IEC 62645:2019

IEC 62645:2019

November 2019
International standard Current

Nuclear power plants - Instrumentation, control and electrical power systems - Cybersecurity requirements

IEC 62645:2019 establishes requirements and provides guidance for the development and management of effective computer security programmes for I&C programmable digital systems. Inherent to these requirements and guidance is the criterion that the power plant I&C programmable digital system security programme complies with the applicable country?s requirements.This document defines adequate measures for the prevention of, detection of and reaction to malicious acts by digital means (cyberattacks) on I&C programmable digital systems. This includes any unsafe situation, equipment damage or plant performance degradation.This second edition cancels and replaces the first edition published in 2014. This edition includes the following significant technical changes with respect to the previous edition:a) to align the standard with the new revisions of ISO/IEC 27001;b) to review the existing requirements and to update the terminology and definitions;c) to take account of, as far as possible, requirements associated with standards published since the first edition;d) to take into account the fact that cybersecurity techniques, but also national practices evolve.

Main informations

Collections

International IEC standards

Publication date

November 2019

Number of pages

112 p.

Reference

IEC 62645:2019
Sumary
Nuclear power plants - Instrumentation, control and electrical power systems - Cybersecurity requirements

IEC 62645:2019 establishes requirements and provides guidance for the development and management of effective computer security programmes for I&C programmable digital systems. Inherent to these requirements and guidance is the criterion that the power plant I&C programmable digital system security programme complies with the applicable country?s requirements.
This document defines adequate measures for the prevention of, detection of and reaction to malicious acts by digital means (cyberattacks) on I&C programmable digital systems. This includes any unsafe situation, equipment damage or plant performance degradation.
This second edition cancels and replaces the first edition published in 2014. This edition includes the following significant technical changes with respect to the previous edition:
a) to align the standard with the new revisions of ISO/IEC 27001;
b) to review the existing requirements and to update the terminology and definitions;
c) to take account of, as far as possible, requirements associated with standards published since the first edition;
d) to take into account the fact that cybersecurity techniques, but also national practices evolve.
Replaced standards (2)
IEC 62645:2014
August 2014
International standard Cancelled
Nuclear power plants - Instrumentation and control systems - Requirements for security programmes for computer-based systems

IEC 62645:2014 establishes requirements and provides guidance for the development and management of effective security programmes for I&C computer-based systems for NPPs, possibly integrating HPD (HDL (Hardware Description Language) Programmed Devices), hereinafter named I&C CB&HPD systems. Inherent to these requirements and guidance is the criterion that the power plant I&C CB&HPD system security programme complies with the applicable country's I&C CB&HPD security requirements. The primary objective of this standard is to define adequate programmatic measures for the prevention of, detection of and reaction to malicious acts by digital means (cyber attacks) on I&C CB&HPD systems. This includes any unsafe situation, and equipment damage or plant performance degradation. The contents of the corrigendum of March 2015 have been included in this copy.

International standard Cancelled
Corrigendum 1 - Nuclear power plants - Instrumentation and control systems - Requirements for security programmes for computer-based systems

Need to identify, monitor and decipher standards?

COBAZ is the simple and effective solution to meet the normative needs related to your activity, in France and abroad.

Available by subscription, CObaz is THE modular solution to compose according to your needs today and tomorrow. Quickly discover CObaz!

Request your free, no-obligation live demo

I discover COBAZ