Product security
What is the difference between IEC 62443-4-1 and 62443-4-2?
LAST REVIEWED
- 4-1: eight practices, from security management to security update management; evidence is process records.
- 4-2: component requirements for embedded devices, host devices, network devices and software applications; evidence is demonstrated capability security level.
- A credible 4-2 claim across releases depends on a 4-1 aligned lifecycle.
Want this answered for your product?
The scope checker gives you a documented read in a few minutes, including a full PDF.