Mitigation Plan
Generated from proven attack paths, live agent telemetry and open regulatory gaps — ranked by risk removed per unit of effort.
Selected actions
6
Projected risk reduction
92%
Assets protected
307
Risk reduction per action
Recommended actions
| Action | Derived from | Owner | Effort | Priority | Risk − | ||
|---|---|---|---|---|---|---|---|
Segment camera/NVR VLAN and block east-west RTSP MIT-01 · 56 assets | Attack Simulation | Network Ops | Medium | P1 | 34% | ||
Firmware campaign for weaponized ONVIF CVE MIT-02 · 34 assets | Agent Telemetry | Facilities IT | High | P1 | 28% | ||
Deploy OT-aware IPS at Plant North uplink MIT-03 · 210 assets | Attack Simulation | Security Eng | High | P2 | 21% | ||
Rotate default credentials on IoMT fleet MIT-04 · 7 assets | Compliance Gap | Biomed | Low | P1 | 17% | ||
Forward OT syslog to SIEM with ICS parsers MIT-05 · 0 assets | Compliance Gap | SOC | Medium | P2 | 12% | ||
Quarantine policy automation via NAC MIT-06 · 0 assets | Agent Telemetry | Network Ops | Medium | P3 | 9% |