Skip to content

OT Cyber Studio

Beta

OT cybersecurity risk assessment and network architecture software

Develop OT network architectures, assess cybersecurity risks and establish security requirements within a structured engineering workflow.

Keep assets, zones, conduits, risk scenarios and engineering decisions connected within the same project.

Explore the beta (opens in a new tab)
OT Cyber Studio architecture editor showing the fictional Riverside PLC and HMI system

Architecture editor · fictional demonstration project

Built for OT engineering work

For OT cybersecurity consultants, control and automation engineers, systems integrators, industrial asset owners and engineering organisations conducting IEC 62443-based assessments.

Architecture and risk assessment in one application

OT cybersecurity assessments often rely on separate network drawings, asset registers, risk spreadsheets and supporting documents. Keeping those records aligned takes time and makes changes harder to review.

OT Cyber Studio brings these activities into one project, making the relationships between architecture, risk scenarios and requirements easier to record and review. Explicit links retain the engineering context behind each decision.

Connected engineering records

Product capabilities

01

OT Network Architecture

Develop the network drawing alongside the assessment records.

  • Interactive architecture editor
  • Purdue levels
  • Security zones and conduits
  • Industrial components
  • Communication flows
  • Engineering drawing exports

02

Cybersecurity Risk Assessment

Record the system context, scenarios and basis for your evaluations.

  • System under consideration
  • Asset inventory and dependencies
  • Initial and detailed risk scenarios
  • Threats and vulnerabilities
  • Consequence and risk evaluations
  • Project-defined assessment methodology

03

Security Engineering

Connect assessed risks to proposed treatments and requirements.

  • Seven-element target security levels (SL-T)
  • Proposed security controls and treatments
  • Residual risk documentation
  • Security requirements
  • Links between engineering records

04

Reporting and Traceability

Prepare draft deliverables from the recorded project inputs.

  • Structured draft assessment reports
  • Risk and requirements registers
  • Architecture exports
  • Supporting CSV and JSON records
  • Review and completeness information

A structured engineering workflow

You supply the system information, evidence, risk judgements, security targets and proposed measures. The application organises linked records, checks input completeness and generates draft exports. It does not infer an asset inventory from a drawing or approve engineering decisions.

  1. 01Define the system under consideration.
  2. 02Identify assets and dependencies.
  3. 03Record initial cybersecurity risks.
  4. 04Develop security zones, conduits and architecture.
  5. 05Assess detailed risk scenarios.
  6. 06Establish security targets and proposed controls.
  7. 07Define security requirements.
  8. 08Review and export draft assessment deliverables.

Inside OT Cyber Studio

Three views of the same fictional Riverside engineering project. These are application captures; the example is a draft, not an approved assessment.

01

Network architecture editor

Network architecture editor for the fictional Riverside engineering project
A PLC and HMI drawing in the fictional Riverside project. Drawing objects and assessment records are linked explicitly.
02

Cybersecurity risk assessment

Cybersecurity risk assessment for the fictional Riverside engineering project
Record threats, vulnerabilities, consequences and the rationale for each scenario. Unknown inputs remain visible.
03

Draft assessment report

Draft assessment report for the fictional Riverside engineering project
Preview the captured engineering record before exporting draft assessment deliverables for review.

Informed by IEC 62443

The application supports structured engineering workflows informed by IEC 62443, including risk assessment, security zones, conduits and security requirements. Assessors record the standard edition and project methodology used.

OT Cyber Studio is not IEC 62443-certified and does not automatically produce compliant assessments. Draft reports, recorded reviews and completeness checks require competent engineering judgement, supporting evidence and the appropriate approval process.

Demonstration and early access

See OT Cyber Studio in use

See how the application supports an OT cybersecurity assessment, from defining the system and network architecture to documenting risks and preparing draft engineering deliverables.

Early access registers your interest in beta testing. We will respond about availability and your intended use. Enquiries do not subscribe you to marketing emails.

Product enquiry

Name, work email and enquiry type are required. Other details are optional.

Please do not submit passwords, drawings, network information, confidential material, commercially sensitive information, personal data about other people or security-sensitive project information through this form.