Services

Industrial cyber security

The ISA/IEC 62443 series of standards define the requirements and processes for implementing and maintaining industrial automation and control systems. These standards establish best practices in security and provide a method for assessing the security performance level. Their approach to cybersecurity challenges is comprehensive, bridging the gap between operations and information technology, as well as between process safety and cybersecurity.

The ISA/IEC standards set cybersecurity criteria across all industrial sectors that use industrial automation and control systems, including building automation, power generation and distribution, medical devices, transportation, and process industries such as chemical and oil and gas.

A fundamental principle in the ISA/IEC 62443 standard is the concept of shared responsibility as a core structure of cybersecurity in automation. Stakeholders must collaborate and take measures to ensure the security of control systems.

From a cybersecurity perspective, control and industrial automation systems, unlike business systems, are designed to allow easy access from various networks. Therefore, the likelihood of security risks occurring in such environments is very high.

The ISA/IEC 62443 series of standards addresses the security of Industrial Automation and Control Systems (IACS) throughout their lifecycle. The ISA/IEC 62443 standard defines a set of engineering measures that guide organizations in the process of identifying and assessing risks and implementing security countermeasures to reduce risks to acceptable levels in industrial automation.

  1. Defining terms, concepts, and execution plans that can be used by the cybersecurity executive group responsible for the security of control systems.
  2. Assisting asset owners in determining the required security level to meet organizational needs.
  3. Establishing and devising a common set of cybersecurity lifecycle requirements and processes for product developers.
  4. Providing a mechanism for standard certification and development processes for suppliers.
  5. Defining risk assessment processes to protect control systems.

Guarantee your information securityorg's standardizationlevel of knowledge with Hirsavision