Тезис
This document provides for information security controls for the energy utility industry, based on ISO/IEC 27002:2022 for controlling and monitoring the production or generation, transmission, storage and distribution of electric power, gas, oil and heat, and for the control of associated supporting processes. This includes in particular the following:
— central and distributed process control, monitoring and automation technology as well as information systems used for their operation, such as programming and parameterization devices;
— digital controllers and automation components such as control and field devices or Programmable Logic Controllers (PLCs), including digital sensor and actuator elements;
— all further supporting information systems used in the process control domain, e.g. for supplementary data visualization tasks and for controlling, monitoring, data archiving, historian logging, reporting and documentation purposes;
— communication technology used in the process control domain, e.g. networks, telemetry, telecontrol applications and remote control technology;
— Advanced Metering Infrastructure (AMI) components, e.g. smart meters;
— measurement devices, e.g. for emission values;
— digital protection and safety systems, e.g. protection relays, safety PLCs, emergency governor mechanisms;
— energy management systems, e.g. of Distributed Energy Resources (DER), electric charging infrastructures, in private households, residential buildings or industrial customer
installations;
— distributed components of smart grid environments, e.g. in energy grids, in private households, residential buildings or industrial customer installations;
— all software, firmware and applications installed on above-mentioned systems, e.g. DMS (Distribution Management System) applications or OMS (Outage Management System);
— any premises housing the above-mentioned equipment and systems;
— remote maintenance systems for above-mentioned systems.
This document does not apply to the process control domain of nuclear facilities. This domain is covered by IEC 63096 [4].
Общая информация
-
Текущий статус: В стадии разработкиДата публикации: 2024-10Этап: Подготовка международного стандарта к публикации [60.00]
-
Версия: 2
-
Технический комитет :ISO/IEC JTC 1/SC 27ICS :35.030
- RSS обновления
Жизненный цикл
-
Ранее
ОпубликованоISO/IEC 27019:2017
-
Сейчас
-
00
Предварительная стадия
-
10
Стадия, связанная с внесением предложения
-
20
Подготовительная стадия
-
30
Стадия, связанная с подготовкой проекта комитета
-
40
Стадия, связанная с рассмотрением проекта международного стандарта
-
50
Стадия, на которой осуществляется принятие стандарта
-
60
Стадия, на которой осуществляется публикация
-
90
Стадия пересмотра
-
95
Стадия, на которой осуществляется отмена стандарта
-
00