About the OT Cyber Risk Management category
What belongs in this category
The OT Cyber Risk Management category covers products that tell OT and security teams where their industrial risk is and what to do about it. Typical entries build an inventory of OT assets, match them to known vulnerabilities, and judge risk by how critical each process is and what protections exist around it. They support risk assessments under standards such as IEC 62443 and suggest fixes that fit OT, such as isolating the asset on its own network segment or adding monitoring when a patch cannot be applied.
Monitoring industrial networks for threats fits ICS / SCADA Security, and vulnerability management for IT systems fits Vulnerability Management. OT risk products are welcome in the broad OT Security category as well.
Related categories to enter
Each category is judged separately, so you can enter a product in every category that matches what it does, with a separate nomination for each. Tailor each nomination to that category's focus. Entering several related categories gives the product more than one chance to be recognized.
How entries are judged
An independent jury of security practitioners, analysts and CISOs scores each nomination on leadership, innovation and impact. Each nomination competes in its category against organizations of similar size and region, so a mid-sized firm is not ranked against a global enterprise. Your entry package, any sponsorship and public votes do not affect the jury's scores.
Strong entries in this category show:
- Leadership — the industrial environments the product covers: sites and assets inventoried, vulnerabilities assessed, and customers in manufacturing, energy or utilities.
- Innovation — an OT risk problem solved in a new way, such as risk scores based on the physical process, fixes that work when patching is not possible, or inventories built without touching equipment.
- Impact — results for customers: assets inventoried, high risks reduced, time to decide on fixes cut, findings closed in audits. Give figures from customers.
The jury awards Gold, Silver or Bronze, or a Finalist badge, and results are published on this site and announced to the 600,000+ member Cybersecurity Insiders community. Every approved nomination also enters the separate Community Choice award, decided by public votes.
How to enter
A vendor can enter its own product or service, and a PR agency can enter it on a client's behalf. The nomination form has a confidential field for detail that is shared with the judges and not published, such as customer names, deployment figures or roadmap. Deadlines, pricing and entry steps are on the How it Works page.