Skip to content
Open industrial network cabinet with firewall, managed switches and labelled patching, connected to a laptop by a console cable

Area number 06

Cybersecurity

We structure security across two fronts that must not be conflated: corporate information security, and the security of automation and control systems. Tooling, maintenance windows, downtime tolerance and failure consequences differ across the two — and applying one playbook to both is the root of a large share of industrial incidents.

The problem

IT/OT convergence opened network paths between the office and the plant floor before segmentation, asset inventory or industrial protocol visibility existed. Many environments cannot answer what is connected to the control network, on which firmware, talking to whom.

Business impact

In IT, an incident costs data, service availability and regulatory exposure under Brazil’s LGPD. In OT, it costs a physical process: line stoppage, lost batch, risk to people and assets. Recovery is not restoring a backup — it is revalidating the operation.

The Noryvex approach

We start from inventory and visibility, because you cannot protect what you cannot enumerate. From there: segmentation with a declared operational purpose, least-privilege access control, monitoring appropriate to each domain, and a response plan that assumes the incident will happen. We only recommend what operations can sustain after we leave.

Capabilities

What we do here

Technical scope covered in this area. The exact composition of each project comes from the survey, not from a catalog.

  • Next-generation firewall, segmentation and microsegmentation
  • Endpoint security, EDR and XDR
  • IDS/IPS and industrial network monitoring
  • SIEM, event correlation and SOC operations
  • Identity and access management (IAM) and privileged access (PAM)
  • Zero Trust architecture, VPN and SASE
  • OT/ICS security with industrial protocol visibility
  • Vulnerability assessment and configuration hardening
  • Backup, disaster recovery and business continuity
  • Incident response and contingency planning

Technologies

NGFWEDRXDRSIEMIAMPAMZero TrustSASEIEC 62443MITRE ATT&CK

Scope

What's included

Contractable tracks in this area, on their own or combined. Whatever does not fit your operation stays out of scope — and out of the price.

01

Vulnerability assessment and management

Continuous scanning, prioritization by real exposure and follow-through on remediation — not an annual report.

02

Perimeter and segmentation

Firewalling, access policy and network separation, with attention to where IT meets the plant floor.

03

Endpoint protection and response

EDR, application control and containment of what already got in, with logging for later investigation.

04

Monitoring and incident response

Event collection, correlation, alert handling and a containment procedure agreed before the incident.

05

OT and ICS security

Protection for industrial networks, where stopping the asset to patch it is not an available option.

06

Continuity and recovery

Isolated backup, restore testing and a recovery plan — the last line when everything else fails.

Industries served

Where this area applies most

Manufacturing

A connected plant floor, with data reaching management without passing through spreadsheets.

Energy & Utilities

Generation, transmission, distribution and sanitation — dispersed assets, high criticality.

Government

Public bodies: defensible technical specification, traceability and compliance.

Financial Services

Branches and operations: continuity, physical security and audit trail.

Healthcare

Care environments: continuous availability and sensitive data under control.

Data Centers

Technical rooms and mission-critical environments: power, cooling, network and monitoring.

Next step

Describe the operation. We come back with the technical questions.