Establishing a Security Baseline of an ICS environment (Two Days)
Topics Covered
- Introduction to ICS and OT including differences between IT Security and OT Security using a number of case studies
- Asset discovery, understanding the attack surfaces exposed and implications for the security baseline
- Coverage of multiple communication protocols used in OT environments, their vulnerabilities and how to investigate and understand their impact on the security baseline
- Capturing network traffic in OT systems, and analysing and synthesising insights from such traffic to enrich the security baseline
- Operationalising actionable outcomes from the security baseline to understand implications for regulatory compliance particularly the NIS directive
Training Outcomes
You should commission this course to provide your team with:
- An understanding of Operational Technology used in industrial control systems
- Knowledge of OT assets, communication protocols and their vulnerabilities
- Capability on how to establish a security baseline and operationalise this into actionable outcomes for improving the security posture of your ICS
- Hands-on experience with LINICS and using the tools in LINICS to establish a security baseline
