Our cyber security operations program

In our cyber security operations program, we develop and share knowledge on security operations and the monitoring of grid control systems. The program is aimed at SOC and CSIRT analysts and their managers or team leaders.

Over the years, we have covered topics such as:

  • Use cases for monitoring operational technology systems
  • Sensors and technologies for monitoring operational technology systems
  • Vulnerability management
  • Incident response for operational technology systems

Discover our goals for this year’s program and the results of past years below.

SOC Organization

The SOC (Security Operations Center) plays a crucial role in protecting the digital assets of an organization. A well organized SOC reduces the response time to potential cyberthreats. ENCS provides suggestions and requirements for this matter.

WP-093-2025: Risk-based use cases for OT [DRAFT]

read more

WP-091-2025: Analysing APTs with MITRE tools [DRAFT]

read more

WP-070-2025: OT SOC charter template based on the SOC-CMM

read more

OT IDS testing — 2024/2025

ENCS provides members test results in OT security monitoring solutions. In 2024/2025, ten vendor solutions were tested with updated test cases.

WP-084-2025: Overview test results for OT intrusion detection systems 2025

read more

WP-083-2025: Forescout test results

read more

WP-082-2025: Claroty test results

read more

OT IDS testing — 2021

ENCS provides members test results in OT security monitoring solutions. In 2021, five vendor solutions were tested in an identical environment to evaluate the detection performance and usability.

WP-033-2020: Test results for OT security sensors monitoring inside substations

read more

WP-045-2021: Cisco Cyber Vision test results

read more

WP-046-2021: Forescout SilentDefense test results

read more

Programs per year

Related news

Related events