Darren Highfill of Utilisec follows up his great Witch Doctor vs. The Engineer from S4x12 with another thinkpiece – Deterministic Failure – Are All ICS Doomed to Fail? Or the flip side, can ICS operate with confidence.
He goes into how you can build confidence through the quantity of supporting claims and quality of each supporting claim. And Darren introduces the term “Defeasible Reasoning” – Logic is rationally compelling but not deductively valid, and argumentation theory. Penetration testers as potential defeaters; my favorite in ICS is design reduction. A good summary cost and recommendations slide is at 26 minutes.
A relevant and unique S4 session.