Cybersecurity Assessment record
A facility-specific record of the reviewed systems, access paths, findings, and gaps to support plan development.

02 / OT CYBERSECURITY
Prepare a facility-specific cybersecurity assessment and plan framework for your maritime operation. SSX360 reviews the agreed IT and OT boundary and organizes findings, response responsibilities, and signed evidence for the facility team.
Examine terminal and facility systems, remote maintenance paths, access-control interfaces, and communications dependencies within the agreed boundary. For Hawaii, Guam, and other Pacific facilities, include location, access, and assessment logistics in the first briefing.
Select the deliverables around your facility, review objective, and available records. Scope and acceptance criteria are agreed before work begins.
A facility-specific record of the reviewed systems, access paths, findings, and gaps to support plan development.
A working plan structure connecting assessment findings, assigned responsibilities, response procedures, and review actions for the facility’s approval process.
Agreed assessment and exercise records organized for review, with signed exports and a controlled handoff to the facility team.
ML-DSA-87 / MATRIX SCROLL / SCROLL CONSOLE
Matrix Scroll signs records with ML-DSA-87. Scroll Console organizes imported evidence, supports comparison with retained sources, and prepares controlled handoffs. These are private SSX360 tools used within an agreed engagement.
Explore the evidence workflowSOURCE REVIEW / OCT 09, 2026
The Coast Guard’s published timeline requires covered owners and operators to designate a Cybersecurity Officer, conduct the Cybersecurity Assessment, and submit the Cybersecurity Plan for approval by July 16, 2027.
Read the official sourceUSCG guidance places the assessment before plan development and calls for recurring reviews. Confirm the current facility requirements and approved arrangements before defining the engagement.
Read the official sourceSSX360 supports assessment and document preparation. The owner or operator submits the plan through the applicable Coast Guard process; approval remains with the Coast Guard.
Discuss the proposed scope with your grants and procurement team against the specific Port Security Grant Program award and current guidance. An award or a published service page does not establish eligibility for a particular purchase.
Share the facility type, general systems in scope, review objective, and target date. Keep network diagrams, credentials, CUI, and other sensitive records out of the first inquiry.