UNE EN IEC 62443-3-3:2020
Industrial communication networks - Network and system security - Part 3-3: System security requirements and security levels
Redes de comunicaciones industriales. Seguridad de la red y del sistema. Parte 3-3: Requisitos de seguridad del sistema y niveles de seguridad.
| Standard number: | UNE EN IEC 62443-3-3:2020 |
| Pages: | 90 |
| Released: | 2020-04-01 |
| Status: | Standard |
| Pages (Spanish): | 105 |
UNE EN IEC 62443-3-3:2020
This part of the IEC 62443 series provides detailed technical control system requirements (SRs) associated with the seven foundational requirements (FRs) described in IEC 62443 1 1 including defining the requirements for control system capability security levels, SL-C(control system). These requirements would be used by various members of the industrial automation and control system (IACS) community along with the defined zones and conduits for the system under consideration (SuC) while developing the appropriate control system target SL, SL-T(control system), for a specific asset. As defined in IEC 62443 1 1 there are a total of seven FRs: a) Identification and authentication control (IAC), b) Use control (UC), c) System integrity (SI), d) Data confidentiality (DC), e) Restricted data flow (RDF), f) Timely response to events (TRE), and g) Resource availability (RA). These seven requirements are the foundation for control system capability SLs, SL-C (control system). Defining security capability at the control system level is the goal and objective of this standard as opposed to target SLs, SL-T, or achieved SLs, SL-A, which are out of scope. See IEC 62443 2 1 for an equivalent set of non-technical, program-related, capability SRs necessary for fully achieving a control system target SL.
Security for industrial automation and control systems - Part 4-2: Technical security requirements for IACS components
Security for industrial automation and control systems - Part 3-2: Security risk assessment for system design
Security for industrial automation and control systems - Part 2-4: Security program requirements for IACS service providers
Security for industrial automation and control systems - Part 4-1: Secure product development lifecycle requirements
