← Home

IEC 62443-3-1 Clause 8 – Management, Audit, Measurement, Monitoring and Detection

Teaching note: Paraphrased from IEC/TR 62443-3-1:2009 (ISA-TR99.00.01-2007) for learning. The technical report is informational, not a requirements standard. Confirm wording in the published TR. Later normative parts (2-1, 3-3, 4-2) state the shalls.

Reference: IEC/TR 62443-3-1:2009 (ISA-TR99.00.01-2007), Clause 8
Related: IEC 62443-3-1 overview | Detection in Depth | 2-1 SPE 7 | FR 6

Technology categories: Overview | Cl. 5 | Cl. 6 | Cl. 7 | Cl. 8 | Cl. 9 | Cl. 10

Clause 8 pages: Cl. 8 | 8.1 Log auditing | 8.2 Malicious code | 8.3 IDS | 8.4 Vulnerability scanners | 8.5 Forensics | 8.6 Host configuration | 8.7 Software management


Purpose

You cannot manage what you cannot see. The tools in this clause detect and record; they do not replace prevention (authentication, filtering, hardening). Used together they support accountability, incident recognition and evidence.


Technologies in this clause