Cybersecurity for Aberdeen businesses —
oil + gas, subsea, IT/OT-grade.
Servnet designs, deploys and runs cybersecurity for Aberdeen firms with regulators and OT-threat actors paying attention — BP / Shell / TotalEnergies / Equinor oil + gas operations (NIS Regulations 2018 OES), Wood Group + ASCO subsea engineering, NHS Grampian, ETZ tenants developing renewables, University of Aberdeen + RGU research. Cyber Essentials Plus through to NIS Regulations + NHS Scotland IG + oil + gas industry cyber frameworks (NCSC + IEC 62443).
Why Aberdeen cyber programmes have their own profile
Aberdeen concentrates oil + gas critical infrastructure under NIS Regulations + subsea-engineering OT estates + NHS Grampian + pivoting Energy Transition Zone. Cyber here is heavily OT-aware.
NIS Regulations 2018 for oil + gas majors
For BP North Sea, Shell, TotalEnergies, Equinor, Harbour Energy as Operators of Essential Services — NIS-Regulations-aligned cyber controls, OT-aware NGFW, hazardous-area-compatible security.
IEC 62443 for oil + gas + subsea OT
For oil + gas onshore + offshore OT, plus subsea engineering OT — IEC 62443 industrial cyber security standard, Purdue-model alignment, OT-IT segmentation.
NHS Scotland IG for NHS Grampian
For NHS Grampian (Aberdeen Royal Infirmary + Royal Aberdeen Children's + Cornhill), cyber work lands against NHS Scotland Information Governance Framework.
Research export-control for ETZ + universities
For ETZ research and University of Aberdeen / RGU energy research with export-controlled or dual-use elements, cyber controls aligned to UK Strategic Export Control Lists.
What Servnet cyber delivers in Aberdeen
NGFW design + deployment (incl. OT-aware)
Multi-site FortiGate, Palo Alto, Cisco Firepower including OT-aware variants for oil + gas / subsea OT.
EDR / XDR + 24×7 monitored response
CrowdStrike, SentinelOne, Sophos with eyes-on-glass triage.
IT/OT segmentation for oil + gas + subsea
Purdue-model alignment, Fortinet OT-aware NGFW, monitored OT traffic, ransomware-resistant architecture for oil + gas onshore + offshore + subsea OT.
NIS Regulations 2018 support for OES
For oil + gas + utility OES customers, NIS-Regulations-aligned cyber controls, OES self-assessment support.
IEC 62443 industrial cyber
For oil + gas + subsea industrial customers, IEC 62443 standard alignment, security zoning, conduit design.
Incident response retainer with on-site
Retainer customers get guaranteed response with engineers physically dispatched into any AB postcode.
Aberdeen cyber clients we work with
- ▸BP / Shell / TotalEnergies / Equinor + supplyAberdeen oil + gas majors + supplier-chain — NIS Regulations 2018 OES, IEC 62443 OT controls, hazardous-area-compatible security.
- ▸Wood Group + ASCO + subseaWood Group, ASCO, Acteon — subsea engineering OT + IT, IEC 62443 alignment, secure ROV / offshore systems.
- ▸Energy Transition Zone (ETZ)ETZ tenants — pivot-to-renewables cyber, offshore wind cyber, hydrogen production cyber.
- ▸NHS Grampian + 3 hospitalsAberdeen Royal Infirmary, Royal Aberdeen Children's, Cornhill — NHS Scotland IG, SWAN-aligned segmentation.
- ▸University of Aberdeen + RGUUniversity of Aberdeen + RGU — research-data classification, energy-research export-control compliance.
- ▸ACC + Aberdeenshire CouncilACC + Aberdeenshire — NCSC CAF, Scottish Gov Cyber Resilience Framework.
How we run cyber for Aberdeen clients
On-site via travel for P1
For monitored-response Aberdeen customers, P1 incident has engineer in motion within an hour and on-site via flight typically inside 8–10 hours. For long-term contracts we maintain Aberdeen-based engineer cover.
Quarterly operational reviews
For NIS-Regs oil + gas, NHS Grampian, IEC 62443-regulated customers we run quarterly reviews.
Out-of-hours windows aligned to sector
Oil + gas operations 24×7 tolerance, subsea around offshore campaign windows.
Quarterly threat briefings for executive sponsors
For oil + gas CISOs, subsea engineering security leads, NHS Grampian exec leads we run a 60-minute quarterly briefing.
Aberdeen cybersecurity — common questions
Do you have an Aberdeen office or driving from Surrey?
Our HQ is in Surrey but we maintain working engineer cover in North-East Scotland for ongoing customers. For monitored-response retainers, on-site in AB-postcodes typically inside 8–10 hours via flight.
Do you understand NIS Regulations 2018 for oil + gas operators?
Yes — for BP / Shell / TotalEnergies / Equinor as OES, NIS-Regulations-aligned cyber controls, OES self-assessment.
Can you do IT/OT segmentation for oil + gas and subsea?
Yes — Purdue-model alignment, IEC 62443 industrial cyber, OT-aware NGFW for oil + gas + subsea OT.
Can you run cyber for NHS Grampian?
Yes — we work with NHS Grampian-affiliated organisations on NHS Scotland IG evidence.
Can you handle ETZ + energy research export-control compliance?
Yes — for energy research with export-controlled elements, controls aligned to UK Strategic Export Control Lists.
How do you price cyber for a 100-user Aberdeen firm?
Three-tier model — Foundation, Resilience, Regulated.
Other services we deliver in Aberdeen
Need cyber that holds up to NIS or NHS Scotland audit?
One call — direct to a cyber engineer.