Regional Intermodal Port and Freight Terminal — High Third-Party Access Environment

The Environment A mid-sized intermodal port and freight terminal processes container shipping, bulk cargo, and road-rail transfers around the clock. The operational environment is complex and deeply networked: a terminal operating system (TOS) coordinates berth scheduling, crane operations, and gate management; CCTV and access control systems monitor the physical perimeter; GPS and AIS feeds track […]

Municipal Water and Wastewater Authority — IT/OT Converged Environment

The Environment A municipal authority responsible for water treatment, distribution, and wastewater processing operates a converged IT/OT environment that has evolved organically over decades. Modern administrative workstations and cloud-connected reporting tools sit alongside aging SCADA systems and programmable logic controllers (PLCs) that were never designed with network security in mind. Operational continuity is a public […]

Regional Diagnostic and Primary Care Network — Mixed Clinical and Administrative Environment

The Environment A privately operated network of primary care clinics and diagnostic imaging centres serves a large regional population across several community locations. Each site runs a combination of clinical workstations accessing a shared electronic health records (EHR) platform, diagnostic imaging equipment (MRI, CT, ultrasound units) connected to a PACS server over the internal network, […]

Regional IT Services Provider — 12 Endpoints, Multiple Municipal and SMB Clients

The Environment A small but well-regarded IT services company provides managed IT support to a cluster of local organizations: two public school boards, a municipal library system, a regional recreation centre, and a handful of local small businesses. The firm handles helpdesk support, network administration, patch management, and remote monitoring for all of them — […]

Deployed Military Medical Facility — Disconnected, Austere Operations

The Environment A forward surgical team operates from a deployable field facility providing trauma surgery and critical care in a contested operational area. The digital infrastructure is tactical in design and ruggedized for field conditions: a satellite communications terminal providing a narrow-bandwidth uplink that operates only during scheduled windows and is subject to denial by […]

Federally Funded Research Facility — Air-Gapped and Campus-Connected Segments

The Environment A federally funded research laboratory conducts sensitive dual-use research with national security implications. The network architecture is segmented by design: a campus-connected segment for researcher laptops and collaboration tools, and an air-gapped research workstation cluster for sensitive data and instrumentation, with a controlled data transfer mechanism between them. Specialized lab instruments — oscilloscopes, […]

Multi-Site Precision Manufacturer — Three Facilities, Sensitive Intellectual Property

The Environment A precision components manufacturer operates across three geographically distributed sites: a headquarters and engineering office, a machining facility, and a quality assurance lab, each connected by a private WAN. The engineering office hosts high-value intellectual property — proprietary component designs representing years of R&D investment. The machining floor uses CNC controllers running embedded […]

Large-Scale Automated Fulfillment Operation — ~200 Robots, Mixed IT/OT Environment

The Environment A high-throughput fulfillment centre operates a large fleet of autonomous mobile robots (AMRs), fixed robotic picking arms, and conveyor control systems alongside conventional warehouse management software (WMS). The environment is a hybrid IT/OT network: standard server infrastructure for back-office and WMS functions, and a separate operational technology network where robots communicate with a […]

National Law Firm — ~340 Endpoints, Multiple Office Locations

The Environment A national law firm operates from a central headquarters and several regional offices, all connected by a private WAN. Their environment is a textbook professional services setup: standard Windows workstations, a mix of on-premises document management servers and cloud productivity services, a modern managed network stack, and an existing EDR solution deployed across […]