A while back I was collecting white papers on internet security issues for a client project.
The main thing I got out of it was that active network services running under Windows (actually, any OS) are what get people into trouble. In other words, if you have FTP, telnet, RPC, SMB (windows shares), and/or HTTPservers active on a given OS without any hardening provisions and/or while not changing default logins, then you are inviting hackers.
This implies in the reverse sense that if a given box or processor has no history of serving network connections, then chances are that it's pristine (regardless of any code YOU put on it, Randy.

)
So, that's a place to start. Make a case that these units have never had the opportunity to be misused, internet services wise.