A Study on Application Methodology of SPDL Based onIEC 62443 Applicable to SME Environment


KIPS Transactions on Computer and Communication Systems, Vol. 11, No. 6, pp. 193-204, Jun. 2022
https://doi.org/10.3745/KTCCS.2022.11.6.193,   PDF Download:
Keywords: Small and Medium-sized Enterprise(SME) environment, Cyber Security, industrial control system(ICS), IEC 62443, SecureProduct Development Lifecycle(SPDL)
Abstract

In a smart factory environment in a small and medium-sized enterprise (SME) environment, sensors and actuators operating on actual manufacturing lines, programmable logic controllers (PLCs) to manage them, human-machine interface (HMI) to control and manage such PLCs, and consists of operational technology server to manage PLCs and HMI again. PLC and HMI, which are in charge of control automation, perform direct connection with OT servers, application systems for factory operation, robots for on-site automation, and production facilities, so the development of security technology in a smart factory environment is demanded. However, smart factories in the SME environment are often composed of systems that used to operate in closed environments in the past, so there exist a vulnerable part to security in the current environment where they operate in conjunction with the outside through the Internet. In order to achieve the internalization of smart factory security in this SME environment, it is necessary to establish a process according to the IEC 62443-4-1 Secure Product Development Life cycle at the stage of smart factory SW and HW development. In addition, it is necessary to introduce a suitable development methodology that considers IEC 62443-4-2 Component security requirements and IEC 62443-3 System security requirements. Therefore, this paper proposes an application plan for the IEC 62443 based development security process to provide security internalization to smart factories in an SME environment.


Statistics
Show / Hide Statistics

Statistics (Cumulative Counts from September 1st, 2017)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article
[IEEE Style]
J. J. Ha, S. Park, K. J. Tae, K. Han, "A Study on Application Methodology of SPDL Based onIEC 62443 Applicable to SME Environment," KIPS Transactions on Computer and Communication Systems, vol. 11, no. 6, pp. 193-204, 2022. DOI: https://doi.org/10.3745/KTCCS.2022.11.6.193.

[ACM Style]
Jin Jung Ha, SangSeon Park, Kim Jun Tae, and Keunhee Han. 2022. A Study on Application Methodology of SPDL Based onIEC 62443 Applicable to SME Environment. KIPS Transactions on Computer and Communication Systems, 11, 6, (2022), 193-204. DOI: https://doi.org/10.3745/KTCCS.2022.11.6.193.