The Latest Red Piranha News
|
September has been a month of strengthening cyber resilience across IT, OT, and critical infrastructure environments. As organisations face increasingly complex threats, security teams require greater visibility, stronger detection capabilities, and practical approaches to managing cyber risk across both enterprise and operational domains.
This month, Red Piranha spotlighted Crystal Eye 6.0, expanded its collaboration with The University of Western Australia, and continued its focus on OT security, vCISO services, and SOC-as-a-Service.
Our Knowledge Sprint series delivered practical guidance to critical infrastructure teams, covering SP2 readiness and SNMP monitoring. Alongside this, our weekly Threat Intelligence Reports provided insights into emerging threats and evolving attacker activity. |
Crystal Eye 6.0 Platform Updates
|
|

|
Crystal Eye 6.0 continues to advance the platform’s capabilities, delivering enhanced threat detection, deeper IT/OT visibility, and more secure connectivity to help organisations strengthen cyber resilience and operational security.
Key Features:
- Enhanced threat detection for greater intelligence in identifying and investigating potential threats using Internal Protection Domains
- OT command-level monitoring to identify anomalous and higher-risk operational activity
- PQC-ready SD-WAN with WireGuard and Microsoft Entra ID SSO
- Time-bounded vendor and remote engineering access controls
- Enhanced support for CIRMP remote access risk treatment
Support & End-of-Life Reminders
- The current supported version of Crystal Eye OS is 6.0
- We recommend all our users to upgrade from 5.5 to 6.0.
- 5.0 has reached End-of-Life Support.
Support Contact
Red Piranha Forum
|
Knowledge Sprint: SP2 OT Security Explained
|
|

|
Critical infrastructure organisations are navigating growing cyber risk alongside increasing expectations around resilience, governance, and compliance.
Our Knowledge Sprint provides practical guidance across the OT security lifecycle - from scoping and assessment through to architecture, deployment, and monitoring.
The session explores why traditional IT security approaches can fall short in operational environments and how organisations can build a practical roadmap towards CIRMP, AESCSF SP2 and CI Fortify alignment.
Key Learning Points
- Why critical infrastructure is under cyber threat
- Why traditional IT security fails in OT environments
- CIRMP, AESCSF SP2 and CI Fortify frameworks
- Scoping and isolation capability assessments
- Live Crystal Eye demonstration
- Roadmap for SP2 compliance and operational continuity
|
| Watch the YouTube Replay |
SNMP Monitoring Integration
|
|

|
Our SNMP Monitoring Integration Knowledge Sprint provides a technical walkthrough of configuring Crystal Eye as an SNMP agent and connecting it to an SNMP Manager.
The session focuses on practical configuration and monitoring, helping technical teams understand how SNMP can support greater visibility into network infrastructure and system health.
Session Coverage
- Network configuration and SNMP setup
- Community string and credential management
- Monitoring CPU, memory, interfaces and uptime
- Monitoring alarms and events
- Troubleshooting and fault identification
|
| Watch the YouTube Replay |
Service Spotlight: vCISO Services
|
 |
|
Red Piranha vCISO services provide experienced cybersecurity leadership without the overhead of a full-time CISO. We help organisations establish security strategy, manage cyber risk, strengthen governance, and turn compliance requirements into practical, measurable security programs.
For critical infrastructure and OT environments, our vCISO solution brings specialised oversight across CIRMP, AESCSF SP2, IEC 62443, ICS, SCADA, and IT/OT governance. This includes OT risk management, security architecture, segmentation assurance, vulnerability management, incident response readiness, and board-level reporting.
A vCISO can help organisations establish clearer security priorities, strengthen governance and align cybersecurity initiatives with business objectives.
The service supports organisations that need experienced security leadership without necessarily requiring a full-time executive appointment. This can include developing security strategies, assessing risk, strengthening governance, supporting compliance obligations and providing executive-level reporting.
For organisations operating in regulated or critical environments, the focus extends to understanding how cybersecurity risk affects operational continuity, regulatory obligations and organisational resilience.
Our vCISO engagement can help you:
- Establish and maintain an organisation-wide security strategy
- Identify, prioritise, and manage cyber risks
- Develop security policies, procedures, and governance frameworks
- Support CIRMP and AESCSF SP2 compliance uplift
- Align OT security architecture with IEC 62443 principles
- Strengthen vulnerability and exposure management
- Prepare incident response plans, playbooks, and escalation processes
- Provide board-ready risk reporting and compliance evidence
- Govern third-party and remote vendor access
- Align security priorities across IT, OT, SCADA, and field environments
Technical Details & Methodology
Red Piranha's approach combines strategic cybersecurity leadership with practical technical understanding. This enables security priorities to be connected to the controls, technologies and operational processes required to manage risk effectively.
Compliance & Standards Alignment
vCISO engagements can support alignment with relevant requirements and frameworks, including CPS 230, CIRMP, SOCI, AESCSF SP2, Essential Eight and ISO/IEC 27001, depending on organisational requirements.
|
| Get Started with vCISO Services |
Red Piranha Joins UWA Global Engagement Alliance for Cybersecurity Collaboration
|
|

|
Red Piranha is proud to join The University of Western Australia Global Engagement Alliance, strengthening collaboration across cybersecurity, education, research and industry.
A key part of this collaboration is the Training Security Operations Centre (TSOC) with UWA, creating an environment where students can gain practical, hands-on exposure to security operations and develop skills that translate directly into the cybersecurity workforce.
Formally signed at the IC3 Conference in Mumbai, the initiative provides a concrete example of how industry and academia can work together to build operational cybersecurity capabilities across the Australia–India region.
|
| Learn More |
|
|
|
|
|
Copyright 2026 – Red Piranha - All Rights Reserved
|
|
|
|