
Area number 06
Cybersecurity
We structure security across two fronts that must not be conflated: corporate information security, and the security of automation and control systems. Tooling, maintenance windows, downtime tolerance and failure consequences differ across the two — and applying one playbook to both is the root of a large share of industrial incidents.
The problem
IT/OT convergence opened network paths between the office and the plant floor before segmentation, asset inventory or industrial protocol visibility existed. Many environments cannot answer what is connected to the control network, on which firmware, talking to whom.
Business impact
In IT, an incident costs data, service availability and regulatory exposure under Brazil’s LGPD. In OT, it costs a physical process: line stoppage, lost batch, risk to people and assets. Recovery is not restoring a backup — it is revalidating the operation.
The Noryvex approach
We start from inventory and visibility, because you cannot protect what you cannot enumerate. From there: segmentation with a declared operational purpose, least-privilege access control, monitoring appropriate to each domain, and a response plan that assumes the incident will happen. We only recommend what operations can sustain after we leave.
Capabilities
What we do here
Technical scope covered in this area. The exact composition of each project comes from the survey, not from a catalog.
- Next-generation firewall, segmentation and microsegmentation
- Endpoint security, EDR and XDR
- IDS/IPS and industrial network monitoring
- SIEM, event correlation and SOC operations
- Identity and access management (IAM) and privileged access (PAM)
- Zero Trust architecture, VPN and SASE
- OT/ICS security with industrial protocol visibility
- Vulnerability assessment and configuration hardening
- Backup, disaster recovery and business continuity
- Incident response and contingency planning
Technologies
Scope
What's included
Contractable tracks in this area, on their own or combined. Whatever does not fit your operation stays out of scope — and out of the price.
Vulnerability assessment and management
Continuous scanning, prioritization by real exposure and follow-through on remediation — not an annual report.
Perimeter and segmentation
Firewalling, access policy and network separation, with attention to where IT meets the plant floor.
Endpoint protection and response
EDR, application control and containment of what already got in, with logging for later investigation.
Monitoring and incident response
Event collection, correlation, alert handling and a containment procedure agreed before the incident.
OT and ICS security
Protection for industrial networks, where stopping the asset to patch it is not an available option.
Continuity and recovery
Isolated backup, restore testing and a recovery plan — the last line when everything else fails.
Industries served
Where this area applies most
Manufacturing
A connected plant floor, with data reaching management without passing through spreadsheets.
Energy & Utilities
Generation, transmission, distribution and sanitation — dispersed assets, high criticality.
Government
Public bodies: defensible technical specification, traceability and compliance.
Financial Services
Branches and operations: continuity, physical security and audit trail.
Healthcare
Care environments: continuous availability and sensitive data under control.
Data Centers
Technical rooms and mission-critical environments: power, cooling, network and monitoring.
Next step