Skip to content
Amar JanduArchitecture

Writing

Insights

Essays written in an internal strategy memo register: the argument as it would be made to an architecture board, not a summary of it. No calls to action.

Filter by topic

10 essays

  • No. 10
    20 minutes

    The Holy Grail of Zero Trust in a Hybrid IT OT Environment

    Which zero trust principles survive contact with operational technology, and which will break your control systems if you apply them. Identity, segmentation and encryption reconsidered for hybrid IT/OT estates.

    • Zero Trust
    • OT Security
    • ICS
    • Hybrid Architecture
    • Identity
  • No. 09
    20 minutes

    Challenges in a World of Machine Learning and AI

    Adversarial machine learning meets industrial control. Training-time poisoning, inference-time evasion and model extraction against OT anomaly detection, with the architectural and operational controls that build in robustness.

    • Adversarial ML
    • Machine Learning Security
    • OT Security
    • ICS
    • Anomaly Detection
  • No. 08
    20 minutes

    Edge Security and the Challenges of the Energy Transition

    The traditional grid had thousands of controllable assets; the smart grid has millions. Securing distributed energy resources, virtual power plants and edge devices at a scale the existing security architecture was never designed for.

    • Smart Grid
    • Distributed Energy Resources
    • DER
    • VPP
    • Grid Security
  • No. 05
    20 minutes

    Sovereign Cloud Architecture for Regulated Energy Operators: A Practical Design Guide

    A practical design guide for regulated energy operators adopting cloud without surrendering the control properties that regulation and operational safety demand: data residency, sovereignty boundaries, and assurance under IRAP and SOCI.

    • Cloud Architecture
    • Sovereign Cloud
    • Energy
    • Critical Infrastructure
    • Data Residency
  • No. 02
    20 minutes

    Threat Modelling Critical National Infrastructure: Beyond STRIDE

    STRIDE was built to find bugs in software; critical national infrastructure has an adversary problem. A consequence-driven approach to threat modelling using PASTA, MITRE ATT&CK for ICS, and process hazard analysis as first-class inputs.

    • Threat Modelling
    • Critical Infrastructure
    • ICS Security
    • MITRE ATT&CK for ICS
    • PASTA
  • No. 01
    20 minutes

    Why IT/OT Convergence Is a Security Architecture Problem, Not an Engineering One

    Convergence is routinely treated as an engineering convenience problem when it is a security architecture problem. Why the Purdue Model still matters, how convergence projects break it, and what ISA/IEC 62443 actually demands of energy operators.

    • IT/OT
    • Critical Infrastructure
    • Energy Security
    • ICS
    • SCADA