Roadmaps / IoT/OT Security
🏭
advanced Roadmap #12

IoT/OT Security

IoT and OT (Operational Technology) security is a different world from traditional IT: availability and physical safety come first, confidentiality second. This roadmap covers the Purdue Model for segmenting industrial networks, why legacy protocols like Modbus and DNP3 lack built-in authentication, common IoT device vulnerabilities, and why 'air-gapped' is a claim to verify rather than a control to rely on.

📚 1 lesson ⏱ ~2h 📊 advanced

Create a free account to track your progress and unlock all features.

Get Started Free Sign In
SCADA Purdue Model Modbus / DNP3 Firmware Security Air-Gap Verification
🏭

When a Breach Has Physical Consequences

IoT and OT security flips IT's usual priority order: availability and physical safety come first, confidentiality second. This roadmap covers the industrial protocols, network architecture, and device vulnerabilities that make this world different.

Recommended Before

Complete earlier roadmaps in the sequence for best results.

View all roadmaps →

What You'll Learn

  • Explain why OT security prioritizes availability/safety over confidentiality
  • Apply the Purdue Model to segment industrial control networks
  • Identify common IoT device vulnerabilities (default creds, unpatched firmware)
  • Explain why legacy OT protocols like Modbus lack built-in authentication
  • Recognize why "air-gapped" networks require active verification, not assumption