Sekit CSF · OT/ICS Security · Technical
RCF-0423Network segmentation (ICS)
Technical controls enforce network separation between ICS and IT environments through firewalls and unidirectional gateways
Mapping at a glance
RCF-0423Network segmentation (ICS)OT/ICS Security · Technical
RCF-0423 maps to 5 controls across the published frameworks. Open in the full graph →
Maps to ISO/IEC 27001:2022
Curated mapping with the reasoning, not just the codes.
A.8.20Networks securitysupportsA firewall between IT and OT zones permitting only necessary flows, plus one-way data paths, is the technical segmentation A.8.20 requires for industrial networks.A.8.22Segregation of networksenablesThe technical facet enables the IT/OT separation with a firewall permitting only the specific flows production needs and one-way data paths where the plant only publishes outward, the enforcement A.8.22 requires for ICS zones.
Maps to NIST CSF 2.0
Curated mapping with the reasoning, not just the codes.
Maps to Cyber Essentials
Curated mapping with the reasoning, not just the codes.
Evidence that proves this control
What an auditor, or Sekit's evidence engine, asks for.
Network architecture diagram
The drawing or schematic showing how the company's systems connect: networks, firewalls, segments, and links to the internet and the cloud.
From the Sekit evidence catalog
This topic through the other lenses
All OT/ICS Security controls
Ask Sekura: “What evidence proves RCF-0423?”
Also via MCP, free with account