Vendor Access Emerges as a Primary Weak Link in OT Security
As vendor ecosystems expand, industrial firms are still struggling with the basics of secure remote access, oversight and credential control.
As vendor ecosystems expand, industrial firms are still struggling with the basics of secure remote access, oversight and credential control.
As AI accelerates product development and cybersecurity categories blur together, security leaders face a growing challenge: figuring out who actually does what anymore. (Sponsored by Crush Security.)
We are joined by Crush Security co-founders Joshua Jones and Josh Johnson, plus CISO John Barrow. They discuss navigating an increasingly complex vendor ecosystem where tool sprawl, contract complexity, reseller incentives, and budget pressure make buying harder. (Sponsored by Crush Security)
Security pros often don’t understand why their business won’t accept certain types of solutions. Thus, they can’t articulate those problems to vendors. If both sides can't grasp why existing solutions aren’t organizationally viable, they stand no chance at building better solutions that are viable.
The RSAC 2026 expo floor didn’t just reflect the cybersecurity market — it exposed how vendors think buyers buy. Right now, that means AI everywhere, clarity nowhere, and a growing gap between messaging and meaning.
As I meet with different cybersecurity vendors, organizations, and professionals this week at RSAC 2026, I am keeping a running timeline of my highlights. I'll be updating throughout the week. Come back for the updates!
The breach has triggered a reckoning with security blind spots that extend far beyond one company's network.