
Security PHA Review for Consequence-Based Cybersecurity
- English
- ePUB (mobile friendly)
- Available on iOS & Android
Security PHA Review for Consequence-Based Cybersecurity
About this book
Security PHA Review for Consequence-Based Cybersecurity presents a practical, process-centric method that uses existing process hazard analysis (PHA) outputs, such as hazard and operability (HAZOP) studies, to determine appropriate cybersecurity requirements for industrial process plants. The objective of the security PHA review (SPR) is to identify process hazard scenarios that could be caused by malicious cyber actions and then either recommend non?hackable safeguards to remove the cyber vector or assign an appropriate ISA/IEC 62443 security level (SL) to guide cybersecurity design and implementation. This approach emphasizes assessing initiating events, reviewing all safeguards (both cyber and non?cyber) and evaluating consequences in the context of an organization's risk tolerance criteria.
This book explains how SLs apply to security zones and how conduits inherit the highest SL among connected zones and situates SPR within the ISA/IEC 62443 lifecycle. It emphasizes a process?hazard perspective rather than equipment?only vulnerability listings, describes practical documentation methods (highlighter annotations, dedicated SPR reports or PHA?software integration) and highlights common non?hackable safeguards (such as mechanical relief devices, buckling pins, motor overload relays and external current monitors) that can reduce required SLs when feasible.
Written so that process engineers, control systems professionals, IT professionals and cybersecurity specialists can learn to integrate IT security with process-safety practices without unnecessary duplication of effort. It provides practical, implementable methods, centered on the SPR approach, to identify cyber-enabled process hazards and to assess and reduce risk in real industrial settings.
Trusted by 375,005 students
Access to over 1 million titles for a fair monthly price.
Study more efficiently using our study tools.
Information
Table of contents
- Cover
- Title
- Copyright
- Contents
- Foreword
- Preface
- About the Authors
- Chapter 1: Introduction
- Chapter 2: Overview of the ISA/IEC 62443 Series
- Chapter 3: Limitations of Cybersecurity Risk Analysis Methods
- Chapter 4: Process Hazard Analysis Overview
- Chapter 5: The SPR Study Process
- Chapter 6: Non-Hackable Safeguards
- Chapter 7: Security PHA Review Examples
- Chapter 8: Conclusions
- Appendix A: Acronyms
- Appendix B: Definitions
- Appendix C: Sample Risk Tolerance Criteria
- Appendix D: ISA/IEC 62443 Security Levels
- Appendix E: Exercise Solutions
- Index
Frequently asked questions
- Essential is ideal for learners and professionals who enjoy exploring a wide range of subjects. Access the Essential Library with 800,000+ trusted titles and best-sellers across business, personal growth, and the humanities. Includes unlimited reading time and Standard Read Aloud voice.
- Complete: Perfect for advanced learners and researchers needing full, unrestricted access. Unlock 1.4M+ books across hundreds of subjects, including academic and specialized titles. The Complete Plan also includes advanced features like Premium Read Aloud and Research Assistant.
Please note we cannot support devices running on iOS 13 and Android 7 or earlier. Learn more about using the app