Reference: IEC/TR 62443-3-1:2009 (ISA-TR99.00.01-2007), Clause 8
Related:
IEC 62443-3-1 overview
|
Detection in Depth
|
2-1 SPE 7
|
FR 6
Technology categories: Overview | Cl. 5 | Cl. 6 | Cl. 7 | Cl. 8 | Cl. 9 | Cl. 10
Clause 8 pages: Cl. 8 | 8.1 Log auditing | 8.2 Malicious code | 8.3 IDS | 8.4 Vulnerability scanners | 8.5 Forensics | 8.6 Host configuration | 8.7 Software management
You cannot manage what you cannot see. The tools in this clause detect and record; they do not replace prevention (authentication, filtering, hardening). Used together they support accountability, incident recognition and evidence.