Production-Critical Vendor Exposure — No Clean Answer

Step 1

intro

Brief: Production-Critical Vendor Exposure

You are the technical security architect for Solstice Manufacturing. The VantageSync Production Connector — a third-party agent installed on Manufacturing Execution System (MES) hosts across all three plants — pushes real-time production schedules to shop-floor controllers. A public advisory, and a confirmed compromise at another VantageSync customer, show the vendor's build pipeline was compromised for several weeks. Solstice's own environment has been checked and shows no confirmed compromise so far, but runs the same connector with the same broad trust. Security leadership wants the exposure materially reduced immediately. Plant operations leadership says the connector's real-time function cannot be interrupted — contractual production schedules don't allow for extended downtime. There is no vendor fix for at least six months. Most of this exercise is architecture design under these constraints, not incident response.

How do you want to begin?