Certification for Automation Solutions

Recently, ISA has made available the ACCSA certification scheme, dedicated to automation solutions installed within production facilities. Since this type of certification is still in the experimental phase, BYHON has implemented in its model a conformity assessment inspired by the Industrial Cybersecurity certification schemes according to IEC 62443, aimed at verifying final OT configurations.

Compliance with IEC 62443 Compliance with IEC 62443
Compliance with IEC 62443

Make the right choice. Obtain an excellence certification quickly.

ISASecure® Certification®

Watch the video explaining the foundations of ISASecure® certificate.

Some steps for issuing the declaration of conformity

Schema di certificazione ISASecure Diagramma con i rapporti tra Asset Owner, System Integrator, Product Supplier, Certification Body, ISA Security Compliance Institute e Accreditation Body. IACS Asset Owner IACS System Integrator IACS Product Supplier Certification Body ISO 17065, 17025 ISA Security Compliance Institute Accreditation Body ISO 17011 Specifies ISASecure Certified product Specifies ISASecure Certified product Submits Certificate Certification scheme Certified product Scheme Provides accreditation
IACS supply chain
Certification flow
Accreditation

Defining the scope of assessment in terms of configurations and security objectives, planning and collecting all relevant documentation, including diagrams related to architecture and information on essential functions, such as a list of accessible network interfaces, protocols and available services. Analysis of the specific configurations of the various parts of the automation solution.

Where required, verification of the manufacturer’s CyberSecurity Management System in order to verify that it has been developed and maintained in accordance with the security practices of IEC 62443-4-1.

Security features are checked against the requirements defined for a given Security Level target (SL-T) for the different zones and conduits that make up the automation solution, to assess whether the object of assessment complies with the requirements of IEC 62443-3-3 as designed, configured and installed.

Conducting tests as per the validation plan and product vulnerability analysis. This is done with a vulnerability scan and other tests.

Once all the previous steps have been carried out, the result is recorded in an industrial information security assessment report for review by BYHON’s technical committee. If successful, the final Declaration of Conformity is issued to certify that the final configuration of the automation solution conforms to IEC 62443 for a given security level (SL-A).

Why choose BYHON

BYHON: Over 20 years of operational experience

Fast response and action times

BYHON: Pool of functional safety specialists

Streamlined processes at every stage of work

BYHON: Pool of functional safety specialists

A team of assessors always by your side

Related articles