✏️ EDIT MODE ACTIVE — Click any cell, list item, or text to edit  |  Use + buttons to add rows or items  |  Click × to delete
🛢️ C2M2 Training Exercise | Fictional Case Study

Lone Star Midstream LLC

Permian Basin Natural Gas Gathering & Transmission — C2M2 Assessment Exercise Scenario

Oil & Natural Gas Midstream Pipeline TSA SD-02C MIL 0–1 Baseline Exercise: All 10 Domains
Exercise Notice This case study is entirely fictional and created for C2M2 training purposes. All company names, personnel, addresses, IP addresses, vendor configurations, and operational data are simulated. Any resemblance to an actual pipeline operator is coincidental. Participants should use this data to practice a full C2M2 v2.1 self-evaluation across all 10 cybersecurity domains, with particular attention to TSA Pipeline Security Directive SD-02C compliance requirements.
Section 1 — Company Profile
Section 2 — Facilities & Physical Infrastructure
Section 3 — Organizational Structure & Staffing
Section 4 — IT Asset Inventory
Section 5 — OT / ICS / SCADA Asset Inventory
Section 6 — Network Architecture
Section 7 — Cybersecurity Controls Assessment
Section 8 — Third-Party Relationships & Vendor Access
Section 9 — Policies & Governance
Section 10 — C2M2 Domain Assessment Data
Section 11 — Exercise Discussion Questions