IEC 62443: Building a CSMS with 62443-2-1 — The Asset Owner's Security Program
- Date
- 2027-05-17
- Location
- Online
- Host
- Zach L
About this event
A live 30-minute expert session on Building a CSMS with 62443-2-1 — The Asset Owner's Security Program (IEC 62443 — Industrial Cybersecurity). What We'll Cover: What a CSMS is, how 62443-2-1 structures it, and where it sits as the asset owner's counterpart to the vendor-facing parts The build step by step: risk analysis, policy and organization, selected countermeasures, implementation, monitoring and improvement How CSMS elements map to 62443-2-1 SPEs and the policy set, roles matrix and audit program it produces Common mistakes: copying the IT ISMS wholesale, no OT-specific incident procedures, CSMS ownership left with corporate IT The evidence an auditor samples: management commitment records, OT risk register, training records and internal audit findings Related topics: csms · iec 62443-2-1 · asset owner · security program · ot governance · security policies · iacs management system · isms vs csms · security organization · continuous improvement · internal audit · security program elements Critical Systems Analysis provides embedded functional safety consulting for IEC 62443 — Industrial Cybersecurity. Learn more: https://criticalsystemsanalysis.com Partner with us: https://meetings.hubspot.com/benjamin-twombly/strategic-partnerships