Industries

Same engine. Configured per sector.

MOFF does not change between industries. What changes is which protocols are in the plant, which regulation applies, and what the evidence has to prove. Pick your sector below, then read the detailed scenarios.

Water & Utilities

Mandatory NIS2. Cryptographic proof of every setpoint change. CFCS incident report ready in seconds.

SHA-256 tamper-evident history: what changed and exactly when. Signed user identity on every MOFF action.
Works alongside existing SCADA: IGSS, WinCC, iFIX, ACOWA. No rip-and-replace.
One-click compliance export: signed evidence bundle for the 24h/72h deadlines.
Built for the Danish water sector: 280+ utilities in NIS2 scope.
MOFF for Water Utilities
NIS2 incident reportIn seconds
Setpoint change auditEvery change
MOFF actions signedIdentity + IP
SCADA disruptionNone
Pipeline cycle per PLC10 seconds
On outageBuffered locally, auto-retry

District Heating

~400 Danish utilities. NIS2 critical infrastructure, Modbus-heavy, almost no existing OT/IT integration targeting them.

Same NIS2 framework as water: identical audit and incident reporting requirements.
Substation and pump monitoring: temperature, pressure, flow signed every 10 seconds.
Works alongside DIMS, TERMIS: no rip-and-replace.
Same go-to-market as water: Dansk Fjernvarme network effect.
MOFF for District Heating
NIS2 incident reportIn seconds
Utilities in Denmark~400
SCADA disruptionNone
Pipeline cycle per PLC10 seconds
MOFF actions signedIdentity + IP
On outageBuffered locally, auto-retry

Energy & Wind

Tamper-evident chain on every process value. If a regulatory investigation follows an incident, your evidence is audit-grade and independently verifiable.

Parallel polling: one turbine offline never blocks the fleet.
IEC 60870-5-104 supported now: IEC 61850 on roadmap, bridge via OPC-UA today.
On-site AI: zero internet egress by default. No data leaves the fence.
Cloud destinations: Azure IoT Hub, AWS, Grafana Cloud.
MOFF for Energy & Wind
Devices blocked on failureZero
AI inference locationOn-site DMZ
Independently verifiableEvery event
Cloud destinationsAzure, AWS
NIS2 incident reportIn seconds
On outageBuffered locally, auto-retry

Food & Beverage

Unbroken traceability from raw material to finished product.

HACCP traceability: every CCP measurement signed.
MES integration: SAP ME, Plex, Opcenter via REST.
Cold chain alerts: deviation fires to Email, Teams, or webhook within the next cycle.
Recall-ready: any batch traced in seconds.
MOFF for Food & Beverage
Sensor readings signed100%
MES integrationVia REST
Deviation detected withinOne 10s cycle
Custom developmentNone needed
Recall investigationImmediate
On outageBuffered locally, auto-retry

Healthcare

NIS2 essential entities. HVAC, medical gas, power: almost none of it audit-logged today.

NIS2 essential entity: any OT supporting critical care needs an audit trail.
HVAC and medical gas: every alarm acknowledgement chain-logged.
Modbus and BACnet/IP supported now: chillers, AHUs, and BMS read directly.
Structured procurement: NIS2 audit trail sells itself to compliance teams.
MOFF for Healthcare
NIS2 classificationEssential entity
Alarm acknowledgementsChain-logged
Operational disruptionNone
NIS2 incident reportIn seconds
Modbus TCPSupported now
On outageBuffered locally, auto-retry

Manufacturing

PLCs to MES and ERP in one signed pipeline. Add a device in seconds. Every batch dispute resolved with tamper-evident data.

Per-PLC flow diagram: real-time status, auto-refreshed.
Rockwell EtherNet/IP supported now: ControlLogix and CompactLogix read directly.
SAP S/4HANA: OEE and quality via REST/OData.
Zero-downtime: add a PLC, picked up next cycle.
MOFF for Manufacturing
Add new PLCSeconds
Pipeline restart neededNever
SAP integrationVia REST/OData
Batch dispute resolutionImmediate
OEE data latency< 10 seconds
On outageBuffered locally, auto-retry

Pharma & Life Sciences

21 CFR Part 11 e-signatures on every intervention. Out of the box. No integration project.

21 CFR Part 11: ECDSA e-signatures on every intervention, by design.
22 intervention types: all ECDSA-signed and chain-logged.
PAS-X on roadmap: signed batch events to pharma MES.
Air-gapped AI: on-site inference by default. Data never leaves the GMP boundary.
MOFF for Pharma
E-signature standardECDSA / PKI
Intervention types logged22 types
AI data boundaryOn-site DMZ
Audit trail verified onEvery read
ALCOA+ data integrityBy design
Integration project neededNone
Pharma and multi-siteEnterprise
See detailed scenarios for these industries →
Read the ten detailed scenarios →

Want to see it running against your own protocols?