SP 800-82 Rev. 4, Guide to Operational Technology (OT) SecurityInitial Public Draft
This report provides guidelines for improving the security of Operational Technology (OT) systems while addressing their unique performance, reliability, and safety requirements. OT encompasses a broad range of programmable systems or devices that interact with the physical environment (or manage devices that interact with the physical environment). These systems/devices detect or cause a direct change through the monitoring and/or control of devices, processes, and events. Examples include industrial control systems (ICS), building automation systems, transportation systems, physical access control systems, physical environment monitoring systems, and physical environment measurement systems. This fourth revision of SP 800-82 provides an overview of OT and typical system topologies, identifies common threats to organizational mission and business functions supported by OT, describes typical vulnerabilities in OT, and provides recommended security safeguards and countermeasures to manage the associated risks. Updates in this revision include: Expanded introduction to operational technology (OT) sectors to include Building Automation and Control Systems (BACS), Water and Wastewater…
Open the source record- Tags
- NIST, draft open for comment, SP 800-82 REV. 4
- Related exam domains
- CISSP 4: Communication and Network Security; CISSP 5: Identity and Access Management; CISSP 7: Security Operations; CISM 3: Information Security Program
- Source record id
- https://csrc.nist.gov/pubs/sp/800/82/r4/ipd
- First seen by InfoSec Signals
- 9/23/2026
Exam domain labels come from a keyword heuristic and are study hints, not an official mapping. The summary is the publisher's own text, shortened; the linked record is authoritative.