SUPCON PSIRT

Trusted Response for Industrial Cybersecurity

OVERVIEW

What is SUPCON PSIRT?

The SUPCON Product Security Incident Response Team (PSIRT) is a dedicated global team responsible for receiving, investigating, and disclosing security vulnerabilities related to SUPCON products.

We welcome reports from security researchers, customers, industry organizations, and suppliers. SUPCON PSIRT follows a structured vulnerability management process to assess risks, coordinate remediation, and ensure timely and responsible disclosure.
Responsibilities & Process

Managing Security Vulnerabilities

SUPCON PSIRT is responsible for receiving, assessing, and coordinating the resolution of product security vulnerabilities. Following internationally recognized standards such as ISO/IEC 30111 and ISO/IEC 29147, we work to ensure vulnerabilities are addressed in a timely, transparent, and responsible manner.
Core Responsibilities:
Steps

Our Standard Process

Discovery

Monitor and systematically collect suspected vulnerabilities

Assessment

Complete the vulnerability qualification and issue reproduction

Remediation

Design and implement vulnerability remediation schemes

Disclosure

Promptly disclose vulnerabilities and release mitigation strategies

Feedback

Incorporate customer and team feedback for ongoing improvement
Security Process

Security Disclosure & Improvement

At SUPCON, we do not only respond to vulnerabilities — we continuously improve our systems and engineering practices based on real-world security findings.

Each confirmed vulnerability is handled through our secure development lifecycle:
This closed-loop process ensures that every security report, internal or external, is used to strengthen our products and improve overall system security, resilience, and reliability.

Security is not a one-time fix — it's a disciplined, transparent, and evolving process we embed in our DNA.

contact expert
Security Process

Report a Vulnerability

Security researchers, industry organizations, customers are encouraged to report suspected vulnerabilities in SUPCON products to our dedicated team at cybersecurity@supcon.com .

All reports will be reviewed promptly under our vulnerability management process.
Please include, where applicable:
SUPCON is committed to handling all reports with confidentiality, professionalism, and transparency.

Kickstart Your Digitalization Journey by Harnessing the Power of AI to Optimize Operations

contact us