Sekit CSF · Family
OT/ICS Security
15 controls in 5 topics, each seen through the policy, process and technical lenses.
Policy
RCF-0427IR for ICS5 mappingsIncident response procedures specific to operational technology environments are formally definedRCF-0421Network segmentation (ICS)4 mappingsIndustrial control systems are formally required to be separated from corporate IT networksRCF-0418OT asset inventory3 mappingsAll operational technology and industrial control system assets are formally required to be identified and recordedRCF-0424Patch/compensating controls (ICS)5 mappingsA formal approach manages security vulnerabilities in OT systems where traditional patching is not possibleRCF-0430Safety alignment4 mappingsCybersecurity requirements are formally aligned with operational safety and physical process requirements
Process
RCF-0428IR for ICS5 mappingsICS-specific incident response procedures are consistently followed when operational systems are affectedRCF-0422Network segmentation (ICS)4 mappingsICS network boundaries are consistently maintained and cross-boundary traffic is strictly controlledRCF-0419OT asset inventory3 mappingsOT and ICS assets are consistently inventoried and changes to the OT environment are trackedRCF-0425Patch/compensating controls (ICS)4 mappingsOT vulnerabilities are consistently assessed and compensating controls are applied where patching is not feasibleRCF-0431Safety alignment3 mappingsSecurity decisions in OT environments consistently take into account the impact on operational safety
Technical
RCF-0429IR for ICS5 mappingsTechnical tools support safe detection and response to incidents in OT environments without disrupting operationsRCF-0423Network segmentation (ICS)5 mappingsTechnical controls enforce network separation between ICS and IT environments through firewalls and unidirectional gatewaysRCF-0420OT asset inventory4 mappingsTechnical tools passively discover and maintain an inventory of OT and ICS devices without disrupting operationsRCF-0426Patch/compensating controls (ICS)6 mappingsTechnical compensating controls such as network monitoring and application whitelisting protect unpatched OT systemsRCF-0432Safety alignment4 mappingsTechnical security controls are designed and validated to avoid interfering with safety-critical operational processes
This family in ISO/IEC 27001:2022
Every framework item the family's controls map to, most-connected first — grouped by Sekit CSF family, never by the framework's own index.
This family in NIST CSF 2.0
This family in Cyber Essentials
Ask Sekura: “What evidence proves OT/ICS Security?”
Also via MCP, free with account