Skip to content

Product security

What is the difference between IEC 62443-4-1 and 62443-4-2?

LAST REVIEWED

  • 4-1: eight practices, from security management to security update management; evidence is process records.
  • 4-2: component requirements for embedded devices, host devices, network devices and software applications; evidence is demonstrated capability security level.
  • A credible 4-2 claim across releases depends on a 4-1 aligned lifecycle.

Want this answered for your product?

The scope checker gives you a documented read in a few minutes, including a full PDF.