Home / Courses / Industrial Cybersecurity (OT/ICS) / ICS and SCADA Security for Engineers
Industrial Cybersecurity (OT/ICS)

ICS and SCADA Security for Engineers

Industrial control systems were designed for reliability and availability, not security — and then they…

Code BII-ICSSCADA 4-Day Almaty, Istanbul, London, Online Online + Classroom
Overview

Course Description

Industrial control systems were designed for reliability and availability, not security — and then they were connected. PLCs, DCS and SCADA systems now carry cyber risk with physical consequences, and the engineers who run them are the people best placed to defend them, provided they understand how attacks work.

This course develops practical ICS and SCADA security understanding for engineers. Participants learn control system architecture and the Purdue model, industrial protocols and their weaknesses (Modbus, S7, DNP3, OPC-UA), how real attacks on industrial systems have worked, vulnerability assessment approaches safe for fragile systems, and the technical controls that harden industrial environments.

Objectives

What you will achieve

By the end of this training course, participants will be able to:

  • Explain why ICS security differs from IT security
  • Describe control system architecture and the Purdue model
  • Understand PLC, DCS, SCADA and HMI components
  • Explain industrial protocols and their security weaknesses
  • Understand how real attacks on ICS have worked
  • Apply safe assessment methods to sensitive systems
  • Implement technical controls and hardening
  • Build defence in depth for industrial environments
Training methodology

How the course is delivered

The course combines control system architecture with security analysis, using real industrial attack case studies. Participants work through protocol weaknesses, architecture review and hardening scenarios on realistic plant configurations.

The programme is designed for engineers who own and operate control systems, emphasising safe assessment of systems that cannot simply be patched or taken offline.

Who should attend

Designed for

This training course is ideal for:

  • Automation, control and instrumentation engineers
  • OT and plant engineers
  • Maintenance and reliability engineers
  • IT security staff supporting industrial sites
  • Anyone responsible for control system security
Course outline

Daily programme

DAY 01ICS Security Foundations
  • Why ICS security is different: safety and availability
  • Control system architecture
  • The Purdue reference model
  • PLC, DCS, SCADA, HMI and historians
DAY 02Industrial Protocols
  • Modbus and its weaknesses
  • S7, DNP3 and legacy protocols
  • OPC and OPC-UA
  • Protocol security and monitoring
DAY 03Threats and Assessment
  • How real ICS attacks have worked
  • Threat actors and industrial malware
  • Safe vulnerability assessment on fragile systems
  • Asset inventory in OT
DAY 04Hardening and Defence
  • Technical controls and hardening
  • Secure remote access
  • Monitoring and detection in OT
  • Defence in depth, workshop and review
Certificate

Certification & accreditation

BII Certificate of Completion

BII Certificate of Completion Upon successful completion, participants receive a BII Development Institute Certificate of Completion with a unique reference code that is independently verifiable. Our certificates are recognised internationally and reflect successful completion of your chosen programme.

Schedule

Upcoming sessions

DatesVenueFormatFee
30 Nov - 03 Dec 2026 Online Online US$ 4950 Register
04 - 07 Jan 2027 London Classroom US$ 4950 Register
05 - 08 Apr 2027 Almaty Classroom US$ 4950 Register
29 Nov - 02 Dec 2027 Istanbul Classroom US$ 4950 Register
Enrolment

Register, request in-house, or download the agenda

Choose an action and share your details — our team responds within one business day with dates, fees and the full programme.

Poster