Cybersecurity for MTSA-Regulated Facilities
How to Implement U.S. Coast Guard Cybersecurity Requirements
Given that maritime facilities operate directly in the middle of the supply chain, a persistent cyber attack could result in significant financial losses—not only to the facility itself but to its upstream and downstream customers. Implementing a solid cybersecurity program is critical to demonstrating proper due diligence.
Cyber risk management varies greatly from facility to facility based on the size and complexity of each facility's cyber systems.
The U.S. Coast Guard makes clear that facilities need to conduct effective cybersecurity assessments. A properly performed cybersecurity assessment is a powerful tool to reduce service disruption and threats to employee safety and security that just makes good business sense.
ABS Group has a range of cybersecurity services to help waterway facilities throughout the United States implement a cyber risk management program and meet existing MTSA-regulated facilities guidelines and standards. Read our primer to learn more.
Address Cyber Risk in Your Facility Security Plan
As further outlined in the Coast Guard's NVIC 01-20 cybersecurity guidelines, facilities on the Outer Continental Shelf need to address cyber risk management in their facility security plans to meet the existing maritime standards and regulations.
MTSA-regulated facilities need to assess, identify and develop a set of risk-based security measures to address cyber risk and demonstrate that their facilities have a cybersecurity plan in place that mitigates the risk of cyber attacks on critical infrastructure.
Cybersecurity Solutions and Services
FSA-Cyber Guidance
-
USCG NVIC 01-20 Readiness Checklist
-
USCG NVIC 01-20 Guidance Primer
Roadmap Template
-
FSA-Cyber Procedure
- Mitigation Strategy and Roadmap Template
FSP Annex Template
-
FSP Annex Integration Procedures
- FSP Annex and Roadmap Template
FSA-Cyber Risk Assessment
-
FSA Facility Cybersecurity Assessment Report
Cyber Training
-
8-hour FSO Targeted Training
- 4-hour FSO/Non-FSO Training
- 2-hour Executive Workshop
FSP Annex Integration and Roadmap
-
FSA Facility Cybersecurity Assessment Report
- Implementation Strategy and Roadmap
- FSP Annex Development and Deployment
- Integration of Cyber into Facility Emergency Response Plan
- 90-day Drill Templates (integrating cyber into physical)
Cyber Capability Enhancements
Choose from the following capabilities:
-
E-Learning
- Incident Command Structure (ICS) Integration
- Asset Management
- Security Information and Event Management (SIEM)
- Intrusion Detection/Security Monitoring
Building Cyber Resiliency at Your Facility
First-in-the-Nation Facility Security Officer Training Course
With emphasis on protecting critical information infrastructure within facilities, Facility Security Officers (FSO) have an important role in building cyber resilience and infusing cyber into an existing security program. ABS Group developed the first cybersecurity training course in the U.S. geared towards FSOs to establish a cybersecurity program at regulated facilities. Our training demystifies cyber risk for non-cyber risk professionals, providing an excellent understanding of how cyber can pose a threat to your facility, the tools used by cyber professionals to
assess risk and how cyber vulnerabilities can be addressed in an annex to your port and terminal facility security plan. Learn more about our FSO Cybersecurity training course.
Hear more insights from Brian Shajari, active Coast Guard veteran and cybersecurity advisor.
Risk Matters X.0 Podcast: Cyber Risk Series

Emergency Response and Facility Security Perspectives: "In emergency management, does cybersecurity have a role? Absolutely. The real question is will you realize it soon enough before you have an emergency inside of your emergency." After responding to eight major Gulf Coast hurricanes together as facility security officers, Bryan Markland of Lucite International shares current cyber insights with intelligence professional Brian Shajari. Revisit our first episode in the Cyber Risk Series to hear how the U.S. Coast Guard is responding to cyber threats and keeping the maritime and offshore industries informed.