CyberSecurity 2 days (14h)

IEC 62443 (Industrial Cybersecurity)

Industrial cybersecurity for component manufacturers: apply IEC 62443-4-1 and -4-2 for secure IACS products.

Course Description

This IEC 62443 training explains how to secure industrial automation and control systems (IACS) using the IEC 62443 family of standards, for both asset owners and product suppliers.

What the IEC 62443 training covers

The course covers the IEC 62443 structure and roles, the concept of zones and conduits, Security Levels (SL 1–4), the foundational requirements, the secure product development lifecycle (62443-4-1) and component requirements (62443-4-2), and system-level security (62443-3-3) with risk assessment.

Who should attend

Automation, controls and product-security engineers, OT security and safety managers, and suppliers of industrial components and systems.

What you will learn

By the end, participants understand zones and conduits, can interpret Security Levels and foundational requirements, and know how the 62443 parts apply to their role.

Format and delivery

This course is delivered on-site or remotely by ISIT engineers and can be tailored to your team’s protocols, standards and experience level. Contact us to build a programme around your project.

Pedagogical Objectives

By the end of this course, participants will be able to:

  • Identify the challenges and specifics of industrial-systems cybersecurity (OT vs IT).
  • Understand the structure of IEC 62443 and the manufacturer’s responsibilities towards operators and integrators.
  • Understand how to implement a secure development life cycle compliant with IEC 62443-4-1.
  • Understand how to implement the technical security requirements of IEC 62443-4-2.
  • Understand the product-certification approach.

Course Program

  • Introduction to industrial cybersecurity: IT/OT convergence; fundamental IT vs OT differences (CIA priorities, update cycles, impacts).
  • Overview of IEC 62443: structure (security levels 1 to 4); the three main actors; key concepts.
  • Overview of security levels 1, 2 and 3.
  • IEC 62443-4-1 secure development life cycle: objective and scope of the SDL; content; benefits of adoption for manufacturers.
  • IEC 62443-4-2 technical component requirements: component types; requirements structure; mapping of Security Levels and requirements; the 7 foundational requirements applied to components.

Register for IEC 62443 (Industrial Cybersecurity)

Fill out the form below to register for this training or request a custom session for your team.