Security Basics for Engineers
Practical application of security by design in the engineering process
In order to protect networked machines from security attacks in an industrial environment and, for example, prevent down-time or quality problems, a systematic security strategy is absolutely necessary. The first part of the seminar, ‘Industrial Security for Engineers’, introduces normative recommendations for the introduction of a management system for information security. In the second part, selected stages from the security development life-cycle are explained.
Contents:
- Motivation for industrial security
- Legal foundations
- Security standards and guidelines (IEC 62443, IEC81001-5-1, EN 18031 ISO 2700x)
- Introduction to industrial security with a focus on embedded devices
- Threat modelling
- Security by design
- Security in implementation and integration
- Security testing: vulnerability tests, penetration tests, etc.
- Security guidelines
- Defect and update management
Customer Benefits:
You will learn how “Security by design” in the product lifecycle for security related components is implemented in an industrial environment.
Target Group:
Project managers, product managers, security officers, developers, testers, quality assurance managers
Duration:
1 Day