OT DEFENSEREVIEW

Intelligence for systems that move the physical world.

Capability record

Network Segmentation Policy Modeling

Network Segmentation Policy Modeling is treated as a decision-bearing workflow, not a checkbox. The maintained record connects documented organization positioning to authority context, operating domains, buyer questions, and evidence limitations.

Define the operating boundary

A useful definition names the triggering event, required inputs, governing source, accountable owner, decision or action, exception path, evidence retained, and downstream handoff. Buyers should adapt those elements to their own population, jurisdictions, policies, systems, and control model before writing requirements.

The most important distinction is between a label and an operational capability. A provider may document network segmentation policy modeling while depending on customer-supplied policy, licensed content, third-party data, integration partners, manual review, or services. The demonstration should expose those dependencies rather than hiding them behind a completed interface.

What a demonstration should prove

  1. Begin with representative source records and a named policy, standard, or controlled rule.
  2. Show the normal path, an ambiguous case, missing data, an exception, an override, and a material source change.
  3. Identify who can change rules, who can approve or reject, and how accountability is preserved.
  4. Trace every output back to inputs, versions, timestamps, user actions, and governing evidence.
  5. Export the resulting record and reconcile it with downstream systems and retained obligations.

Authority and operating context

IEC PAS 62443-2-2:2025

The specification provides guidance for developing, validating, operating, and maintaining a set of technical, physical, and process security measures for IACS facilities. It focuses the buyer on a maintained protection scheme rather than an isolated product or control purchase.

ISA/IEC 62443-3-2

Part 3-2 addresses system-level risk assessment and the use of zones, conduits, and target security levels in IACS design. It provides the central architecture language for comparing discovery, segmentation modeling, enforcement, remote access, and controlled-transfer products.

TSA Pipeline-2021-02F

The directive continued performance-based requirements covering cyber risk assessment, plans, architecture, access, monitoring, incident response, testing, and related evidence for notified pipeline operators. The expired date and separate proposed-rule path make status verification essential; vendor pages must not present an old mapping as proof of current obligation or compliance.

Operating domains

Network architecture, segmentation, and conduits

The design and maintained evidence for security zones, conduits, trust boundaries, routable paths, industrial DMZs, enforcement points, fail states, and allowed communication supporting physical operations.

Safety, reliability, and engineering coordination

The decision boundary connecting cyber defense with process safety, functional safety, reliability, operations, maintenance, engineering change, and physical consequence.

Evidence and comparison limits

Official provider documentation can establish product positioning. Provider confirmation can clarify package or availability. Independent observation requires a disclosed scenario, environment, date, inputs, and reproducible result. None of those sources alone establishes buyer-specific legal, clinical, regulatory, quality, or operational fitness.

Buyer questions

  • What exact outcome and evidence should network segmentation policy modeling produce?
  • Which source, version, and customer facts govern the workflow?
  • Which decisions remain human and who is accountable for them?
  • What is native, configured, integrated, service-delivered, or planned?
  • How does a changed source affect open and historical records?

Recent changes

IEC publishes PAS 62443-2-2:2025 — Asset owners should evaluate technology as part of a maintained technical, physical, and process protection scheme.