
When looking at the 62443 foundational requirements (FR) and security requirements (SR), many can be found within a cybersecurity program or tweaked to focus on endpoints and fulfilled using technology. Security continuously degrades and audits/remediation requires resources, but security controls per asset can be implemented and monitored so OT systems management (OTSM) teams can get ahead of the problem (where possible) using the correct solutions.
This session is about mapping endpoint security capabilities to those outlined in the 62443 families, using multiple products to tie FR/SRs together, and how to gain visibility on gaps, security-level (SL) variances, etc. via a centralized platform strategy that enables teams to act. Attendees will walk away with:
∙ An introduction to the 62443 FR/SRs with respect to endpoint security
∙ A mapping of FR/SRs to the various capabilities or products out there
∙ An example of an HMI “blueprint” with a specific target security level (SL-T)
∙ An example illustrating variance between an achieved security level (SL-As) vs. the desired SL-T via a compliance strategy
∙ An example dashboard report showing overall results as a feedback system for your CSMS
∙ Next steps to expanding this concept
Chapters:
Summary
00:06 Securing OT endpoints using 62443 standards.
04:30 Endpoint security framework for achieving target security levels.
09:34 Improving OT security using 62443 standard.
15:16 Implementing IEC 62443 security requirements at endpoints.