Keeping the Lights On!

Delivering OT Security Lifecycle Services across Australia and the European Union since 2019 – defending the control systems that run the plant, not just the IT network that sits above it.

OT Security

Lifecycle services since 2019

We work to the requirements of

ISA/IEC 62443, NIST Standards and ISO/SAE 21434

Early Lifecycle Services

Since 2019

In Australia / European Union

To Process / Rail / Automotive sectors

Integrated Safety + Security Risk Assessments

Hazardous events occurring in critical infrastructure could lead to severe consequences including injuries and fatalities, if protection systems fail.

The consequences are the same regardless of whether the initiating event is Safety-related or Security-related.

Currently, there is no unified approach to Safety and Security Risk Assessments. They are generally handled individually by separate teams in isolation. Moreover, Safety Risk Assessments are predominantly quantitative whereas Security Risk Assessments tend to remain qualitative.

Shakti Corp promotes integrating Safety and Security in Quantitative Risk Assessments (QRA) based on the LOPA methodology prevalent in Functional Safety studies. 

We have introduced the CSE – Consolidated Security Enhancer which combines the attributes of CVSS, EPSS and KEV. The integrated QRA uses the standard metrics PFD and PFH for Functional Safety complemented with the CSE for Security / Vulnerability.

The Cybersecurity Requirements Specification that we deliver is twofold: an Architecture-centric part based on IEC 62443 and a Control-centric part based on the results from the QRA.

If you are not secure, you are not safe!