What problem does it solve?
Legacy OT/ICS security frameworks like NIST 800-82r3 and IEC 62443-3-3 were designed for pre-AI, air-gapped industrial environments and fail to address mid-2026 threats including AI-augmented HMI attacks, IT/OT convergence risks, and state-sponsored actor TTPs. This skill eliminates the gap between outdated compliance requirements and real-world OT threat reality by providing a structured, actionable assessment methodology tailored to modern industrial control environments.
Core Features & Use Cases
- Purdue Model Asset Inventory: Systematically catalog OT assets across all Purdue layers (L0-L4) with OS, firmware, and patch posture tracking.
- IEC 62443 Security Level Scoring: Map each OT zone to target and actual security levels, identify gaps across foundational requirements, and align findings with regulatory controls.
- AI-HMI and IT/OT Convergence Risk Audit: Explicitly assess AI assistant integrations, vendor remote access paths, and IT/OT bridge surfaces omitted from traditional OT security assessments.
- Cross-Jurisdiction Compliance Mapping: Reconcile findings against global regulatory frameworks including NERC CIP, NIS2, UK CAF, AU SOCI, and ISO 27001 for multinational critical infrastructure operators.
- Use Case: A water utility operator can use this skill to produce a complete OT security posture assessment that identifies unpatched HMI hosts running end-of-life operating systems, unmapped vendor remote access paths, and shadow AI integrations used by control room staff that would fail a NIS2 or NERC CIP audit.
Quick Start
Use the ot-ics-security skill to conduct a full OT/ICS security posture assessment for your industrial control environment, including Purdue layer asset inventory, IEC 62443 security level scoring, and AI-HMI risk evaluation.