OT/IT Convergence
E1. Maritime security, geopolitics and riskDefinition
Integration creating shared cyber attack surface.
OT/IT convergence is the linking of operational-technology control systems with information-technology and external networks, driven by remote monitoring, performance optimization, and condition-based maintenance. On vessels it connects engine, cargo, and bridge systems to shore via satellite, which raises efficiency but merges two formerly separate attack surfaces: a phishing-borne IT compromise can now reach control systems. IMO MSC-FAL.1/Circ.3 and BIMCO respond with segmentation, DMZs, and firewalls at the IT/OT boundary. Convergence is the central reason MSC.428(98) folds cyber risk into the safety management system rather than the IT department alone.
Source: IMO MSC-FAL.1/Circ.3 Guidelines on maritime cyber risk management, 5 July 2017; IMO Resolution MSC.428(98), 16 June 2017