tag

ics

28 indexed skills · max 10 per page

skills (28)

securing-remote-access-to-ot-environment

mukul975/Anthropic-Cybersecurity-Skills · securing-remote-access-to-ot-environment

0

This skill covers implementing secure remote access to OT/ICS environments for operators, engineers, and vendors while preventing unauthorized access that could compromise industrial operations. It addresses jump server architecture, multi-factor authentication, session recording, privileged access management, vendor remote access controls, and compliance with IEC 62443 and NERC CIP-005 remote access requirements.

implementing-conduit-security-for-ot-remote-access

mukul975/Anthropic-Cybersecurity-Skills · implementing-conduit-security-for-ot-remote-access

0

Implement secure conduit architecture for OT remote access following IEC 62443 zones and conduits model, deploying jump servers, MFA-enabled gateways, session recording, and approval-based workflows to control vendor and engineer access to industrial control systems without exposing OT networks directly.

detecting-modbus-command-injection-attacks

mukul975/Anthropic-Cybersecurity-Skills · detecting-modbus-command-injection-attacks

0

Detect command injection attacks against Modbus TCP/RTU protocol in ICS environments by monitoring for unauthorized write operations, anomalous function codes, malformed frames, and deviations from established communication baselines using ICS-aware IDS and protocol deep packet inspection.

implementing-ot-network-traffic-analysis-with-nozomi

mukul975/Anthropic-Cybersecurity-Skills · implementing-ot-network-traffic-analysis-with-nozomi

0

Deploy Nozomi Networks Guardian sensors for passive OT network traffic analysis to achieve comprehensive asset visibility, real-time threat detection, and vulnerability assessment across industrial control systems without disrupting operations, leveraging behavioral anomaly detection and protocol-aware monitoring.

performing-power-grid-cybersecurity-assessment

mukul975/Anthropic-Cybersecurity-Skills · performing-power-grid-cybersecurity-assessment

0

This skill covers conducting cybersecurity assessments of electric power grid infrastructure including generation facilities, transmission substations, distribution systems, and energy management system (EMS) control centers. It addresses NERC CIP compliance verification, substation automation security, IEC 61850 protocol analysis, synchrophasor (PMU) network security, and the unique threat landscape targeting power grid operations as demonstrated by Industroyer/CrashOverride and related attacks.

performing-ics-asset-discovery-with-claroty

mukul975/Anthropic-Cybersecurity-Skills · performing-ics-asset-discovery-with-claroty

0

Perform comprehensive ICS/OT asset discovery using Claroty xDome platform, leveraging passive monitoring, Claroty Edge active queries, and integration ecosystem to gain full visibility into industrial control system assets including PLCs, RTUs, HMIs, and network infrastructure across Purdue Model levels.

performing-scada-hmi-security-assessment

mukul975/Anthropic-Cybersecurity-Skills · performing-scada-hmi-security-assessment

0

Perform security assessments of SCADA Human-Machine Interface (HMI) systems to identify vulnerabilities in web-based HMIs, thin-client configurations, authentication mechanisms, and communication channels between HMI and PLCs, aligned with IEC 62443 and NIST SP 800-82 guidelines.

implementing-purdue-model-network-segmentation

mukul975/Anthropic-Cybersecurity-Skills · implementing-purdue-model-network-segmentation

0

Implement network segmentation based on the Purdue Enterprise Reference Architecture (PERA) model to separate industrial control system networks into hierarchical security zones from Level 0 physical process through Level 5 enterprise, enforcing strict traffic control between OT and IT domains.

performing-plc-firmware-security-analysis

mukul975/Anthropic-Cybersecurity-Skills · performing-plc-firmware-security-analysis

0

This skill covers analyzing Programmable Logic Controller (PLC) firmware for security vulnerabilities including hardcoded credentials, insecure update mechanisms, backdoor functions, memory corruption flaws, and undocumented debug interfaces. It addresses firmware extraction from common PLC platforms (Siemens S7, Allen-Bradley, Schneider Modicon), static analysis of firmware images, dynamic analysis in emulated environments, and comparison against known-good baselines to detect tampering.

detecting-anomalies-in-industrial-control-systems

mukul975/Anthropic-Cybersecurity-Skills · detecting-anomalies-in-industrial-control-systems

0

This skill covers deploying anomaly detection systems for industrial control environments using machine learning models trained on OT network baselines, physics-based process models, and behavioral analysis of industrial protocol communications. It addresses building normal behavior profiles for SCADA polling patterns, detecting deviations in Modbus/DNP3/OPC UA traffic, identifying rogue devices, and correlating network anomalies with physical process data from historians.

prevpage 1 / 3next