OT/ICS-targeted malware
Industroyer, TRITON and INDUSTROYER2-class capabilities demonstrated by state-aligned actors against adjacent geographies.
SOCI Act-aligned OT/ICS cybersecurity for energy, water, telecommunications, transport and data-storage operators.
Under the SOCI Act, responsible entities across 11 critical infrastructure sectors carry legislated cyber security obligations: Risk Management Programs, enhanced reporting and, for Systems of National Significance, mandatory engagement with the ACSC. Vectra designs and operates cyber programs that bridge IT and OT without changing how plant works. Our OT monitoring is passive by default, our SOC is sovereign, and our methodology aligns to the CIRMP Rules, the NIST CSF and IEC 62443.
Industroyer, TRITON and INDUSTROYER2-class capabilities demonstrated by state-aligned actors against adjacent geographies.
Ransomware pivoting from corporate AD into historian, engineering workstations and DMZ-exposed HMIs.
OEM and integrator remote-support channels used as persistent backdoors into Purdue Level 2 and below.
Targeted theft of operational data protected under the SOCI Act, including network diagrams and SCADA configs.
IT + OT telemetry correlated by analysts who understand Purdue models.
Safe, passive-first testing of SCADA, HMI and historian layers.
Dual-framework uplift that maps both IT and OT controls.
SoNS-grade response with ACSC notification support.
Fractional leadership that can speak to both engineering and executive.
IT-to-OT traversal testing under strict safety boundaries.
No. OT monitoring defaults to passive SPAN/TAP-based collection. Any active scanning requires written engineering approval, a tested maintenance window and a rollback plan.
Yes. Our assessment templates run Essential Eight and IEC 62443 in parallel so the IT and OT control uplift tracks on one plan, not two.
Yes. We run the AESCSF assessment and produce the MIL-level evidence pack that energy market participants submit annually to AEMO.
We run the extended SoNS cyber-security obligations engagement, covering enhanced reporting, information-gathering directions and ACSC engagement, and we pre-populate templates for Home Affairs submissions.