AI-CSP-RA

IEC 62443 Risk Assessment

Turn a network diagram into a defensible risk register.

Lessons

12

Lab hours

8h

Theory hours

35h

Status

Live

Course summary

Master the IEC 62443-3-2 risk-assessment methodology end-to-end. You will partition a reference plant into security zones, model conduits, identify threat actors, and assign target security levels. The course closes with a risk-register workshop that mirrors a real site assessment.

Outcomes

  • Partition a brownfield plant network into IEC 62443 security zones.
  • Model conduits between zones and assign data-flow constraints.
  • Perform a detailed risk analysis per IEC 62443-3-2 clause 5.
  • Map threat-actor capabilities to target security levels.
  • Derive SL-T values and document them in a risk register.
  • Defend a risk-register recommendation in front of a review panel.

Practise in the lab

These hands-on labs are scoped to the same specialist track.