AI Architecture › Security & Zero-Trust
Security & Zero-Trust
Security & Zero-Trust
IT/OT separation, airgaps, unidirectional data diodes, and full decision-audit lineage.
What this layer does
IT/OT separation, airgaps, unidirectional data diodes, and full decision-audit lineage. Every page in this section is part of the same control stack — click any card to go deeper, or return to the Master Blueprint to see how it connects.
Explore this layer
Adversarial-Input Defense for Control ModelsAir Gaps and Controlled BridgingAnomaly Detection on the OT Network and ProcessCrypto Agility and MigrationFPGA Bitstream Encryption and AuthenticationFirmware Signing and Secure UpdateFull Decision-Audit LineageIT/OT Separation: Two Domains, One BoundaryImmutable, Tamper-Evident Audit LogInsider-Threat ModelML Model Integrity and Anti-PoisoningMicrosegmentation of the OT NetworkOT Incident Response and Safe-State FallbackPenetration Testing and Red-Team ValidationPost-Quantum Cryptography: OverviewPost-Quantum Key Exchange with ML-KEMPost-Quantum Signatures: ML-DSA and SLH-DSAPrivileged Access ManagementPurdue Model Segmentation for the PlantRemote Attestation of Control NodesResilience, Backup, and Deterministic RecoverySafety-Critical Cyber-Physical DesignSafety-Instrumented System IsolationSecrets and Key ManagementSecure Boot for Edge FPGAsSecuring Byproduct-Material Accountancy DataSecuring the KRONOS-CTRL Digital TwinSeparation of Duties and Two-Person ControlSoftware Bill of Materials and Build ProvenanceSupply-Chain Security for Hardware and SoftwareThreat Model: Actuator ManipulationThreat Model: Attacking the Plasma-Control LoopThreat Model: Diagnostic and Sensor SpoofingThreat Model: The Networked ReactorUnidirectional Data DiodesZero-Trust Identity and Mutual TLSZero-Trust Security Architecture: Overview