Zero-trust architecture for industrial OT and IoT — micro-segmentation patterns, identity for machines, NIST SP 800-207 applied to plants, and what the Purdue model gets wrong.
Practical zero trust architecture — policy decision point, policy enforcement point, mTLS, SDP, identity-aware proxies, and migration from perimeter-based networks.