Satcom / Starlink • IT / OT Segmentation • OEM Remote Access • VPN / Jump Host / Zero Trust • MFA • Privileged Accounts • ECDIS / IAS / AMS • USB • Patching • Logging / SOC • Backups • Incident Recovery
Ship Cyber Exposure, Remote Access & OT Risk Tool
Screen the cyber exposure of a connected vessel from ship-to-shore connectivity through remote access and onboard OT. Simple mode produces an exposure score, attack-path view and priority actions from 12 controls. Advanced mode adds a critical-system register, asset-by-asset likelihood/impact scoring, IMO/NIST functional maturity, remote-access blast-radius analysis, recovery readiness and a ranked remediation plan.
↑
Fast vessel cyber-exposure screen: 12 inputs.The score is a prioritization model, not class approval or an IMO/IACS compliance certificate. Select the control state that best describes the vessel today.ExposureInternet-to-OT attack path
Remote accessVendor access & identity controls
ResilienceDetection, response & recovery
Vessel Cyber Snapshot
Network / Remote-Access Architecture
Identity / Vendor / Endpoint Controls
days; planned exceptions may be legitimate but increase exposure if compensating controls are weak.
Detection / Recovery / Governance
Critical IT / OT System Register
Score the systems that matter to safe ship operation. Risk is driven by criticality, safety/operational impact, external reachability, remote-access method, MFA, segmentation, patch age, logging and recovery capability.
| Use | System / asset | Zone | Criticality 1–5 | Primary consequence | Internet reachability | Remote access | MFA | Segmented | Patch age days | Logging | Recovery copy | Vendor access |
|---|
Assessment Checks
Security boundary: this is a prioritization and risk-screening tool. It does not certify compliance with IMO, IACS, class, flag, IEC 62443, ISO/IEC 27001, NIST or a company cyber policy. Do not use the score to justify leaving a known critical remote-access path, default credential, unsafe software state or unrecoverable OT system in service.