]]></category>
		<category><![CDATA[NIS2]]></category>
		<category><![CDATA[NIST SP 800-82]]></category>
		<category><![CDATA[OT security]]></category>
		<guid isPermaLink="false">https://scadea.com/?p=34192</guid>

					<description><![CDATA[<p>OT and IT convergence makes plant-floor AI possible and widens the attack surface. NIST SP 800-82r3, ISA/IEC 62443, and how to govern a model that writes.</p>
<p>The post <a href="https://scadea.com/securing-ot-and-it-convergence-ai-governance-for-the-connected-factory/">Securing OT and IT Convergence: AI Governance for the Connected Factory</a> appeared first on <a href="https://scadea.com">Scadea Solutions</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p><em>Last Updated: August 5, 2026</em></p>

<h2 id="what-is-ot-and-it-convergence">What is OT and IT convergence?</h2>

<p>OT and IT convergence connects plant control networks to enterprise systems and cloud analytics, so historian data reaches business applications and model output flows back toward scheduling and supervisory control.</p>

<p>Convergence is what makes manufacturing AI possible. It is also what dissolved the separation the Purdue model in ISA-95 assumed. Once a cloud model reads Level 2 data and writes a recommendation into a Level 4 scheduler, the boundary exists only as policy.</p>

<h2 id="what-new-risk">What new risk does plant-floor AI introduce?</h2>

<p>Three risks stack: a new network path between business and control zones, a new data egress channel carrying process detail, and a new class of decision whose logic no controls engineer wrote.</p>

<p>Manufacturing has ranked as the most-attacked industry in IBM X-Force Threat Intelligence Index reporting for several consecutive years, and exploitation of internet-facing applications remains a leading initial access route. Attackers go after the connectivity the pilot justified. Process data is also competitively sensitive: recipes, yields, and throughput leave the plant the moment you pipe historian tags to a cloud model.</p>

<h2 id="which-frameworks">Which frameworks govern connected factory security?</h2>

<p>NIST SP 800-82 Revision 3 sets the US reference for OT security and aligns it to the NIST Cybersecurity Framework 2.0, including the Govern function. ISA/IEC 62443 supplies the security program structure and zone-and-conduit design.</p>

<p>The two are complementary rather than competing. NIST SP 800-82r3 gives risk management and control selection; ISA/IEC 62443 gives system design and supplier requirements. In the EU, NIS2 adds obligations for manufacturers designated as essential or important entities. Asset discovery platforms including Claroty, Dragos, Nozomi Networks, Armis, and Tenable OT Security use passive traffic analysis, because active scanning can disrupt fragile industrial protocols.</p>

<h2 id="govern-the-model">How do you govern an AI model that touches control systems?</h2>

<p>Classify by what the model can do. Prediction accuracy is a separate question. A model that writes a setpoint needs functional safety review. A model that emails a recommendation needs far less.</p>

<p>Set the boundary in writing before the pilot. Define read-only versus write-capable scope, the human approval step for any write path, the rollback procedure, and who holds the process veto. NIST AI RMF and ISO/IEC 42001 give the management-system language, and the EU Machinery Regulation (EU) 2023/1230 pulls AI-based safety components into stricter conformity assessment from 20 January 2027. Keep the model in the same change control as any other system that can affect the process.</p>

<h2 id="what-to-do-next">What to do next</h2>

<p>Before the next plant-floor AI pilot, write down two things: every network path the pilot creates between control and enterprise zones, and whether the model can write anything back. If the answer to the second is yes, route it through functional safety review now rather than at go-live.</p>

<p><strong>Read next:</strong> <a href="https://scadea.com/ai-for-manufacturing-operations-quality-uptime-and-safety/">AI for Manufacturing Operations: Quality, Uptime, and Safety</a></p>


<script type="application/ld+json">
{
  "@context": "https://schema.org",
  "@type": "FAQPage",
  "mainEntity": [
    {
      "@type": "Question",
      "name": "What is OT and IT convergence?",
      "acceptedAnswer": {
        "@type": "Answer",
        "text": "OT and IT convergence connects plant control networks to enterprise systems and cloud analytics, so historian data reaches business applications and model output flows back toward scheduling and supervisory control."
      }
    },
    {
      "@type": "Question",
      "name": "What new risk does plant-floor AI introduce?",
      "acceptedAnswer": {
        "@type": "Answer",
        "text": "Three risks stack: a new network path between business and control zones, a new data egress channel carrying process detail, and a new class of decision whose logic no controls engineer wrote."
      }
    },
    {
      "@type": "Question",
      "name": "Which frameworks govern connected factory security?",
      "acceptedAnswer": {
        "@type": "Answer",
        "text": "NIST SP 800-82 Revision 3 sets the US reference for OT security and aligns it to the NIST Cybersecurity Framework 2.0, including the Govern function. ISA/IEC 62443 supplies the security program structure and zone-and-conduit design."
      }
    },
    {
      "@type": "Question",
      "name": "How do you govern an AI model that touches control systems?",
      "acceptedAnswer": {
        "@type": "Answer",
        "text": "Classify by what the model can do. Prediction accuracy is a separate question. A model that writes a setpoint needs functional safety review. A model that emails a recommendation needs far less."
      }
    }
  ]
}
</script>



<script type="application/ld+json">
{
  "@context": "https://schema.org",
  "@type": "Article",
  "headline": "OT and IT Convergence: Securing the Connected Factory",
  "description": "OT and IT convergence makes plant-floor AI possible and widens the attack surface. NIST SP 800-82r3, ISA/IEC 62443, and how to govern a model that writes.",
  "author": {
    "@type": "Organization",
    "name": "Editorial Team"
  },
  "publisher": {
    "@type": "Organization",
    "name": "Scadea"
  },
  "datePublished": "2026-08-05",
  "dateModified": "2026-08-05",
  "mainEntityOfPage": "https://scadea.com/securing-ot-and-it-convergence-ai-governance-for-the-connected-factory/"
}
</script>

<p>The post <a href="https://scadea.com/securing-ot-and-it-convergence-ai-governance-for-the-connected-factory/">Securing OT and IT Convergence: AI Governance for the Connected Factory</a> appeared first on <a href="https://scadea.com">Scadea Solutions</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://scadea.com/securing-ot-and-it-convergence-ai-governance-for-the-connected-factory/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
