- Home
- OT Security
- Industrial Control System Security
- Corelight ICS Collection
Corelight ICS Collection
Network visibility solution for ICS/OT protocols and device monitoring

Corelight ICS Collection
Network visibility solution for ICS/OT protocols and device monitoring
Go Beyond the Directory. Track the Entire Market.
Monitor competitor funding, hiring signals, product launches, and market movements across the whole industry.
Corelight ICS Collection Description
Corelight ICS Collection is a network visibility solution designed for monitoring Industrial Control System (ICS) and Operational Technology (OT) environments. The product identifies and logs ICS/OT protocols including BACnet, DNP3, Ethercat, Ethernet/IP, CIP, Modbus, PROFINET, S7Comm, and TDS. The solution leverages Zeek network security monitoring framework and protocol analyzer plugins to generate detailed logs for enabled protocols. It identifies new services in connection logs in real-time, providing visibility into network communication and behavior patterns. The ICS Collection monitors activity related to HVAC systems, security cameras, smart lighting, and access control systems. It detects uncommon network behavior and identifies anomalies in enterprise and operational network traffic. The product is delivered as part of Corelight's Open NDR Platform and can be activated based on organizational needs. The collection includes contributions from the Cybersecurity and Infrastructure Security Agency (CISA). Organizations can use the ICS Collection to discover ICS/OT devices, capture protocol-specific evidence, and reduce incident response times by monitoring for unusual network interactions across factory floors and enterprise IT networks.
Corelight ICS Collection FAQ
Common questions about Corelight ICS Collection including features, pricing, alternatives, and user reviews.
Corelight ICS Collection is Network visibility solution for ICS/OT protocols and device monitoring developed by Corelight. It is a OT Security solution designed to help security teams with OT Security, ICS, Network Monitoring.
FEATURED
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
Cybercrime intelligence tools for searching compromised credentials from infostealers
Password manager with end-to-end encryption and identity protection features
Fractional CISO services for B2B companies to build security programs
POPULAR
Real-time OSINT monitoring for leaked credentials, data, and infrastructure
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox