IEC 62443 from the planner's and operator's point of view
- IT security in production plants is becoming increasingly important. Statistics confirm a deteriorating threat situation in the field of industrial automation technology. In future, the European Union will require certain minimum standards for systems in critical infrastructure and other areas via the NIS2 Directive. Planners and operators of production facilities are therefore required to address the IT security of their production facilities (hereinafter referred to as OT security) and systematically integrate it into their processes. The IEC 62443 series of standards was designed specifically for use in production plants and therefore considers the requirements for industrial real-time environments. In addition to requirements for manufacturers of automation components, the standard also defines requirements for planners and operators of automation systems. This document focuses on the role of planners and operators in theOT security process. After a differentiation between OT security and IT security in chapter 2, an introduction to the IEC 62443 standard follows in chapter 3. Chapter 4 then describes the tasks of the system planner. Among other things, the tasks of the system planner, such as the creation of a risk and threat analysis and thedefinition of a defense-in-depth concept , are discussed here. This is followed in chapter 5 by the tasks of the asset owner. These tasks include, for example, setting up an information security management system (ISMS), creating and maintaining an asset inventory and installing software updates (patch management).
| Author: | Karl-Heinz NiemannORCiDGND |
|---|---|
| URN: | urn:nbn:de:bsz:960-opus4-37393 |
| DOI: | https://doi.org/10.25968/opus-3739 |
| Document Type: | Report |
| Language: | English |
| Year of Completion: | 2025 |
| Publishing Institution: | Hochschule Hannover |
| Contributing Corporation: | ABB AG |
| Release Date: | 2025/10/30 |
| Tag: | Automation; IEC 62443; OT Security; Plant Operator; System Integrator |
| GND Keyword: | ComputersicherheitGND; FertigungsanlageGND; AutomatisierungstechnikGND; IEC 62443GND |
| Page Number: | 34 |
| Institutes: | Fakultät I - Elektro- und Informationstechnik |
| ISA - Institut für Sensorik und Automation | |
| DDC classes: | 621.3 Elektrotechnik, Elektronik |
| Licence (German): | Urheberrechtlich geschützt |






