Insights
ISASecure and IEC 62443, explained with the numbers
What each certification program actually evaluates, how the security levels and device types change the scope, and where the common points of confusion come from — written by the assessors who run these evaluations.
Filteractive
Topic
Security levels10Tiers (Core / Advanced)5Device & component types9Assessment streams6Testing & verification11Evidence & artifacts16Independent testing5Maturity levels4Sampling1Scope & boundaries16Surveillance & maintenance4Certification process20Common component constraints (CCSC)1Cost & effort3Comparisons4Roadmaps & readiness1
2 articles match your filters
ACSSAIntermediate
IEC 62443-2-1 maturity level 2 vs 3: why ISASecure ACSSA certification needs level 3 on every requirement
In ISASecure ACSSA, maturity level 2 means a requirement is documented and level 3 means it is practised. Certification needs level 3 on every requirement.
Sep 8, 20268 min readRead
SDLAIntermediate
IEC 62443-4-1 certification levels: why ISASecure SDLA has none and every requirement must pass
ISASecure SDLA carried certification levels until 2018. Today it has none, and no maturity level either: every applicable IEC 62443-4-1 requirement must pass.
Sep 8, 20268 min readRead
Have a product or system to certify?
Talk to the assessors who wrote these articles about what applies to you.