How does the CS2SAT work?
The CS2SAT is a desktop software tool which guides users through a step-by-step question and answer process to collect facility-specific control system information. The questions address topics such as hardware, software, administrative policies, and user obligations. After the user responds to the questions, the tool compares the information provided to relevant security standards and regulations, assesses overall compliance, and provides appropriate recommendations for improving the system’s cyber security posture. The tool pulls its recommendations from a database of the best available cyber security practices, which have been adapted specifically for application to control system networks and components. Where appropriate, recommendations are linked to a set of prioritized actions that can be applied to remediate specific security vulnerabilities. Back to top.