Event Recordings
12
min read

How Morgan Stanley Isolated OT Threats with Automated Micro-segmentation

February 3, 2026

In this presentation from NexusCast January 2026, Qian (Grace) Lai, Executive Director at Morgan Stanley, dives into the high-stakes world of securing the Internet of Things within a global financial enterprise. Addressing the reality that modern buildings now house more IoT and OT devices than traditional PCs, Lai explains the shift from legacy OT to "smarter" but more vulnerable internet-connected systems. The session focuses on a critical challenge for facility managers: how to stop a successful hack on a simple device, like a CCTV camera, from jumping across the network to compromise critical BMS panels or printers. Lai shares the specific architectural choices Morgan Stanley made to move beyond flat networks and manual VLAN management.

Nexus Pro members will get an inside look at the automated "golden template" Morgan Stanley uses to deploy secure, rule-based routing at scale. Lai details the transition from manual network curation to using Software Defined Access (SDA) and scalable group tagging to enforce "intent-based" security that prevents abnormal device communication. You will learn why agentless IoT devices require a different monitoring strategy than standard IT assets and how to establish traffic baselines to catch compromises without jeopardizing business uptime. This recording is essential for any OT or IT leader who needs to move from simple device discovery to an active, automated defense-in-depth posture.

Watch the full recording inside Nexus Pro →

Sign Up for Access or Log In to Continue Viewing

Sign Up for Access or Log In to Continue Viewing

In this presentation from NexusCast January 2026, Qian (Grace) Lai, Executive Director at Morgan Stanley, dives into the high-stakes world of securing the Internet of Things within a global financial enterprise. Addressing the reality that modern buildings now house more IoT and OT devices than traditional PCs, Lai explains the shift from legacy OT to "smarter" but more vulnerable internet-connected systems. The session focuses on a critical challenge for facility managers: how to stop a successful hack on a simple device, like a CCTV camera, from jumping across the network to compromise critical BMS panels or printers. Lai shares the specific architectural choices Morgan Stanley made to move beyond flat networks and manual VLAN management.

Nexus Pro members will get an inside look at the automated "golden template" Morgan Stanley uses to deploy secure, rule-based routing at scale. Lai details the transition from manual network curation to using Software Defined Access (SDA) and scalable group tagging to enforce "intent-based" security that prevents abnormal device communication. You will learn why agentless IoT devices require a different monitoring strategy than standard IT assets and how to establish traffic baselines to catch compromises without jeopardizing business uptime. This recording is essential for any OT or IT leader who needs to move from simple device discovery to an active, automated defense-in-depth posture.

Watch the full recording inside Nexus Pro →

⭐️ Pro Article

Sign Up for Access or Log In to View

⭐️ Pro Article

Sign Up for Access or Log In to View

Are you interested in joining us at NexusCon 2026? Register now so you don’t miss out!

Join Today

Are you a Nexus Pro member yet? Join now to get access to our community of 600+ members.

Join Today

Have you taken our Smart Building Strategist Course yet? Sign up to get access to our courses platform.

Enroll Now
Conversation
Comments (-)
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Guest
6 hours ago
Delete

This is a great piece!

REPLYCANCEL
or register to comment as a member
POST REPLY
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Guest
6 hours ago
Delete

I agree.

REPLYCANCEL
or register to comment as a member
POST REPLY
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Get the renowned Nexus Newsletter

Access the Nexus Community

Head over to Nexus Connect and see what’s new in the community. Don’t forget to check out the latest member-only events.

Go to Nexus Connect

Upgrade to Nexus Pro

Join Nexus Pro and get full access including invite-only member gatherings, access to the community chatroom Nexus Connect, networking opportunities, and deep dive essays.

Sign Up