Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

AMPYX CYBER

@ampyxcyber@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

The premier OT security consulting firm. Securing the critical things in your world. We keep you ahead of your adversaries - and your auditors.
www.ampyxcyber.com

0 Followers
0 Following
37 Posts
Joined April 03, 2024
Website:
https://www.ampyxcyber.com
LinkedIn:
https://www.linkedin.com/company/ampyx-cyber
YouTube:
https://www.youtube.com/@ampyxcyber
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 7mo ago

Coordinated destructive cyberattacks across 30+ renewable farms, a CHP plant, and manufacturing in Poland. Not ransomware. Sabotage. Custom wiper malware designed to damage RTUs, PLCs, relays, and serial device servers. https://ampyxcyber.com/blog/polands-energy-sector-attack-when-cyber-sabotage-targets-ot

Poland OT Cyberattack 2025: CERT Polska Incident Analysis and Lessons — AMPYX CYBER
AMPYX CYBER

Poland OT Cyberattack 2025: CERT Polska Incident Analysis and Lessons — AMPYX CYBER

Coordinated OT attacks hit 30+ Polish energy facilities in December 2025. Lessons for utilities from CERT Polska's forensic report and CISA's alert.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 9mo ago

Now hiring: Business Development Administrator (remote, contract 1099). Track RFx, support proposals, keep the pipeline organized, and coordinate docs and timelines. Join a mission-driven team protecting critical infrastructure. Apply: https://www.linkedin.com/jobs/view/4358329695

linkedin.com

10,000+ Business Development Engineer jobs in United States

Today's top 10,000+ Business Development Engineer jobs in United States. Leverage your professional network, and get hired. New Business Development Engineer jobs added daily.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 2mo ago
FERC turned NERC's voluntary computational load timeline into federal deadlines. Data centers become registered entities by Dec 31, and whether CIP applies is still unwritten. What's settled and what's not: https://ampyxcyber.com/blog/ferc-computational-load-order-rd26-7-000
FERC Order RD26-7-000: Computational Load Registration and Standards Deadlines 2026 — AMPYX CYBER
AMPYX CYBER

FERC Order RD26-7-000: Computational Load Registration and Standards Deadlines 2026 — AMPYX CYBER

FERC Order RD26-7-000 directs NERC to set computational load registration criteria and standards by December 31, 2026. What it left open, and why.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

NERC’s December 2025 Internal Controls Guide quietly reshapes CMEP. ICE is gone. Continuous, risk based control oversight now drives COPs, audit depth, and regulatory trust. Internal controls are no longer periodic. They are always on. Full analysis: https://ampyxcyber.com/blog/from-spot-evaluations-to-continuous-oversight-nercs-new-internal-controls-model

NERC Internal Controls Guide 2025: End of Internal Controls Evaluation and What Comes Next — AMPYX CYBER
AMPYX CYBER

NERC Internal Controls Guide 2025: End of Internal Controls Evaluation and What Comes Next — AMPYX CYBER

NERC eliminated the Internal Controls Evaulation model. Continuous internal controls now drive audit depth and compliance oversight under the December 2025 ERO Enterprise Guide.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 6mo ago

Claude Mythos and the OT Threat Horizon: What Utility Operators Need to Know Now https://ampyxcyber.com/blog/claude-mythos-and-the-ot-threat-horizon-what-utility-operators-need-to-know-now

Claude Mythos and OT Security: What Utility Operators Need to Know — AMPYX CYBER
AMPYX CYBER

Claude Mythos and OT Security: What Utility Operators Need to Know — AMPYX CYBER

Anthropic's Claude Mythos discovers zero-days in the same codebases running OT/SCADA systems. CIP obligations implicated and actions for utility operators.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 5mo ago

Stop chasing checklists.

Our 3.5-day NERC CIP Bootcamp moves past the theory into the technical reality of the grid. From CIP-002 to the new CIP-015, Low Impact to Virtualization, learn to stay ahead of your adversaries and your auditors.

Register here: https://ampyxcyber.com/training

OT/ICS and NERC CIP Cybersecurity Training — AMPYX CYBER
AMPYX CYBER

OT/ICS and NERC CIP Cybersecurity Training — AMPYX CYBER

Pragmatic, expert-designed cybersecurity training for critical infrastructure teams. From NERC CIP bootcamps to hands-on OT network incident response labs.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

NERC’s new CIP Roadmap marks a major shift in how cyber risk will be regulated across the power grid. MFA for low impact systems, protection of telecom dependent control traffic, cloud security, and new focus on IBRs, DERs, EVSE, and large loads.

https://ampyxcyber.com/blog/nercs-cip-roadmap-and-the-future-of-grid-cybersecurity

NERC CIP Roadmap 2026: What It Means for Grid Cybersecurity Compliance — AMPYX CYBER
AMPYX CYBER

NERC CIP Roadmap 2026: What It Means for Grid Cybersecurity Compliance — AMPYX CYBER

NERC's 2026 CIP Roadmap identifies three near-term standards actions and expands scope to low-impact systems, cloud, telecom, and DER aggregators.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

Coordinated destructive cyberattacks across 30+ renewable farms, a CHP plant, and manufacturing in Poland. Not ransomware. Sabotage. CERT Polska just published the most detailed OT attack post-mortem we've seen. https://ampyxcyber.com/blog/polands-energy-sector-attack-when-cyber-sabotage-targets-ot

Poland OT Cyberattack 2025: CERT Polska Incident Analysis and Lessons — AMPYX CYBER
AMPYX CYBER

Poland OT Cyberattack 2025: CERT Polska Incident Analysis and Lessons — AMPYX CYBER

Coordinated OT attacks hit 30+ Polish energy facilities in December 2025. Lessons for utilities from CERT Polska's forensic report and CISA's alert.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 2mo ago
FERC just created a new grid registration category: Computational Load Entity. Large AI data centers and crypto loads can now fall under mandatory federal reliability standards for the first time. Our plain-English guide to what it is and why it exists - https://ampyxcyber.com/blog/what-is-a-computational-load-entity
What Is a Computational Load Entity? A Plain-English Guide — AMPYX CYBER
AMPYX CYBER

What Is a Computational Load Entity? A Plain-English Guide — AMPYX CYBER

On July 16, 2026, FERC created a new NERC registration category, the Computational Load Entity. Here is what it is, who it covers, and why it exists.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 6mo ago

The E-ISAC is doing serious work inside a structure that limits how far that work can go. Both things are true. Our analysis of the 2025 End-of-Year Report: https://ampyxcyber.com/blog/the-e-isacs-2025-report-real-progress-remaining-constraints

E-ISAC 2025 Report: What It Shows and What It Cannot Tell You — AMPYX CYBER
AMPYX CYBER

E-ISAC 2025 Report: What It Shows and What It Cannot Tell You — AMPYX CYBER

E-ISAC's 2025 report shows record growth. An analysis of what the numbers reveal and what the governance structure prevents the sector from sharing.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

A new joint US/UK/EU agency coalition just released a new OT secure connectivity doctrine. We break down what it really means for utilities and industrial operators, what breaks in legacy environments, and the safety/engineering realities behind it https://ampyxcyber.com/blog/new-joint-agency-guidance-secure-connectivity-principles-for-ot

Five Eyes OT Secure Connectivity: Eight Principles for Industrial Networks — AMPYX CYBER
AMPYX CYBER

Five Eyes OT Secure Connectivity: Eight Principles for Industrial Networks — AMPYX CYBER

Eight OT connectivity security principles from Five Eyes and European agencies. What they mean for utilities and what breaks in brownfield OT environments.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 6mo ago

The E-ISAC is doing serious work inside a structure that limits how far that work can go. Both things are true. Our analysis of the 2025 End-of-Year Report: https://ampyxcyber.com/blog/the-e-isacs-2025-report-real-progress-remaining-constraints

E-ISAC 2025 Report: What It Shows and What It Cannot Tell You — AMPYX CYBER
AMPYX CYBER

E-ISAC 2025 Report: What It Shows and What It Cannot Tell You — AMPYX CYBER

E-ISAC's 2025 report shows record growth. An analysis of what the numbers reveal and what the governance structure prevents the sector from sharing.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

NERC’s December 2025 Internal Controls Guide quietly reshapes CMEP. ICE is gone. Continuous, risk based control oversight now drives COPs, audit depth, and regulatory trust. Internal controls are no longer periodic. They are always on. Full analysis: https://ampyxcyber.com/blog/from-spot-evaluations-to-continuous-oversight-nercs-new-internal-controls-model

NERC Internal Controls Guide 2025: End of Internal Controls Evaluation and What Comes Next — AMPYX CYBER
AMPYX CYBER

NERC Internal Controls Guide 2025: End of Internal Controls Evaluation and What Comes Next — AMPYX CYBER

NERC eliminated the Internal Controls Evaulation model. Continuous internal controls now drive audit depth and compliance oversight under the December 2025 ERO Enterprise Guide.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 2mo ago
FERC turned NERC's voluntary computational load timeline into federal deadlines. Data centers become registered entities by Dec 31, and whether CIP applies is still unwritten. What's settled and what's not: https://ampyxcyber.com/blog/ferc-computational-load-order-rd26-7-000
FERC Order RD26-7-000: Computational Load Registration and Standards Deadlines 2026 — AMPYX CYBER
AMPYX CYBER

FERC Order RD26-7-000: Computational Load Registration and Standards Deadlines 2026 — AMPYX CYBER

FERC Order RD26-7-000 directs NERC to set computational load registration criteria and standards by December 31, 2026. What it left open, and why.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 6mo ago

NERC Industry Survey: Physical Supply Chain Risk Management
https://www.surveymonkey.com/r/SCS-PhysicalRiskReport

Supply Chain Subcommittee (SCS) is seeking industry feedback on physical supply risks to inform the physical supply risk report.

Supply Chain Subcommittee 2026 Physical Supply Risk Survey
surveymonkey.com

Supply Chain Subcommittee 2026 Physical Supply Risk Survey

Take this survey powered by surveymonkey.com. Create your own surveys for free.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

Coordinated destructive cyberattacks across 30+ renewable farms, a CHP plant, and manufacturing in Poland. Not ransomware. Sabotage. Custom wiper malware designed to damage RTUs, PLCs, relays, and serial device servers. https://ampyxcyber.com/blog/polands-energy-sector-attack-when-cyber-sabotage-targets-ot

Poland OT Cyberattack 2025: CERT Polska Incident Analysis and Lessons — AMPYX CYBER
AMPYX CYBER

Poland OT Cyberattack 2025: CERT Polska Incident Analysis and Lessons — AMPYX CYBER

Coordinated OT attacks hit 30+ Polish energy facilities in December 2025. Lessons for utilities from CERT Polska's forensic report and CISA's alert.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 3mo ago
NERC CIP Bootcamp: Dallas, Aug 11-14. 3.5 days, in-person. CIP-002 through CIP-015, CMEP v8, Internal Controls Monitoring. Virtualization & Low Impact. Taught by one of the original architects of NERC CIP and the first CIP auditor in North America. https://ampyxcyber.com/nerc-cip-bootcamp
NERC CIP Bootcamp: 3.5-Day Compliance Training — AMPYX CYBER
AMPYX CYBER

NERC CIP Bootcamp: 3.5-Day Compliance Training — AMPYX CYBER

A 3.5-day NERC CIP Bootcamp covering CIP-002 through CIP-015, taught by an original author of the standards. Includes CPE credit and CIPC exam access.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 2mo ago
Food cybersecurity is not food security. Ransomware to nation-state to agroterrorism, Kristin King explains the difference, and why food and agriculture is one of the least defended corners of critical infrastructure. New Critical Assets episode: https://ampyxcyber.com/podcast/the-attack-surface-you-eat-cyber-risk-in-food-and-agriculture
The Attack Surface You Eat: Cyber Risk in Food and Agriculture — AMPYX CYBER
AMPYX CYBER

The Attack Surface You Eat: Cyber Risk in Food and Agriculture — AMPYX CYBER

Kristin King joins Patrick Miller to discuss how food and agriculture is one of the most under-defended corners of critical infrastructure. From precision agriculture and processing plants to aquaculture, they trace where the OT and ICS risk actually lives, why the regulatory floor is so thin, and h

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

NERC’s CMEP Version 8 does not change the Reliability Standards. It stabilizes how compliance monitoring and enforcement operate across the ERO Enterprise. What this means for audits, risk-based scope, technical competence, & ERO-wide consistency at https://ampyxcyber.com/blog/how-cmep-version-8-reshapes-nercs-compliance-model

CMEP Version 8: How NERC's Compliance Model Has Changed — AMPYX CYBER
AMPYX CYBER

CMEP Version 8: How NERC's Compliance Model Has Changed — AMPYX CYBER

CMEP Version 8 stabilizes NERC's compliance model. What changed, what it signals for registered entities, and what comes next for the ERO Enterprise.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

Just dropped: Our first Policy Pulse - Regulatory Roundtable panel podcast episode With JoyDitto & Earl Shockley.

We tackle:
- NERC low-impact crackdown
- Audit competency & CMEP reform
- AI in OT & the looming cyber strategy
- Talent gaps in the sector

https://ampyxcyber.com/podcast/policy-pulse-regulatory-roundtable-nerc-cip-cybersecurity-strategy-ai-electric-sector

Policy Pulse: Regulatory Roundtable - NERC CIP, Cybersecurity Strategy, AI & Electric Sector — AMPYX CYBER
AMPYX CYBER

Policy Pulse: Regulatory Roundtable - NERC CIP, Cybersecurity Strategy, AI & Electric Sector — AMPYX CYBER

Policy Pulse: Regulatory Roundable is a new monthly feature of the Critical Assets Podcast. Join Patrick Miller, Joy Ditto, and Earl Shockley as they break down the latest policy, regulatory, and legislative changes impacting critical infrastructure, OT, and cybersecurity. If it affects your assets,

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 7mo ago

The new National Cyber Strategy calls compliance checklists a problem. We've been saying that for years. But deregulation and security aren't the same thing either. What replaces a requirement matters more than removing it. Full analysis at https://ampyxcyber.com/blog/redesigning-the-machine-nerc-board-accepts-transformational-standards-modernization-plan-p2b7w

ampyxcyber.com
0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

A new joint US/UK/EU agency coalition just released a new OT secure connectivity doctrine. We break down what it really means for utilities and industrial operators, what breaks in legacy environments, and the safety/engineering realities behind it https://ampyxcyber.com/blog/new-joint-agency-guidance-secure-connectivity-principles-for-ot

Five Eyes OT Secure Connectivity: Eight Principles for Industrial Networks — AMPYX CYBER
AMPYX CYBER

Five Eyes OT Secure Connectivity: Eight Principles for Industrial Networks — AMPYX CYBER

Eight OT connectivity security principles from Five Eyes and European agencies. What they mean for utilities and what breaks in brownfield OT environments.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 9mo ago

Now hiring: Business Development Administrator (remote, contract 1099). Track RFx, support proposals, keep the pipeline organized, and coordinate docs and timelines. Join a mission-driven team protecting critical infrastructure. Apply: https://www.linkedin.com/jobs/view/4358329695

linkedin.com

10,000+ Business Development Engineer jobs in United States

Today's top 10,000+ Business Development Engineer jobs in United States. Leverage your professional network, and get hired. New Business Development Engineer jobs added daily.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 3mo ago
DHS reopened the private forum where critical infrastructure operators and agencies compare cyber threats. The legal shield that made those talks safe did not come back with it. What ANCHOR-CI changes: https://ampyxcyber.com/blog/anchor-ci-cisa-councils-liability-gap
ANCHOR-CI: CISA's Critical Infrastructure Councils and the Liability Gap — AMPYX CYBER
AMPYX CYBER

ANCHOR-CI: CISA's Critical Infrastructure Councils and the Liability Gap — AMPYX CYBER

DHS replaced CIPAC with ANCHOR-CI, a CISA-run council framework. What it changes for critical infrastructure, and the liability gap it leaves behind.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

NERC’s CMEP Version 8 does not change the Reliability Standards. It stabilizes how compliance monitoring and enforcement operate across the ERO Enterprise. What this means for audits, risk-based scope, technical competence, & ERO-wide consistency at https://ampyxcyber.com/blog/how-cmep-version-8-reshapes-nercs-compliance-model

CMEP Version 8: How NERC's Compliance Model Has Changed — AMPYX CYBER
AMPYX CYBER

CMEP Version 8: How NERC's Compliance Model Has Changed — AMPYX CYBER

CMEP Version 8 stabilizes NERC's compliance model. What changed, what it signals for registered entities, and what comes next for the ERO Enterprise.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

Secure connectivity guidance often assumes greenfield architectures. Most OT environments are brownfield reality. Real resilience is not just network controls. It is people, manual capability, physical engineering, training, and sustained investment. https://ampyxcyber.com/blog/humans-engineering-shifts-required-investment-and-commitment-for-operational-security

OT Resilience Beyond Technology: The Human and Engineering Gap — AMPYX CYBER
AMPYX CYBER

OT Resilience Beyond Technology: The Human and Engineering Gap — AMPYX CYBER

A field perspective on why human expertise and physical engineering controls matter as much as digital security in brownfield OT environments.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 2mo ago
Ask a utility if they'd run their EMS in the cloud and they cringe. Fair. But their email, HR, and security tools already live there. NERC's answer is the new "100-Series," a parallel cloud CIP you elect into per system. Comment closes Aug 21. https://ampyxcyber.com/blog/nerc-cip-100-series-cloud
NERC CIP Goes to the Cloud: Inside the 100-Series Draft Standards — AMPYX CYBER
AMPYX CYBER

NERC CIP Goes to the Cloud: Inside the 100-Series Draft Standards — AMPYX CYBER

NERC's Project 2023-09 forks the CIP Standards into a cloud-enabled 100-Series. Inside BCSS, Cyber Security Zones, System Security Plans, and what to watch.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 6mo ago

Stop chasing checklists.

Our 3.5-day NERC CIP Bootcamp moves past the theory into the technical reality of the grid. From CIP-002 to the new CIP-015, Low Impact to Virtualization, learn to stay ahead of your adversaries and your auditors.

Register here: https://ampyxcyber.com/training

OT/ICS and NERC CIP Cybersecurity Training — AMPYX CYBER
AMPYX CYBER

OT/ICS and NERC CIP Cybersecurity Training — AMPYX CYBER

Pragmatic, expert-designed cybersecurity training for critical infrastructure teams. From NERC CIP bootcamps to hands-on OT network incident response labs.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

Secure connectivity guidance often assumes greenfield architectures. Most OT environments are brownfield reality. Real resilience is not just network controls. It is people, manual capability, physical engineering, training, and sustained investment. https://ampyxcyber.com/blog/humans-engineering-shifts-required-investment-and-commitment-for-operational-security

OT Resilience Beyond Technology: The Human and Engineering Gap — AMPYX CYBER
AMPYX CYBER

OT Resilience Beyond Technology: The Human and Engineering Gap — AMPYX CYBER

A field perspective on why human expertise and physical engineering controls matter as much as digital security in brownfield OT environments.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 2mo ago
August 3 is not the finish line. It is the first entry in the record of how ready you were when the AI reliability boundary arrived. What to file, and which gaps to start closing: https://ampyxcyber.com/blog/computational-load-level-3-alert-august-3
NERC Computational Load Alert: August 3 Deadline for Utilities 2026 — AMPYX CYBER
AMPYX CYBER

NERC Computational Load Alert: August 3 Deadline for Utilities 2026 — AMPYX CYBER

NERC Level 3 computational load alert: a mandatory August 3 response under Rule 810. What to file, which gaps to close, and why the risk is priced.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 6mo ago

FERC approved Orders 918 & 919 today. CIP virtualization standards, new low-impact controls, and an updated Control Center definition. All registered entities affected. 24 and 36 month implementation windows. Start your assessments now.

Full breakdown: https://ampyxcyber.com/blog/ferc-issues-orders-on-virtualization-and-low-impact-what-changed-and-what-you-need-to-do

FERC Orders 918 and 919: CIP Virtualization and Low Impact Standards Final — AMPYX CYBER
AMPYX CYBER

FERC Orders 918 and 919: CIP Virtualization and Low Impact Standards Final — AMPYX CYBER

FERC Orders 918 and 919 finalize CIP virtualization standards and low-impact authentication controls. What changed and what compliance programs must do now.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 2mo ago
In NERC CIP, the checklist still matters, but internal controls are what auditors now scrutinize. New post: control types, testing, evidence, WECC's ICDCT, and the December 2025 ERO Guide. https://ampyxcyber.com/blog/internal-controls-in-nerc-cip-compliance-programs
Internal Controls in NERC CIP Compliance: Beyond the Checklist — AMPYX CYBER
AMPYX CYBER

Internal Controls in NERC CIP Compliance: Beyond the Checklist — AMPYX CYBER

Internal controls now anchor NERC CIP compliance. Learn control types, testing, evidence, WECC's ICDCT, and how the ERO Enterprise evaluates them under CMEP.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 9mo ago
NERC’s new CIP Roadmap marks a major shift in how cyber risk will be regulated across the power grid. MFA for low impact systems, protection of telecom dependent control traffic, cloud security, and new focus on IBRs, DERs, EVSE, and large loads. https://ampyxcyber.com/blog/nercs-cip-roadmap-and-the-future-of-grid-cybersecurity
NERC CIP Roadmap 2026: What It Means for Grid Cybersecurity Compliance — AMPYX CYBER
AMPYX CYBER

NERC CIP Roadmap 2026: What It Means for Grid Cybersecurity Compliance — AMPYX CYBER

NERC's 2026 CIP Roadmap identifies three near-term standards actions and expands scope to low-impact systems, cloud, telecom, and DER aggregators.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 3mo ago
Food cybersecurity is not food security. Ransomware to nation-state to agroterrorism, Kristin King explains the difference, and why food and agriculture is one of the least defended corners of critical infrastructure. New Critical Assets episode: https://ampyxcyber.com/podcast/the-attack-surface-you-eat-cyber-risk-in-food-and-agriculture
The Attack Surface You Eat: Cyber Risk in Food and Agriculture — AMPYX CYBER
AMPYX CYBER

The Attack Surface You Eat: Cyber Risk in Food and Agriculture — AMPYX CYBER

Kristin King joins Patrick Miller to discuss how food and agriculture is one of the most under-defended corners of critical infrastructure. From precision agriculture and processing plants to aquaculture, they trace where the OT and ICS risk actually lives, why the regulatory floor is so thin, and h

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 6mo ago

The new National Cyber Strategy calls compliance checklists a problem. We've been saying that for years. But deregulation and security aren't the same thing either. What replaces a requirement matters more than removing it. Full analysis at https://ampyxcyber.com/blog/redesigning-the-machine-nerc-board-accepts-transformational-standards-modernization-plan-p2b7w

ampyxcyber.com
0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 2mo ago
In NERC CIP, the checklist still matters, but internal controls are what auditors now scrutinize. New post: control types, testing, evidence, WECC's ICDCT, and the December 2025 ERO Guide. https://ampyxcyber.com/blog/internal-controls-in-nerc-cip-compliance-programs
Internal Controls in NERC CIP Compliance: Beyond the Checklist — AMPYX CYBER
AMPYX CYBER

Internal Controls in NERC CIP Compliance: Beyond the Checklist — AMPYX CYBER

Internal controls now anchor NERC CIP compliance. Learn control types, testing, evidence, WECC's ICDCT, and how the ERO Enterprise evaluates them under CMEP.

0
0
0
0
Open post
AMPYX CYBER @ampyxcyber@infosec.exchange
· 8mo ago

Just dropped: Our first Policy Pulse - Regulatory Roundtable panel podcast episode With JoyDitto & Earl Shockley.

We tackle:
- NERC low-impact crackdown
- Audit competency & CMEP reform
- AI in OT & the looming cyber strategy
- Talent gaps in the sector

https://ampyxcyber.com/podcast/policy-pulse-regulatory-roundtable-nerc-cip-cybersecurity-strategy-ai-electric-sector

Policy Pulse: Regulatory Roundtable - NERC CIP, Cybersecurity Strategy, AI & Electric Sector — AMPYX CYBER
AMPYX CYBER

Policy Pulse: Regulatory Roundtable - NERC CIP, Cybersecurity Strategy, AI & Electric Sector — AMPYX CYBER

Policy Pulse: Regulatory Roundable is a new monthly feature of the Critical Assets Podcast. Join Patrick Miller, Joy Ditto, and Earl Shockley as they break down the latest policy, regulatory, and legislative changes impacting critical infrastructure, OT, and cybersecurity. If it affects your assets,

0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Pricing
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 22:45:49 UTC