/ Part of Surya Fabric

OT and cyber-physical systems.

Physical operations run equipment that predates modern security assumptions. Surya delivers visibility and security for that layer as part of the product, inside a stated boundary.

OT and CPS security is part of Surya Fabric. Enforcing separation requires Surya to operate the network, which is Surya Fabric.

Check Fit →

/ What is included

  • Asset visibility for operational and cyber-physical systems, delivered with Claroty
  • Network segmentation between the business environment and the operational environment
  • Monitoring of the segmentation boundary and the paths permitted across it
  • A defined recovery procedure for the supported network components on either side
  • Evidence of what is connected, what changed and what was denied

/ Where Surya sits.

Surya is a Claroty partner.

Surya is a Claroty partner. Claroty supplies the operational and cyber-physical systems platform. Surya designs the segmentation boundary, deploys and integrates the platform, and operates the result under Surya Control as part of Surya Fabric.

Enterprise IT, identity and cloud
Surya Control
Surya Fabric
IT and OT segmentation boundary
Claroty: visibility, exposure context and secure access where supported
OT and cyber-physical systems
The physical operation

Asset visibility

An inventory of operational and cyber-physical assets, how they communicate and what they depend on.

Exposure context

Which exposures matter given how the asset is actually used in the operation, rather than an undifferentiated vulnerability list.

Secure remote access

Controlled, recorded vendor and engineer access to operational systems where the environment supports it.

Operational telemetry

Continuous signal from the operational environment that feeds Surya Control's observation and evidence.

What Surya is accountable for, and what it is not.

Surya is accountable for the segmentation boundary, the paths permitted across it, the supported network components, the deployment and operation of the OT security platform, and the evidence of all of it.

Surya is not accountable for the behavior, programming, tuning, throughput or safety systems of production equipment. Those remain with the customer and its equipment vendors and engineers.

The boundary, stated plainly.

Surya does not perform PLC programming, ladder logic, process engineering, controls engineering, production engineering or machinery optimization, and does not take responsibility for production equipment or its safety systems. Claroty licensing is a customer requirement where the OT capability is in scope.

See how OT security sits inside Surya Fabric →

/ Visibility only

Without Surya Fabric.

OT and CPS security can be bought as a visibility scope on a network Surya does not operate: sensors placed at agreed points, asset inventory of the controllers and equipment found, vulnerability matching, anomaly detection, and the evidence that comes out of it. Enforcement is not included. Separation cannot be promised on equipment Surya does not configure, and if the network changes underneath the sensors the coverage changes with it, so the coverage state is reported rather than assumed. Enforcing the boundary is Surya Fabric.

/ Contribution to both outcomes

Resilience

Within Surya Fabric, OT and CPS visibility helps the site understand what is connected before a change or recovery.

Security

Enforcement applies to the network Surya operates; a visibility-only scope shows connections without enforcing segmentation.

OT and CPS security remains part of Surya Fabric. Production processes, machinery and control logic stay with their owners.

The common evidence and Vanta reporting workflow →