Services for the whole security lifecycle.
We combine years of experience in industrial environments with a hands-on approach: consultants, engineers and service partners who work directly with control systems to find and close the gaps. Assessment, design, implementation, training and managed services.
Every service, in order of the lifecycle
Assess
Know what you have, what threatens it and what matters most.
- ICS Threat AssessmentA structured evaluation of the threats to your ICS environment, using MITRE ATT&CK to identify risks, assess impact and set priorities.
- ICS Asset Discovery and ManagementA thorough discovery of every control system, network device, server and OT workstation, then a managed inventory with baselines and monitoring.
- ICS Security Risk AssessmentA standards-based assessment against IEC 62443 and NIST SP 800-82, and a cyber-physical assessment of how an attack could disrupt the physical process.
- ICS Crown Jewel AnalysisIdentify the assets whose loss would hurt most, and build the security plan around them.
- ICS/OT Penetration TestingVulnerability assessment and penetration testing of industrial control systems, run OT-safe: passive first, active only where it cannot hurt the process, and exploitation proven in the lab where it cannot be proven live.
Design
Architecture and networks built for the sector's requirements.
- ICS Network Assessment and DesignAssessment of the network infrastructure, design and documentation, then design and implementation of a resilient architecture.
- ICS Security ArchitectureA security architecture aligned with your sector's guidelines and regulations, with reference architectures for ICS and IIoT.
Operate
Monitoring, programme management and exposure watch, day to day.
- ICS Security MonitoringA tailored monitoring strategy, tuned tooling that avoids alert fatigue, and optionally round-the-clock managed monitoring by our analysts.
- ICS Cyber Security Programme ManagementA programme management framework that joins strategic planning, implementation and ongoing monitoring, aligned with standards and regulation.
- Credential Exposure MonitoringAn always-on watch on your email domain across breach corpora, infostealer logs and paste sites, with alerts, onboarding assessment, password screening and board reporting.
Respond and Recover
Ready before the incident, resilient through it.
- Incident Response ReadinessAn incident response plan tailored to your ICS environment, validated with tabletop exercises, backed by relationships with third-party responders.
- ICS Operational ResilienceBusiness continuity and disaster recovery for ICS: find the points of failure, plan around them, and test the plan.
Not sure which service fits? Start with a conversation.
Most engagements begin with an assessment. Tell us what you run and what worries you, and we will suggest where to start.

