The flat network problem
One broadcast domain from the front office to the PLC rack. A single compromised laptop reaches every device on the plant floor, because nothing in between was ever configured to say no.
A complete, seven-module course built for OT and ICS engineers with little to no IT background. Understand your own network, hold your ground in a conversation with IT and security, and find the vulnerabilities sitting in your plant today.
No cost, no prerequisites, no lab hardware required.
Module 4 walks this stack level by level — and shows the four ways real plants quietly bypass it.
The situation
Control networks were designed for uptime and determinism, not for adversaries. Then they got connected — to the business network, to vendors, to the internet — and the person who now has to answer for that is the person who knows the process best.
One broadcast domain from the front office to the PLC rack. A single compromised laptop reaches every device on the plant floor, because nothing in between was ever configured to say no.
Modbus, DNP3 and their neighbors were never designed to authenticate anything. Telnet, FTP and SNMPv1 are still running in plants right now, handing credentials to anyone listening.
IT wants to patch on a schedule and scan the subnet. You know what an active scan does to a legacy PLC. Neither side is wrong — but the conversation only works if you can both speak in VLANs, ports and rules.
Most sites cannot produce an accurate list of what is on their control network. The drawing on the wall is five years old, and three devices got added last quarter that nobody documented.
There is a firewall between IT and OT. It has a rule at the top that says
any / any / allow, added during a commissioning weekend in 2019 and never
removed. This is the single most common finding in OT assessments.
An IT breach costs records. An OT breach costs pressure, flow, voltage and, in the worst case, people. Stuxnet and Colonial Pipeline are the case studies, and they are on the syllabus.
What you walk away with
This is not an awareness course. Every module ends somewhere concrete — a diagram you can draw, a rule you can read, a command you can safely run on a live network.
The syllabus
The course builds from “what is a network” to full attack-path analysis. Nothing assumes prior IT knowledge, and nothing is skipped. Expand any module to see every lesson.
Every module can also be taken on its own. Enroll once and work through the full sequence, or jump straight to segmentation or firewalls if that is what your site needs this quarter.
Enroll and start Module 1Fit check
Getting started
The course is delivered entirely through the Utah Tech learning platform. Register once and your progress is saved between sessions.
Register at learning.cs.utahtech.edu. It takes a couple of minutes and costs nothing — no purchase, no procurement request, no corporate approval.
Fifty-three short lessons, sequenced from fundamentals to attack paths. Watch at your own pace, on your own schedule, on any device. Your place is saved as you go.
Finish the course and receive a certificate of completion from Utah Tech University — something you can put in front of a manager, an auditor or a hiring committee.
Who teaches it
Most OT engineers were never taught networking — and are now expected to defend one. This course closes that gap without pretending the plant floor works like an office.
Taught by Utah Tech University faculty
Questions
ping and traceroute, it also covers exactly when it is and is not safe to run them on a live control network.Start understanding it this week. Fifty-three lessons, seven modules, no cost, and a certificate at the end.
learning.cs.utahtech.edu
For sites that want their whole team trained together, in person, using examples pulled from their own control network instead of a generic one. We bring the course to you.
No published pricing — every engagement is scoped to your site, team size and schedule.
Email with your team size, site location and timeline, and we’ll put together a plan.
Why on-site
The self-paced course is built for one learner at a time. On-prem training is built for a team, a schedule and a site — with the instructor in the room.
Instead of each engineer working through the course alone, get maintenance, controls and IT-liaison staff in the same room, working from the same material, at the same time.
We walk your actual Purdue model, your actual DMZ and your actual firewall rules — not a generic diagram that only half applies to your site.
Bring the specific incident, the specific vendor connection or the specific firewall rule you’re not sure about, and get an answer from an instructor while it's still relevant.
Getting started
There's no self-service checkout for on-prem training — every engagement starts with a conversation about your site and your team.
Email your team size, site location and what you want covered. There's no form to fill out and no procurement process to start yet — just a conversation.
Full curriculum or a focused subset — segmentation, firewalls, visibility — mapped to what your site actually needs this quarter.
Instructor-led sessions at your facility, on your schedule, with a certificate of completion for every attendee.
Tell us about your team and your site, and we’ll put together a plan built around your network.
joe.francom@utahtech.edu
For teams and individuals who’d rather learn in person, away from the plant, alongside other OT professionals. Sessions will be held on Utah Tech’s St. George campus.
No dates are scheduled yet — email to be notified as soon as a cohort is announced.
Join the waitlist and we’ll reach out as soon as a cohort is scheduled.
Why on-campus
Some people learn better away from the plant floor, in a room with an instructor and other people wrestling with the same problem.
A few uninterrupted days focused entirely on the material, without the pager going off or a shift schedule pulling you back to the floor.
Compare notes with other OT/ICS professionals from different sites and industries who are facing the same architecture problems you are.
Delivered on Utah Tech University’s campus, with the same curriculum and the same certificate of completion as the online course.
We don’t have dates yet, but we’re building the waitlist now. Email us and we’ll reach out the moment a cohort is scheduled.
joe.francom@utahtech.edu
More trainings are in development. We’re building out additional courses beyond OT/ICS network security. Email us if you’d like to be notified when new trainings are released.
Notify me