CFOtech Australia - Technology news for CFOs & financial decision-makers
Control room servers security cameras industrial machinery digital lines protected infrastructure

Claroty & Google boost cyber-physical security for critical infrastructure

Thu, 7th Aug 2025

Claroty has formed a strategic collaboration with Google Security Operations to enhance threat detection and response capabilities for organisations seeking to bridge information technology (IT) and operational technology (OT) to safeguard critical infrastructure.

The partnership will see Claroty's SaaS-powered xDome and on-premise Continuous Threat Detection (CTD) solutions feed context-rich alerts and vulnerability data into Google's cloud-native security operation platform. This integration aims to strengthen cyber-physical system (CPS) security by enabling more precise and informed incident response processes.

Security challenges in converged IT and OT

As IT and OT environments merge, security operation centres (SOCs) encounter a new array of challenges, often complicated by legacy technology, restricted visibility, and the proprietary protocols specific to OT systems.

SOCs have reported a lack of visibility into threats impacting physical operations, the burden of unfiltered alerts, heightened compliance demands, and slower response times, factors that can increase organisational risk.

Leveraging the integration announced by Claroty and Google Security Operations, organisations managing CPS environments are positioned to unify their threat detection activities, accelerate incident response, proactively manage and address exposures, bolster threat hunting, and streamline compliance management.

Capabilities of the integration

The collaboration will introduce several capabilities by ingesting Claroty's alerts and vulnerability details into Google Security Operations' platform. This allows organisations to correlate data from Claroty xDome and CTD with broader enterprise information in order to achieve enhanced detection accuracy. It prioritises remediation efforts, which, according to the partners, should drive risk reduction and increase operational efficiency.

One key aspect of the integration is the ability to identify threats directed at CPS assets - such as those involving OT and Internet of Things (IoT) devices - that may be missed by conventional IT security tools. By furnishing actionable, OT-aware intelligence, the solution enables security teams to resolve vulnerabilities and improve mean time to resolution (MTTR).

Industry viewpoints

"The CPS threat landscape is quickly expanding and is a high-value target for bad actors looking to exploit potential vulnerabilities as digital transformation takes shape across enterprises," said Tim Mackie, Vice President of Worldwide Channel and Alliances at Claroty. "By combining the verticalized expertise of Claroty and our deep understanding of CPS, from deep protocol expertise to complete asset context, with Google Security Operations' ability to prioritise threats, automate response workflows, and correlate complex attack patterns across domains, we're able to increase operational uptime, simplify compliance across hybrid environments, and above all else, reduce risk."

McCall McIntyre, Head of Security Product Partnerships at Google Cloud, added:

"IT security teams are increasingly taking on the responsibility of securing physical assets, from IoT, to medical devices, to building management systems, to supply chain automation. They need a fully integrated solution in their SOC that leverages the unrivalled knowledge of CPS delivered by Claroty and the intelligence-driven workflows of Google Security Operations that together empower SOC teams with a unified view of threats across environments, enabling earlier detection of attacks and accelerating response times."

Broader context and goals

With the strategic collaboration, Claroty's goal is to empower organisations operating in sectors reliant on CPS - including manufacturing, healthcare, and utilities - to better secure their mission-critical infrastructure.

By prioritising risk-based remediation and providing a more comprehensive threat context, the integration is intended to improve both efficiency and security outcomes for SOCs navigating converging IT and OT environments.

Follow us on:
Follow us on LinkedIn Follow us on X
Share on:
Share on LinkedIn Share on X