Automates the discovery and inventory of Industrial Control System (ICS) and Operational Technology (OT) assets using the Claroty xDome platform.
This skill provides specialized automation for gaining deep visibility into industrial environments by leveraging the Claroty xDome API and Claroty Edge. It enables security engineers to map assets across all Purdue Model levels—from Level 0 sensors to Level 5 enterprise networks—using a combination of passive monitoring and safe, protocol-aware active queries. The skill automates the generation of detailed inventory reports, Purdue Model distribution analysis, and vulnerability enrichment, making it an essential tool for IEC 62443 compliance, risk assessments, and identifying shadow OT devices in complex brownfield environments.
Características Principales
01Automated ICS/OT asset extraction via Claroty xDome API
02Configuration templates for safe, protocol-aware active discovery
03Purdue Model distribution reporting for industrial network mapping
04CSV inventory export for compliance and risk assessment documentation
05Critical vulnerability correlation for discovered industrial assets
060 GitHub stars
Casos de Uso
01Establishing a baseline asset inventory for brownfield OT environments
02Detecting unauthorized shadow OT devices and network communication anomalies
03Conducting IEC 62443 compliance audits and industrial risk assessments