Cyber Security Design and Implementation
Participating in this training course will enhance the skill set of those involved to fulfill their responsibilities and undertake activities in compliance with industry recognized security standards such as the IEC 62443, to:
- Reduce the risk of a successful cyber attack
- Satisfy legal and regulatory requirements
- Meet the organisation’s system cybersecurity and business objectives
5 days
Including Exam: £2,500 excl. VAT
Excluding Exam: £2,100 excl. VAT
Outline
- The principles and concepts as provided within the international agreed standard IEC 62443
- The concepts and principles behind international standards and guidelines that cover the area of cyber security and how and when to apply them including:
- Security Risk Assessment (SRA) – IEC 61511-1, ISA TR84.00.09 & IEC 62443
- Cybersecurity Management System (CSMS) – IEC 62443
- Information Security Management System (ISMS) – ISO 27000 series
- Overview of ICS Threats & Vulnerabilities – NIST SP 800 Series
- Cyber Resilience Act (CRA)
- EU Directive on Network and Information Systems (NIS2).
- The IACS cybersecurity lifecycle and the key roles and responsibilities
- Security risk assessment and the interface with security requirements specification
- The IEC 62443 foundational requirements’ countermeasures & their implementation
- High-level and low-level design requirements
- Cybersecurity verification and validation requirements
- The requirements for cybersecurity documents in order to demonstrate conformance
Who is this for?
Functional, Process and Technical Safety Engineers, Control and Instrument Engineers and Managers, Process Engineers, Operations personnel and managers, maintenance staff, consultants, advisors and persons involved in management, engineering, operations and safety of process operations as well as persons with operational experience and who are currently involved in cybersecurity activities on their facilities from within the following process industry user groups:
- Asset Owners / End User
- Engineering Contractors / EPCs
- Power and Automation system integrators
- Service providers
What prior study is recommended?
In accordance with the TÜV Rheinland Functional Safety and Cyber Security Training Program:
- A minimum of 3 years of industrial experience in a related field (e.g. Control & Instrumentation, process engineering, IT/OT, functional safety or cyber security)
- Technical Education or Diploma (University degree) or vocational course qualification
or - Equivalent engineer level experience and responsibilities status as certified by employer/engineering institution on a reference letter
At the end of the course you should be able to:
- The role and the process of Security Risk Assessment (SRA) in gaining an understanding of the security risks and required foundational requirement security measures
- The relationship between Security Level (SL)-T and Cybersecurity Requirements Specification (CRS) to the design and implementation of security countermeasures that achieve the security requirements needed of the determined SL
- How those security measures / countermeasures should be implemented, verified and validated
- The importance of Cybersecurity Lifecyle Management to gain and maintain SL
For groups
This course can be customised and delivered at a location that suits you.
Contact our training team to find out how we can support your training needs.
For individuals
This course is included in our public course schedule.
