ISASecure and IEC 62443, explained with the numbers
What each certification program actually evaluates, how the security levels and device types change the scope, and where the common points of confusion come from — written by the assessors who run these evaluations.
Filteractive
5 articles match your filters
ISASecure ICSA Core vs Advanced: what the higher tier actually adds
ICSA Core vs Advanced explained: what each tier is for, how 158 requirements become 182, which 24 are added and which the lab tests, and how to choose.
The 24 IIoT-specific requirements ISASecure ICSA adds to IEC 62443-4-2
ISASecure ICSA adds 24 IIoT-specific requirements to the IEC 62443-4-2 base: 18 at both tiers, 6 at Advanced only. What they cover and how to prepare.
Advanced is SL 4, except when it is SL 3: the ISASecure ICSA tier-to-level trap
ICSA Advanced maps to SL 4 in the functional assessment but to SL 3 in vulnerability testing. Why the mappings diverge and how to read the certificate.
IIoT vulnerability testing: how ISASecure ICSA's two tiers set the pass threshold
ISASecure ICSA vulnerability testing: Core must address critical and high findings, Advanced adds medium. One scan, two filters; a pass is never zero findings.
What ISASecure ICSA certification actually evaluates
ISASecure ICSA certifies IIoT devices and gateways against IEC 62443-4-2: 182 requirements, two device types, a Core or Advanced tier and a maintenance audit.
Have a product or system to certify?
Talk to the assessors who wrote these articles about what applies to you.