Back to signals
NIST draft for commentGuidance and regulationPublished September 21, 2026

SP 800-82 Rev. 4, Guide to Operational Technology (OT) SecurityInitial Public Draft

This report provides guidelines for improving the security of Operational Technology (OT) systems while addressing their unique performance, reliability, and safety requirements. OT encompasses a broad range of programmable systems or devices that interact with the physical environment (or manage devices that interact with the physical environment). These systems/devices detect or cause a direct change through the monitoring and/or control of devices, processes, and events. Examples include industrial control systems (ICS), building automation systems, transportation systems, physical access control systems, physical environment monitoring systems, and physical environment measurement systems. This fourth revision of SP 800-82 provides an overview of OT and typical system topologies, identifies common threats to organizational mission and business functions supported by OT, describes typical vulnerabilities in OT, and provides recommended security safeguards and countermeasures to manage the associated risks. Updates in this revision include: Expanded introduction to operational technology (OT) sectors to include Building Automation and Control Systems (BACS), Water and Wastewater…

Open the source record
Tags
NIST, draft open for comment, SP 800-82 REV. 4
Related exam domains
CISSP 4: Communication and Network Security; CISSP 5: Identity and Access Management; CISSP 7: Security Operations; CISM 3: Information Security Program
Source record id
https://csrc.nist.gov/pubs/sp/800/82/r4/ipd
First seen by InfoSec Signals
9/23/2026

Exam domain labels come from a keyword heuristic and are study hints, not an official mapping. The summary is the publisher's own text, shortened; the linked record is authoritative.