Step 3 · After the assessment
24x7 MSP + Metrics and Reports
After the assessment and the remediation plan, the team can stay. A small firewall and sensor go in at the plant, Red Tiger watches those assets 24x7, and you get metrics and reports on the cadence you set. Water treatment plants and lift stations are where most of this work is today. The same service is open to any critical infrastructure site Red Tiger has assessed.

Why a firewall at the plant
Threats move at machine speed. You can't adequately protect systems by hoping that a person can update a static firewall table before the threat reaches the firewall. The state table in a cellular modem is a first-generation firewall. A current-generation firewall updates as the threats move. The team sizes a small 2-port firewall for the plant, put it inside the industrial cabinet when that is the right place, and stay on it.
Metrics and reports go to the people who need them, on the cadence you agree to. The team is still available to come present to the board.
Protection and detection at the plant
The team uses the IoTSecure.io mini for passive capture during the assessment, and then as the protect and detect device for the gaps the assessment found. It stays at the plant and connects back to the Red Tiger MSP so the team can monitor and manage it.
Secure HMI access
The team sets up access to the SCADA HMI without leaving a hole in the plant, with the people who actually run it: operations and the integrator. No device on a Level 0-2 Control Devices LAN should have access to the Internet.
Who it is for
Municipal and small-utility water first: treatment plants, lift stations, and districts that need metrics and reports the board can use. The same service is available on electric and oil and gas sites after the assessment. If the team has not been on the plant yet, start with Step 1.