Lion | OT Threat Detection with Claroty

 

Industry: Beverage Manufacturing


Project Overview:

To proactively identify and respond to threats within Lion’s OT environment, Sydco deployed Claroty’s Continuous Threat Detection (CTD) platform. This initiative aimed to bridge the visibility gap between IT and OT and enable real-time threat monitoring.

Challenges:

  • OT systems lacked native logging and monitoring capabilities.
  • Existing controls focused on IT vulnerabilities, the security team had had limited insight into OT-specific protocols, behaviours and threats.
  • There was no centralized platform to detect or correlate OT anomalies.

 

Solution:

Claroty was integrated into the OT network to provide deep packet inspection and behavioral analytics. The platform was configured to monitor industrial protocols, detect deviations from normal operations, and alert the SOC to potential threats. Integration with the existing SIEM allowed for unified threat visibility.

 

Results:

  • Lions security team gained a comprehensive view of OT assets and their communications.
  • Anomalous behaviour, such as unauthorized PLC access or unusual protocol usage, could be detected in real time.
  • The organization was better equipped to respond to threats before they impacted operations.

All Posts