Skip to content
IACS RadarIndustrial Cyber Exposure & Intelligence
Back to knowledge centre

62443-3-3

IEC 62443-3-3 — System security requirements and security levels

Translates the seven Foundational Requirements into concrete, testable system requirements per Security Level (SL 1 to 4).

For which role

System integrators and asset owners who design, build and accept systems.

Key topics

  • Detailed requirements per Foundational Requirement
  • Security Levels 1 through 4
  • Verification during FAT and SAT

Expected results

  • A system that demonstrably meets the intended Security Level
  • Test evidence from FAT/SAT that the requirements have been met

Relationship to other parts of the standard

Builds on the zone design from -3-2 and is supported by component requirements from -4-2.

Practical example from the energy sector

During the Factory Acceptance Test of a station controller, it is explicitly tested that unauthorised access to the configuration interface is refused, in line with the intended SL.