Advisory services

Scope definition

  • Cybersecurity requirements interpretation 

  • Cybersecurity budget estimation

ICS/OT Cybersecurity Compliance, Governance and Risk Management

  • ICS/OT cybersecurity program development  

  • Business risk identification 

  • Maturity and gap assessment 

  • Cyber defense strategy and roadmap

  • High-level system/assets identification

  • Compliance with industry standards, regulations and legislations

Policies, procedures and plan development 

  • Risk management 

  • Intrusion detection and prevention 

  • Incident response  

  • Business continuity 

  • OT SOC playbook advisory

  • Security controls definition, selection and adaptation to the ICS/OT environment

  • Security assurance

Advisory Services
  • Cybersecurity requirements interpretation 

  • Cybersecurity budget estimation

Scope definition

Policies, procedures and plan development 

  • Risk management 

  • Intrusion detection and prevention 

  • Incident response  

  • Business continuity 

  • OT SOC playbook advisory

ICS/OT Cybersecurity Compliance, Governance and Risk Management

  • ICS/OT cybersecurity program development  

  • Business risk identification 

  • Maturity and gap assessment 

  • Cyber defense strategy and roadmap

  • High-level system/assets identification

  • Compliance with industry standards, regulations and legislations

  • Security controls definition, selection and adaptation to the ICS/OT environment

  • Security assurance

Technology

Cybersecurity system definition
and preliminary design
 

  • Digital asset discovery and inventory 

  • Legacy ICS/OT system integration and architecture analysis 

  • Mapping of security controls 

Selection and detailed design
of security controls
 

  • Cybersecurity optioneering; Information, operation and network technology selection 

  • Procurement support 

  • Security environment design and integration

Automated services

  • AI/ML/analytics threat intelligence 

  • Penetration testing (including digital twin) 

Applied Security

Threat and vulnerability assessment 

  • Live risk register and vulnerability watch

Testing and commissioning

  • Penetration testing 

  • Hardening

Recurrent services 

  • Vulnerability scanning 

  • Cybersecurity testing 

  • Compliance management 

Laboratory simulations

  • Cybersecurity equipment testing  

  • Software / systems patches