The Vendor Access Problem We See in Almost Every OT Workshop
Zscaler, Thursday, September 17th, 2026
Zscaler describes the recurring third-party remote access weakness found in nearly every OT security workshop.
Drawing on customer workshops, Zscaler describes a pattern it encounters at nearly every industrial site: unmanaged third-party vendor remote access into OT environments.
The post explains how jump hosts, shared credentials, and legacy VPNs accumulate into an unmonitored attack path.
It contrasts these with zero trust privileged remote access that brokers sessions without network-level connectivity. Practical steps are given for inventorying and replacing existing vendor access methods.