Expertise
OT decision checks
Three structured checks for common OT security decisions. Each asks three questions and returns a provisional note that separates what is known, what is assumed and what is still unknown. None of them is a formal assessment.
- // IEC 62443, APPLIEDTurn requirements into buildable OT decisions.
A requirement is not a design decision.
You have a requirement and a system, planned or running. Three questions find where they disagree, and what you would need to know to settle it.
START THE DECISION CHECK →: IEC 62443 - // WHICH CAF GAP FIRST?Prioritise CAF gaps by operational consequence.
Not every CAF gap deserves equal attention.
You have a list of CAF gaps and not enough time for all of them. Take one finding and see whether it deserves to go first.
START THE DECISION CHECK →: CAF - // ASSUME COMPROMISEDesign to limit operational consequence.
Assume compromise. Design for consequence.
Assume something digital goes wrong. Follow it into the process and find where its consequence can still be limited.
START THE DECISION CHECK →: CYBER INFORMED ENGINEERING
