<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>I&amp;C Secure, Inc</title><link>/</link><description>Recent content on I&amp;C Secure, Inc</description><generator>Hugo</generator><language>en</language><atom:link href="/index.xml" rel="self" type="application/rss+xml"/><item><title>Virtual ICS/OT CISO Services</title><link>/virtual-ics/ot-ciso-services/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/virtual-ics/ot-ciso-services/</guid><description>Our team can provide vCISO services to help guide your organization&amp;rsquo;s ICS/OT cybersecurity program.
In this role, our team can provide your organization with services and guidance around Strategic Planning, Policy Development and Management, Risk Assessment and Management, Incident Response and Crisis Management, Security Awareness and Training, Vendor and Technology Management, and Compliance and Audit Support.</description></item><item><title>Firewall Configuration</title><link>/firewall-configuration/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/firewall-configuration/</guid><description>Our team can review and modify your existing network firewall configurations to verify and ensure they are configured according to recommended cybersecurity practices and are customized appropriately for your organization&amp;rsquo;s data flows.</description></item><item><title>Threat Hunting</title><link>/threat-hunting/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/threat-hunting/</guid><description>For organizations who already have a cybersecurity program in place, you can advance your cybersecurity maturity with a threat hunting engagement. Guided by a carefully developed hunt hypothesis, our analysts will systematically search through your data looking for evidence of specific adversary TTPs, that could indicate the present of active or prior intrusions within your environment.
Threat hunting is an advanced cybersecurity practice and requires that the necessary forensic and log data is captured and available for investigation.</description></item><item><title>ICS/OT environment cybersecurity penetration testing</title><link>/ics/ot-environment-cybersecurity-penetration-testing/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/ics/ot-environment-cybersecurity-penetration-testing/</guid><description>An ICS/OT focused penetration test or red/purple team engagement will test the effectiveness of your cybersecurity program and in-place cybersecurity controls. Our experts are skilled in conducting offensive cyber operations for the purposes of improving defensive capabilities.
In addition to high level capabilities to develop and leverage exploit tools, our team has extensive experience designing, building, operating, maintaining, and defending ICS/OT environments.
Having expertise as both defenders and attackers puts us in the best position to assist your validation and enhancement of your defenses.</description></item><item><title>Design and execute ICS/OT Cybersecurity Tabletop Drills</title><link>/design-and-execute-ics/ot-cybersecurity-tabletop-drills/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/design-and-execute-ics/ot-cybersecurity-tabletop-drills/</guid><description>ICS/OT cyber incident response tabletop drills are the tool that will enable your organization to test and improve the effectiveness of your cybersecurity incident response plan. Our team can design a tabletop scenario for you that is based on existing ICS/OT cyber threats and their potential effect on your process, operations, and ICS/OT environment.
This engagement brings all relevant stakeholders into the ICS/OT cybersecurity conversation and will be a key to developing a cybersecurity culture in your organization.</description></item><item><title>ICS/OT focused incident response plan development</title><link>/ics/ot-focused-incident-response-plan-development/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/ics/ot-focused-incident-response-plan-development/</guid><description>Cyber incident response readiness is the highest priority ICS/OT cybersecurity capability for an organization to address. The output of the industrial process is often the critical mission of industrial critical infrastructure organizations.
Therefore, it is imperative that your organization has a cyber incident response plan (CIRP) that appropriately addresses your ICS/OT environment.
Our team has the knowledge, experience, and expertise to help you build or modify your CIRP to enable your organization to have an efficient and effective response to cyber incidents, thereby reducing the costs and impacts of a cyber incident and improving your ability to satisfy its mission.</description></item><item><title>Design and implement an ICS/OT vulnerability management program</title><link>/design-and-implement-an-ics/ot-vulnerability-management-program/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/design-and-implement-an-ics/ot-vulnerability-management-program/</guid><description>An approach to identify and address vulnerabilities within an ICS/OT environment requires a specialized approach. Vulnerability management programs designed for IT environments often cannot be extended onto ICS/OT environments.
Our team understands the special considerations, cautions, risks, and challenges associated with ICS/OT vulnerability management. We can help your organization build the appropriate process and select the right technical approach to fit your organization.</description></item><item><title>Design and implement host-based and network-based event monitoring capability</title><link>/design-and-implement-host-based-and-network-based-event-monitoring-capability/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/design-and-implement-host-based-and-network-based-event-monitoring-capability/</guid><description>The capability to detect cybersecurity events before they become incidents or to detect adversary activity before they achieve their goal, is a critical component to cybersecurity readiness.
With knowledge of your ICS/OT environment, architecture, and critical assets, our team will design and implement an appropriate detection capability for you by establishing a combination of host-based and network-based visibility solutions.</description></item><item><title>Design and implement asset cybersecurity hardening</title><link>/design-and-implement-asset-cybersecurity-hardening/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/design-and-implement-asset-cybersecurity-hardening/</guid><description>From PLCs and Instruments to necessary applications and services, to servers and workstations, or to network and security devices, our team is equipped and knowledgeable to implement cybersecurity hardened configurations for the assets within your ICS/OT environment. We can utilize standardized third-party hardening guides or develop customized secure configurations, as needed.
Cybersecurity hardening is a process of identifying the required functionality of an asset to serve the operation and eliminating or compensating for any additional services, feature, or weaknesses that are present within the asset deployment.</description></item><item><title>Design and implement comprehensive data backup processes</title><link>/design-and-implement-comprehensive-data-backup-processes/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/design-and-implement-comprehensive-data-backup-processes/</guid><description>Incident Response Readiness is the highest priority ICS/OT Cybersecurity capability for an organization to address. One key component in addressing readiness is to ensure your organization has a comprehensive, tested, and resilient data backup repository. Our team will design and implement a backup process that ensures your organization is prepared to recover from a loss of your critical assets.</description></item><item><title>Secure remote access design and implementation</title><link>/secure-remote-access-design-and-implementation/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/secure-remote-access-design-and-implementation/</guid><description>We will evaluate your use cases for necessary remote access to your ICS/OT environment including needs of internal staff, third-parties, system operational needs, or maintenance/diagnostics needs.
Once we understand the needs, we can balance the need of access against the potential for unacceptable consequence, which enables us to &amp;ldquo;right-size&amp;rdquo; your secure remote access solution to meet your needs. Based on your organizational needs, our team can build custom secure remote access solutions or identify and specify the appropriate commercial solution.</description></item><item><title>ICS/OT Cybersecurity Assessments</title><link>/assessments/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/assessments/</guid><description>Our assessment methodology starts with gaining an understanding of the industrial process and operation, as that is the fundamental mission of an industrial critical infrastructure organization. We utilize our mechanical and controls systems engineering experience to evaluate the industrial control system (ICS) architecture from the perspective of its effectiveness to maintain resilient, reliable, and stable operations during failure modes including cyber-induced failures.
We will also review the Operations Technology (OT) that supports the function of the ICS.</description></item><item><title>Industrial Control System Cyber-physical protection design</title><link>/physical-protection/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/physical-protection/</guid><description>Where appropriate, cyber-physical protections are the most effective cybersecurity control we can employ. For these unique controls, we utilize process and control system engineering practices to modify the process and/or industrial controls system in manner to the eliminate potential for cyber-induced impacts. These solutions are generally reserved to prevent the most unacceptable consequences such as health and safety impacts or prolonged operational outages.</description></item><item><title>About I&amp;C Secure</title><link>/about/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/about/</guid><description>Mission I&amp;amp;C Secure is dedicated to helping our clients build and maintain a robust and successful cybersecurity program for their Industrial Control Systems/Operations Technology (ICS/OT). We are focused on providing consulting and ICS/OT cybersecurity and engineering services to Massachusetts and New England based industrial critical infrastructure organizations such as Public Water Suppliers and Electric Utilities. Our aim is to help our clients achieve a resilient industrial operation by applying cybersecurity controls in way that is sustainable and maintainable, while always striving to reduce undue complexity in the design and implementation.</description></item><item><title>Contact I&amp;C</title><link>/contact/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/contact/</guid><description> Contact Us Email: I&amp;amp;C Info Phone: +1 (617) 312-3484 send reset</description></item><item><title>Control System Engineering Design &amp; Consulting</title><link>/control-system-engineering-design-consulting/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/control-system-engineering-design-consulting/</guid><description>Whether your control system requires engineering design, a retrofit, modifications, maintenance or troubleshooting, our team has the knowledge, experience, qualifications, and credentials to provide full-service control system engineering services.</description></item><item><title>Controls System Network Architecture</title><link>/controls-system-network-architecture/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/controls-system-network-architecture/</guid><description>Our team specializes in the design and implementation of reliable, resilient, stable, and secure control system network architectures. We have capabilities to design, deliver, and secure across various technologies including serial, IP, Radio, Cell, MPLS, DDS, etc. We understand the process of implementing a control system network optimized to allow stability, reliability, and security for an industrial control system.</description></item><item><title>Controls Systems Network and Security Device Configuration</title><link>/controls-systems-network-and-security-device-configuration/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/controls-systems-network-and-security-device-configuration/</guid><description>Our team can deliver or modify your network and security devices to provide a functional, optimized, and secure deployment across your environment. We specialize in Cisco, Hirschmann, HP, Stratix, SonicWALL, Fortinet, Zyxel, Belden Eagle, Tofino, and more.</description></item><item><title>HMI Development</title><link>/hmi-development/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/hmi-development/</guid><description>Our approach to process automation is always to provide simple intuitive HMIs that reduce complexity and enable operations teams to reliably monitor and control the process. Our team has experience with HMI software development including platforms such as GE iFix, Wonderware, VTSCADA, and more.</description></item><item><title>Industrial Process and Control System Troubleshooting</title><link>/industrial-process-and-control-system-troubleshooting/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/industrial-process-and-control-system-troubleshooting/</guid><description>Our team has significant experience troubleshooting and correcting process operational and control system problems. We have encountered and corrected problems from failure modes of all types. We are ready to help you optimize your process.</description></item><item><title>Partners</title><link>/partners/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/partners/</guid><description>Dragos is the industrial cybersecurity company on a relentless mission to safeguard civilization. In a world of riding cybersecurity threats, Dragos protects the most critical infrastructure - those that provide us with the tenets of modern civilization - from increasingly capable adversaries who wish to do it harm. Devoted to codifying and sharing our in-depth industry of ICS/OT systems, Dragos arms industrial defenders around the world with the knowledge and tools to protect their systems as effectively and efficiently as possible.</description></item><item><title>PLC Programming</title><link>/plc-programming/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/plc-programming/</guid><description>Our team specialize in delivering resilient, reliable, fault tolerant and stable PLC programs. We have PLC programming experience with Rockwell Automation, Modicon, Siemens, GE, Automation Direct, and more.</description></item><item><title>Resources</title><link>/resources/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>/resources/</guid><description>Speaking Engagements HACKED BY RUSSIA: U.S. Water Facilities are Being Targeted | The News on Merit Street Gus Serino on the News on Merit Street disscussing the recent cyberattacks on US water facilities Gus Serino, a water-sector cybersecurity expert and president of I&amp;amp;C Secure, provided critical insights into the vulnerabilities of water utilities in the wake of a cyberattack on a Texas water facility. Serino emphasized the need for addressing basic cybersecurity measures to prevent such incidents, highlighting the regulatory gaps that leave water systems exposed to adversaries.</description></item></channel></rss>