Services
We work across two fields: control software for machines, and the cyber-resilience evidence the EU Cyber Resilience Act requires. We treat both together, because compliant software has to be designed in from the start, not bolted on afterward.
Machine-control & industrial software engineering
Legacy operator interfaces and closed machine software slow down every extension and lock you into a single integrator.
Scope
Connecting machines over common industry protocols, and migrating legacy MDI interfaces to web-native HMIs.
Deliverables
- Control-software modules and HMI frontends, tested in parallel with the existing line
- Industry-protocol interfaces connecting to your MES/ERP systems
- Documented handover to your maintenance team — no lock-in to a single integrator
Engagement model
Project-based, starting with a technical assessment (1–2 weeks) ahead of a fixed-price or work-contract proposal.
Connected machinesWeb-native HMIsIndustry protocols
Cyber resilience & compliance for industry
The EU Cyber Resilience Act and IEC 62443 require evidence most machine builders can't produce today — audits stall on missing SBOMs and undocumented OT networks.
Scope
OT security audits against IEC 62443, building SBOM/CycloneDX pipelines into your build process, and preparing for EU CRA and NIS2 evidence requirements.
Deliverables
- Gap analysis with a prioritized action list
- Automated SBOM generation in CycloneDX format inside your CI/CD pipeline
- Audit-ready documentation for IEC 62443 zone-and-conduit models
Engagement model
Starts with a fixed-length audit (typically 2–4 weeks depending on plant size), followed by optional implementation support.
EU CRAIEC 62443NIS2CycloneDX SBOM