OT cybersecurity services
Everything we do, organised into service families. All of them follow one rule: the industrial process sets the boundary for what is done, when and how.
Start with strategy
Before buying anything, it is worth knowing where you are going. These services work with management to set the direction of OT cybersecurity over several years and support its execution, so investments follow a plan rather than a succession of emergencies.
- OT cybersecurity strategy definition Vision, maturity level and a three-to-five-year roadmap aligned with the business and NIS2. An actionable, prioritised and measurable plan for management.
- Industrial Cybersecurity Technical Office Ongoing technical support through a bank of hours: independent validation of supplier proposals, design reviews and project prioritisation. An external industrial CISO when you need one.
See before you touch
You cannot protect what you do not know. These services build an accurate picture of your control network: what is there, how it is connected and where it can be accessed.
Test the way an attacker would
An office pentest does not work in a plant, but the corporate network must also be tested. We provide ethical hacking for both networks using different methodologies: real exploitation in IT; in OT, tests are agreed with operations and intrusive work is performed in the laboratory or during a shutdown window, because the target is not data—it is the physical process.
Reduce the attack surface
The measure that removes the most risk in most plants is not a product: it is separating the control network from the corporate network and governing who can enter, from where and with which permissions. But one barrier is not enough. Defence in depth stacks layers—hardening, access control with MFA, backups and OT anti-malware—so that when one fails, the next one holds.
Monitor and respond
What is not monitored is discovered late, and what is discovered late leads to improvisation. These services close the loop: detection with industrial context and a response that was already written before the incident.
- Managed IT/OT cybersecurity services Managed monitoring of IT and OT networks: anomaly detection, EDR and a SIEM that correlates both, analysed by people who understand a logic change.
- IT and OT incident response A retainer with plant-specific playbooks, OT-compatible forensics and support with regulatory notification.
- TITANIUM SIGHT Our OT threat intelligence feeds both services: active campaigns and exploited vulnerabilities in control equipment, converted into detection use cases and reports.
Research and innovation
Behind all of the above is an R&D team working in a laboratory with real control equipment, a hardware bench and radio facilities. There we evaluate devices before a manufacturer sells them, analyse malware found during an incident and rehearse intrusive work before touching production. This is what keeps the rest of our work ahead of the adversary.
- Research: fields and references The six active research lines and their outputs: disclosed vulnerabilities, contributions to the community and knowledge fed back into our services.
- Ti Lab, el laboratorio OT/IoT/IIoMT device assessment, zero-day research, reverse engineering, a radio laboratory (SDR) and applied AI, with the equipment behind them.