Plan and build isolated, segmented OT networks that communicate safely with IT systems — without the flat network that lets one compromised laptop reach a controller.
Services included
Network topology assessment and redesign
DMZ and air-gap implementation strategies
Secure gateway deployment
Protocol bridging: Modbus, PROFIBUS, Ethernet
Redundancy and failover design
Data flow mapping and validation
Use cases
Legacy modernisation
Moving from air-gap to controlled connectivity without losing the isolation that was protecting you.
Greenfield smart factory
Industry 4.0 architecture designed from the ground up, with segmentation built in rather than retrofitted.
Multi-site consolidation
Centralised monitoring with local control authority retained at each plant.
IIoT integration
Edge devices and cloud backend connected on an outbound-only, read-only path.
Security assessment, architecture hardening, compliance alignment and ongoing monitoring — scoped for a plant that has to keep running while you improve it.
Services included
OT security posture assessment
Threat modelling and risk analysis
Security hardening: device, network, access control
ICS and SCADA security best practice implementation
Identify OT security weaknesses before an attacker does
Comprehensive OT-specific vulnerability assessment and penetration testing across network, devices, protocols and access control — run on a live plant without taking it down.
Assessment scope
Fully customisable. Most engagements cover all four areas; a targeted assessment can cover one.
OT testing is not IT testing. A scan that is routine on a corporate network can fault a controller that has been running since 2011. Every engagement is scoped against your process criticality, uses passive and non-invasive techniques first, monitors operational continuity throughout, and carries agreed rollback procedures before a single packet is sent. Where a test cannot be run safely on the live system, we say so and test it on the spare or during a planned outage instead.
What you receive
A report that works for three different audiences, because a finding nobody acts on is not a finding — it is paperwork.
C-level overview with key risks ranked by business impact, not by CVSS score alone.
2
Detailed findings report
Each vulnerability with severity, evidence and a proof-of-concept where it can be demonstrated safely.
3
Remediation roadmap
Prioritised and phased, sequenced so the highest-risk items that can be fixed without downtime come first.
4
Technical deep-dives
Written for your engineering team, with enough detail to reproduce and verify each fix.
5
Compliance mapping
Which standards each finding touches: IEC 62443 security levels, NIST CSF functions, NERC CIP requirements.
6
Post-assessment consulting
Implementation support, because handing over a report and leaving is how findings go stale.
Frameworks & compliance
Standards we work to
We align to the framework your regulator, insurer or customer already expects, rather than inventing a scoring system of our own.
NIST Cybersecurity Framework
Identify, Protect, Detect, Respond, Recover — used as the reporting spine so findings map to something your board already understands.
IEC 62443
The reference standard for industrial automation and control system security. Zones, conduits and security levels structure every architecture we design.
ISA 99
SCADA and instrumentation practice underpinning IEC 62443, applied at the device and loop level.
NERC CIP
Critical infrastructure protection requirements where the site falls under bulk electric system obligations.
ISO 27001 / 27002
General information security management, used to align OT controls with an existing corporate ISMS rather than duplicating it.
Supporting products
Hardware that makes the architecture enforceable
A segmentation design only holds if the equipment can enforce it. These are the products that most often carry the load.
Most plants do not know what is on their OT network
That is not a criticism, it is the normal starting position. A passive assessment answers it in days, without touching the process, and every later decision gets easier once it is answered.