▶ Demo
← All Learning Studios
🛡️
Engineering Learning Studio

Cybersecurity & OT Security Studio

A learning environment for defending both information systems and the operational technology that runs physical infrastructure. Covers the CIA triad and defense-in-depth, the NIST Cybersecurity Framework and IEC 62443, network segmentation, identity & access management, zero trust, the SOC and incident response — from IT security through to OT/ICS.

Built for security engineers, network and controls engineers, SOC analysts, and IT/OT professionals working across enterprise, industrial, and critical-infrastructure environments.

NIST CSFIEC 62443Zero TrustIAMOT/ICSSOCIncident ResponseCISSPSecurity+
Start here
Studio Overview
What's covered in the Cybersecurity & OT Security Studio and how to use it
Explore
Interactive System Map
Click through the full system architecture, live

Cybersecurity & OT Security Tools

7

Interactive security tools — assess your NIST CSF maturity, audit firewall rulesets, and design secure OT/IT network architectures.

NIST CSF 2.0 Assessment ToolLIVE

Rate your organization's cybersecurity maturity across all 6 NIST CSF 2.0 functions (Govern, Identify, Protect, Detect, Respond, Recover). Live radar chart, per-function scores, gap analysis, maturity tier badge, and exportable report.

NIST CSF 2.0Maturity AssessmentGap AnalysisTier 1–4
Open →
Firewall Rule AnalyzerLIVE

Build a firewall ACL and detect conflicts, shadowed rules (rules that will never fire), overly permissive ANY→ANY entries, and missing default-deny. Works with any firewall policy — Cisco, pfSense, FortiGate, and OT firewalls.

ACL AnalysisShadowed RulesPolicy AuditIEC 62443
Open →
Industrial Network Architecture DesignerLIVE

Design OT/ICS network segmentation with the Purdue model and IEC 62443 zones & conduits — managed switch placement, VLAN/firewall boundaries, an Industrial DMZ and data diode, and a bill of materials.

Purdue ModelIEC 62443Zones & Conduits
Open →
Enterprise Network & Security DesignerLIVE

Plan an enterprise network with a security framework — segmentation, firewalls, and a starting-point compliance checklist referencing NIST CSF, PCI-DSS, and SOC 2.

Network SecuritySegmentationNIST CSF
Open →
Subnet CalculatorLIVE

Plan IP subnets and VLAN boundaries — the groundwork for network segmentation, one of the most effective defensive controls.

SubnettingVLANSegmentation
Open →
Network Redundancy DesignerLIVE

Design redundant, resilient network topologies that protect availability — the priority security goal in OT environments — against link failures and disruption.

RedundancyAvailabilityResilience
Open →
CVSS v3.1 Base Score CalculatorLIVE

Select the 8 CVSS v3.1 base metrics and get the exact base score, severity rating, and vector string, computed with the official FIRST.org formula.

CVSSCVESeverity Scoring
Open →

3D Web Apps

2
📜

Cybersecurity Certification Prep

10/10 Live
LIVE
Exam Prep Overview — Cybersecurity & OT Security

Cybersecurity is a certification-driven field. This overview maps the credentials that matter across the career — vendor-neutral foundations (CompTIA), senior management certs (ISC2, ISACA), offensive/ethical-hacking certs, and the OT/ICS-specific certifications (ISA/IEC 62443) — what each covers, who runs it, and how they ladder.

OverviewRequirementsExam Strategies
LIVE
CompTIA Security+ — Practice Exam

CompTIA Security+ prep: threats & vulnerabilities, cryptography, IAM, secure architecture, operations, and GRC — the field’s standard entry cert.

CompTIAFoundationSecurity+
LIVE
CompTIA CySA+ — Practice Exam

CompTIA CySA+ prep: behavioral analytics, SOC operations, vulnerability management, threat intel, and incident response.

CompTIASOC / Blue TeamAnalyst
LIVE
CompTIA PenTest+ — Practice Exam

CompTIA PenTest+ prep: scoping, recon, vulnerability scanning, exploitation, and professional reporting for penetration testers.

CompTIAOffensivePen Testing
LIVE
CISSP (Certified Information Systems Security Professional) — Practice Exam

CISSP prep: the eight (ISC)² domains — risk management, security architecture, network security, IAM, security operations and more.

(ISC)²CISSPSenior
LIVE
CISM (Certified Information Security Manager) — Practice Exam

CISM prep: governance, risk management, building and running a security program, and incident management — for security managers.

ISACACISMManagement
LIVE
CISA (Certified Information Systems Auditor) — Practice Exam

CISA prep: IS auditing, IT governance, systems acquisition, operations/resilience, and protecting information assets.

ISACACISAAudit
LIVE
OSCP (Offensive Security Certified Professional) — Practice Exam

OSCP prep: the legendary 24-hour hands-on exam — enumeration, exploitation, privilege escalation, AD attacks, and reporting.

OffSecHands-onRed Team
LIVE
CEH (Certified Ethical Hacker) — Practice Exam

CEH prep: the ethical-hacking attack lifecycle — recon, scanning, exploitation, web/wireless attacks, and malware concepts.

EC-CouncilEthical HackingOffensive
LIVE
ISA/IEC 62443 Cybersecurity Certificates — Practice Exam

ISA/IEC 62443 certificate prep: the OT-security standard itself — zones & conduits, security levels, and risk assessment.

ISAIEC 62443OT Standard

Knowledge Articles

19
🛡️Cybersecurity Fundamentals: The CIA Triad, Threats & Defense-in-Depth
10 min
📋The NIST Cybersecurity Framework (CSF 2.0): A Practical Guide
10 min
🏭IEC 62443: Securing Industrial Automation & Control Systems (OT)
10 min
🔑Identity & Access Management (IAM): MFA, RBAC & Least Privilege
10 min
🚨Incident Response & the SOC: Detecting, Containing & Recovering from Attacks
10 min
🔧OT Cybersecurity for Industrial Control Systems: Fundamentals
9 min
🔒BMS and OT Cybersecurity: Protecting Building Automation Systems
9 min
🏭ICS/OT System Hardening: Defense-in-Depth for Operational Technology
12 min
🔒OT Network Segmentation and the Purdue Model
11 min
🔍Vulnerability Management for Engineers: CVE, CVSS, and Patch Lifecycle
10 min
📊SIEM and SOC Operations for OT/IT Environments
11 min
🚫Zero Trust Architecture: Principles, Pillars, and OT Challenges
10 min
⛓️Software and Hardware Supply Chain Security: SBOM, S-SDLC, and SLSA
12 min
⚔️Penetration Testing Industrial and OT Systems
11 min
🚨OT/ICS Incident Response and Recovery
13 min
📋NIST SP 800-53 Security Controls Explained: A Practical Guide for Compliance Teams
12 min
🔒Network Segmentation: What It Is, Why It Matters, and How to Implement It
11 min
🛡️Zero Trust Network Security Explained: Architecture, Principles, and Implementation
14 min
🏭OT vs IT Security: Understanding the Difference for Industrial Environments
10 min

Downloads

1
🔒
Industrial Cybersecurity Reference
12 sections · Interactive Reader

Interactive 12-section cybersecurity reference covering NIST CSF 2.0, IEC 62443, CIA triad for OT/ICS, network security, identity management, cryptography, vulnerability management, incident response, and NERC CIP compliance.

NIST CSF 2.0IEC 62443OT SecurityNERC CIP
Open Reader →