By By David Ramel04/30/2026
Publication Date: 2026-04-30 00:00:00
Federal Zero Trust Guide Puts OT Security Under IT Scrutiny
Cybersecurity and Infrastructure Security Agency (CISA), the Department of War, Department of Energy, FBI and Department of State released a joint guide April 29 to help organizations apply zero trust principles to operational technology environments.
The guide, “Adapting Zero Trust Principles to Operational Technology,” is aimed at OT owners and operators, government systems and zero trust practitioners. CISA said OT systems are becoming more interconnected, digitally monitored and remotely operated, increasing attack surfaces and cyber risk.
Physical Systems Change the Security Equation
The guidance focuses on comprehensive asset visibility, secure supply chains, robust identity and access controls, zones and conduits, and supply chain risk. It also stresses that zero trust must be applied carefully in OT environments because security changes can affect physical processes and mission-critical operations.
“CISA has observed threat actors like Volt Typhoon targeting OT systems to compromise, escalate, and maintain access within operational environments,” said CISA Acting Executive Assistant Director for Cybersecurity Chris Butera.
The DoW-hosted OT zero trust guidance says standard IT security…




