Unsolicited Response Podcast

Jun 28, 2017

Joel Langill, aka the SCADAHacker, joined me on the Unsolicited Response podcast to discuss ICSsec training and workforce development. As you can imagine the interview covered a lot of other related areas.

Joel is the Director of ICS Cybersecurity at AECOM, see He also runs the popular ICS security website , and details on the training he describes in the podcast is available at that site.

Here are some podcast highlights.

2:15 - Joel's background in ICS/automation prior to getting involved in security.

13:05 - How Joel's background has informed his approach to security.

16:50 - Started discussing ICSsec workforce development.

18:50 - What would be the ideal training for an ICS security professional?

23:25 - Using a pharma company as an example, how many people in that company would require ICSsec training. What type of training for what roles? .

26:05 - Where should the ICS security talent be located in a company?

27:40 - How to scale training, online training, and how he structures his online training

29:55 - Joel's belief that an online class is more effective than an in person course and a discussion of the course Labs.

32:10 - What has Joel learned in training 500+ students.

35:20 - If 40 hours is not enough to get you where you need to be as an ICSsec professional, how do you or the market address the need for additional training? Joel notes most students did not meet the criteria/skill set to fully benefit from the class.

38:40 - The benefits of a hands on assessment to determine current skill level and needs to select required training.

41:20 How Joel's joining AECOM will affect the SCADAhacker training.