Threat Hunting
OT Adjacency: ICS Telemetry Crossover
Read low-volume OT-adjacent telemetry alongside IT alerts to spot maintenance windows masquerading as incidents.
KRW 1,180,000 informational only
Description
A manufacturing partner narrative blends sparse ICS-adjacent signals with IT VPN logs. Analysts practice conservative language for plant safety contexts, document unknowns, and rehearse handoffs to operations technology partners without claiming unsafe certainty.
Features
- Sparse telemetry visualization aids
- Maintenance calendar overlays
- Safety-first language crib sheet
- Joint escalation timeline template
- Vendor-neutral protocol decoder references
- Optional site walkthrough video (CG, not real site)
- Reflection on measurement noise vs true anomalies
Outcomes
- Differentiate maintenance from compromise indicators
- Produce OT-safe language for shift supervisors
- List IT correlations that remain inconclusive