Listen to the full episode.
What this episode examines
What happens when a critical infrastructure operator protects its own systems, but sensitive information escapes through a trusted supplier?
In this episode of Cybersecurity Under Pressure, we examine the reported Kudankulam nuclear supply chain breach and the uncomfortable lesson behind it: your security perimeter is only as strong as the companies that handle your data.
We explore how sensitive engineering information can move from controlled environments into local computers, shared repositories, CAD and BIM tools, subcontractor networks and unmanaged exports. We also challenge a common assumption: that contracts, data classifications and traditional information rights management are enough to maintain control.
The discussion moves beyond theory to examine realistic measures, including operator-hosted engineering environments, controlled virtual workspaces, export restrictions, supplier segmentation, stronger access governance and evidence-based oversight of lower-tier suppliers.
Because in critical infrastructure, the breach may not begin inside the plant. It may begin several suppliers away.
Follow Cybersecurity Under Pressure: Real Attacks, Real Lessons for practical analysis of the incidents, technical decisions and operational failures shaping cybersecurity today.

