02 / OT CYBERSECURITY

Cybersecurity for the connected port.

Prepare a facility-specific cybersecurity assessment and plan framework for your maritime operation. SSX360 reviews the agreed IT and OT boundary and organizes findings, response responsibilities, and signed evidence for the facility team.

What your team receives
ENGAGEMENT TYPE
Scoped service
PLANNING CONTEXT
MTSA / USCG CYBERSECURITY PLAN
REVIEW OUTPUT
Assessment + signed evidence

What we review

Examine terminal and facility systems, remote maintenance paths, access-control interfaces, and communications dependencies within the agreed boundary. For Hawaii, Guam, and other Pacific facilities, include location, access, and assessment logistics in the first briefing.

What your team receives

Select the deliverables around your facility, review objective, and available records. Scope and acceptance criteria are agreed before work begins.

Cybersecurity Assessment record

A facility-specific record of the reviewed systems, access paths, findings, and gaps to support plan development.

Cybersecurity Plan framework

A working plan structure connecting assessment findings, assigned responsibilities, response procedures, and review actions for the facility’s approval process.

Signed maritime evidence package

Agreed assessment and exercise records organized for review, with signed exports and a controlled handoff to the facility team.

ML-DSA-87 / MATRIX SCROLL / SCROLL CONSOLE

Evidence your reviewers can inspect

Matrix Scroll signs records with ML-DSA-87. Scroll Console organizes imported evidence, supports comparison with retained sources, and prepares controlled handoffs. These are private SSX360 tools used within an agreed engagement.

Explore the evidence workflow

Regulatory context

SOURCE REVIEW / OCT 09, 2026

USCG / July 16, 2027

The Coast Guard’s published timeline requires covered owners and operators to designate a Cybersecurity Officer, conduct the Cybersecurity Assessment, and submit the Cybersecurity Plan for approval by July 16, 2027.

Read the official source

Assessment before plan development

USCG guidance places the assessment before plan development and calls for recurring reviews. Confirm the current facility requirements and approved arrangements before defining the engagement.

Read the official source

Questions before you scope the work

Does SSX360 approve a USCG Cybersecurity Plan?

SSX360 supports assessment and document preparation. The owner or operator submits the plan through the applicable Coast Guard process; approval remains with the Coast Guard.

Can PSGP funding support the work?

Discuss the proposed scope with your grants and procurement team against the specific Port Security Grant Program award and current guidance. An award or a published service page does not establish eligibility for a particular purchase.

Start with the facility and the decision.

Share the facility type, general systems in scope, review objective, and target date. Keep network diagrams, credentials, CUI, and other sensitive records out of the first inquiry.

Request a briefing.

Prepare a message for mission@ssx360.com, then send it from your email app.

Share your area of interest, general requirements, and the decision your team needs to make.

Keep this first message to general requirements. Arrange confidentiality terms before sharing nonpublic information.

Read our Privacy notice and legal contact information.