The growing digitalisation of industrial and business processes is creating large deployments where Information Technology (IT) and Operational Technology (OT) are tightly interconnected and interdependent. While cybersecurity risks for IT are mostly related to data breaches and service unavailability, OT is far more critical, since it handles physical equipment. In fact, intrusions into cloud infrastructure may directly or indirectly affect critical processes for autonomous driving or energy operations, with high-impact consequences for people’s lives. Additionally, the prevailing interconnection between providers across business and technological value chains creates further tight, recursive inter-domain security dependencies, which are challenging to address due to the fragmentation of cybersecurity operations. Secure and reliable operation of the whole chain requires each provider to improve the security posture of its suppliers. However, the current practice primarily relies on human intervention to disclose vulnerabilities, raise alerts, and suggest remediations, which has been proven to be largely ineffective and risky. In this position paper, we discuss how digital twins ca
📖 افتح في inklap 🔗 DOI 📮 اطلب بحثاً