Cyber Impact Modeling of Industrial Systems: An Engineering-Informed Approach to OT Cybersecurity Risk

Time: 3:35-4:25
Location: Room E/F

Speaker:

Markus Mueller
Nozoomi Networks

Abstract:

As industrial systems become more interconnected, the gap between cyber events and physical consequences has almost disappeared. Traditional cybersecurity frameworks often fail to capture the actual operational and safety impacts of attacks on Industrial Control Systems (ICS). This session introduces an engineering-focused approach to cyber risk that integrates control system engineering principles, failure mode analysis, and cyber threat intelligence to evaluate potential impacts in ways that matter to operators, engineers, and the business.

Participants will learn how to model cyber events not only as data breaches but also as disruptions to physical functions. The talk will demonstrate how to combine failure and impact analysis with threat modeling and risk assessment to estimate the likelihood and impact of cyber-physical events. Real-world examples will show how cyber scenarios can be linked to consequences such as trips, equipment damage, or safety issues.

Speaker Bio:

Markus Mueller is a committed Operational Technology (OT) cybersecurity leader and practitioner with nearly 25 years of experience helping organizations secure and enhance their industrial environments. His career has concentrated on the manufacturing and utility sectors, including power generation, transmission, and distribution—covering thermal, hydro, solar, and wind sources—as well as water, wastewater, and gas systems.

Markus specializes in developing resilient OT cybersecurity programs that adhere to industry best practices and regulatory standards, including IEC 62443, NIST, and NERC CIP. He has also led engagements including OT incident response, security assessments, risk management, and threat intelligence.

In his current role as Field CISO at Nozomi Networks, Markus works with strategic customers to ensure that our most critical infrastructure remains safe, reliable, and secure. He supports teams across various levels, from substations to the boardroom, on their OT journey.

Materials: