Hero

Industrial Control Systems Healthcheck

Reduce security vulnerabilities in SCADA and ICS environments

man on laptop in warehouse

Assess and improve your cyber security posture with an ICS Healthcheck

During an Industrial Control Systems (ICS) Healthcheck, Mandiant experts draw on our knowledge of advanced threat actors, security breaches and ICS domains to evaluate how well your ICS security program and architecture are segmented, protected and monitored.

Overview

The ICS Healthcheck helps your organization assess its cyber security posture without the operational risk associated with software-based agents, network scanning and other aggressive and invasive assessment techniques. Incorporating their understanding of operational technology (OT), Mandiant consultants deliver a workshop-based ICS architecture review and provide a detailed technical analysis of, and recommendations for, your security environment.

Risk analysis and threat modeling

  1. Document current network
    • Mandiant consultants inventory and review your existing architecture documentation, communications protocols and security polices, standards and procedures to thoroughly understand your ICS security environment.
  2. Develop threat model
    • Our experts work with your IT, operations and engineering staff to identify the high-likelihood and high-risk attack vectors and targets.
  3. Prioritize control
    • Using the threat model, Mandiant professionals help your team select and prioritize security controls to address recognized, anticipated threats.

Technical data analysis

  1. Review network segmentation
    • Our consultants deploy a Network Forensics Platform device on your network and then analyze network packet capture files to determine the types of security risks you face.
  2. Review security device configuration
    • Mandiant experts determine how your network security devices are configured and verify the efficacy of their rule sets.

What You Get

  • Threat model diagram
  • ICS Healthcheck report
  • Strategic and technical recommendations

Ready to get started?

Our security experts are standing by to help you with an incident or answer questions about our consulting and managed detection and response services.