ISASecure and IEC 62443, explained with the numbers
What each certification program actually evaluates, how the security levels and device types change the scope, and where the common points of confusion come from — written by the assessors who run these evaluations.
Filteractive
3 articles match your filters
Independent testing in ISASecure CSA: what the lab must test itself
ISASecure CSA flags 34 of its 166 functional requirements for testing by the lab itself. What the flag means, what happens to the rest, and what to prepare.
ISASecure vulnerability identification testing: how the pass threshold scales with security level
ISASecure VIT pass criteria: one severity band is added per security level, the scan is identical at every level, and a pass never requires zero findings.
Where fuzzing, load testing and penetration testing actually live in ISASecure CSA
Suppliers often expect the certification lab to fuzz and pen-test their product. It does not. Who performs each kind of security test in a CSA evaluation, what the lab checks instead, and what to prepare.
Have a product or system to certify?
Talk to the assessors who wrote these articles about what applies to you.