Skip to main content
ToolLicensePlatformsPricingAction
ClarotyProprietaryWebCommercialProfile
DragosProprietaryWeb, HardwareCommercialProfile
ForescoutProprietaryWebCommercialProfile
Honeywell Cyber InsightsProprietaryWebCommercialProfile
MarlinSpikeAGPL-3.0-or-laterLinux, WindowsOpen SourceProfile
Nozomi NetworksProprietaryWeb, HardwareCommercialProfile

Software in OT/ICS Security Tools

Claroty

Commercial

CPS protection platform spanning OT, IoT, and medical devices with monitoring, access, and exposure modules.

LicenseProprietary
PlatformWeb

Dragos

Commercial

OT cybersecurity platform for asset visibility, vulnerability prioritization, and ICS threat detection.

LicenseProprietary
PlatformWeb, Hardware

Forescout

Commercial

IT, OT, and IoT visibility and control platform with agentless OT monitoring and device compliance.

LicenseProprietary
PlatformWeb

Continuous OT network monitoring platform, formerly the SCADAfence product line.

LicenseProprietary
PlatformWeb

MarlinSpike

Open Source

Open source passive OT/ICS network analysis and topology mapping, positioned as a GRASSMARLIN replacement.

LicenseAGPL-3.0-or-later
PlatformLinux, Windows

Nozomi Networks

Commercial

OT and IoT visibility platform with AI-driven anomaly detection across industrial networks.

LicenseProprietary
PlatformWeb, Hardware

Frequently Asked Questions

What is OT/ICS Security Tools?

OT and ICS security tools passively monitor industrial protocols, inventory control-system assets, and flag anomalies in environments where active scanning can disrupt physical processes.

What topics does the OT/ICS Security Tools category cover?

ICS Protocol Analysis, OT Asset Inventory, Passive Industrial Monitoring, PLC/SCADA Security, OT Vulnerability Management

About OT/ICS Security Tools

OT and ICS security tools protect the systems that run factories, utilities, pipelines, and building controls. The category covers passive network monitoring platforms that watch industrial protocols such as Modbus, DNP3, S7, and EtherNet/IP without injecting traffic, since an active scan can crash a PLC or interrupt a process. Asset inventory builds from that passive observation, listing controllers, engineering workstations, and firmware versions that no agent can be installed on. Vulnerability assessment and configuration review tools compare those findings against known issues and standards such as IEC 62443. Specialized fuzzers exercise protocol implementations in a lab before deployment, and evaluation tools guide a structured self-assessment of overall posture. Most platform vendors in this category are commercial, because protocol parsing libraries for industrial equipment are expensive to build and maintain. Open source coverage includes passive analysis and topology mapping tools and protocol fuzzers. The category overlaps with network monitoring for capture and with vulnerability scanning for prioritization, but the safety constraint distinguishes it from both.

Covered Topics & Disciplines

ICS Protocol AnalysisOT Asset InventoryPassive Industrial MonitoringPLC/SCADA SecurityOT Vulnerability Management