About

Conference

SecurityWeek’s ICS Cyber Security Conference is the conference where ICS users, ICS vendors, system security providers and government representatives meet to discuss the latest cyber-incidents, analyze their causes and cooperate on solutions.

<We_can_help/>

What are you looking for?

>Event Session

Agentic AI in Critical Infrastructure: Redefining OT Cybersecurity in ICS Environments

Thursday, October 8, 2026
9:00 AM - 9:30 AM
Strategy Track (Great Room 3)

About This Session

Critical infrastructure is entering a new phase of digital transformation as artificial intelligence (AI) moves from analysis to action. The emergence of agentic AI —systems capable of autonomously perceiving, reasoning and executing decisions— represents a step change for industrial control systems (ICS) environments. From power generation and water treatment to manufacturing and transportation, these technologies promise improved efficiency, resilience and operational performance. However, they also introduce an unprecedented cybersecurity challenge: AI as an embedded insider threat.

Unlike traditional cyber risks that originate externally, agentic AI operates within the control environment, directly influencing physical processes, equipment and networks. This shift fundamentally changes the scope of OT cybersecurity, from securing systems against intrusion to governing the behavior, integrity and decision-making of autonomous entities. As autonomy increases, so does the risk of unintended or unsafe actions, particularly in safety-critical ICS environments.

This session explores how agentic AI is reshaping cybersecurity across critical infrastructure. We will examine emerging risk categories, including model drift, hallucinations, training data poisoning, unauthorized or “shadow” agents and cascading impacts across interconnected systems. These risks challenge conventional security architectures and raise new questions around accountability, trust and operational control.

As ICS environments evolve toward greater autonomy, cybersecurity must evolve with them. This session equips attendees with the insights needed to safely harness agentic AI, ensuring that innovation enhances, rather than compromises, the resilience, reliability and safety of critical infrastructure.

Attendees will gain a practical framework for addressing these challenges. Key topics include establishing governance models for AI in OT, enforcing bounded autonomy and least privilege, ensuring human oversight and implementing independent monitoring and safety controls. We will also outline a structured path for adoption, from readiness assessment and use case prioritization to implementation and continuous risk management.

Speaker

Ian Bramson

Ian Bramson

Vice President, Global Industrial Cybersecurity - Black & Veatch

Ian Bramson is vice president of Black & Veatch’s Global Industrial Cybersecurity Practice, responsible for the strategy, commercialization and business growth of all the company’s integrated cybersecurity solutions and capabilities. He’s a highly experienced leader in the fields of cybersecurity, risk management, and digital transformation with a career spanning over 25 years. Ian works closely with top-level executives in critical infrastructure industries to provide innovative solutions that minimize cybersecurity risks. He has successfully built two cybersecurity consulting services over the past decade, both of which were supported by global sales organizations and implemented in multiple industries.