Building a Resilient World:
The ISAGCA Blog

Welcome to the official blog of the ISA Global Cybersecurity Alliance (ISAGCA).

This blog covers topics on automation cybersecurity such as risk assessment, compliance, educational resources, and how to leverage the ISA/IEC 62443 series of standards.

The material and information contained on this website is for general information purposes only. ISAGCA blog posts may be authored by ISA staff and guest authors from the cybersecurity community. Views and opinions expressed by a guest author are solely their own, and do not necessarily represent those of ISA. Posts made by guest authors have been subject to peer review.

All Posts

ISA Launches New Microlearning Modules for CISOs

As a senior-level executive, the chief information security officer (CISO) plays a pivotal role in establishing and maintaining programs that ensure information technology (IT) and operational technology (OT) assets are adequately protected. This means data protection, risk assessment, cyber incident response, and adherence to standards, policies, and procedures are top priorities. Aside from these responsibilities, keeping up with a cyber landscape that is constantly moving remains at the forefront of many executives’ minds. A recent Proofpoint study discovered that roughly 64% of CISOs around the world suspect a material cyberattack will hit their organization within the next 12 months. Based on these findings, the majority of CISOs believe their organizations are unprepared to fend off potential cyberattacks.

With this in mind, ISA is introducing a new set of microlearning modules (MLMs) focused on specific areas of industrial cybersecurity. ISA microlearning modules consist of short, 5- to 10-minute videos that address cybersecurity challenges and help viewers better understand the purpose of the ISA/IEC 62443 series of standards. The first set of MLMs consists of three videos on cybersecurity awareness and three on cyber use-cases.

The awareness videos, entitled, “IACS Cybersecurity for Chief Information Security Officers (CISOs),” are designed to help CISOs gain more insight and understanding of the ISA/IEC 62443 series of standards. With this newfound knowledge, executives can be better prepared when collaborating with automation engineering colleagues to ensure the improved safety, reliability, and performance of physical process operations.

Executives can expect to learn more about:

  • The differences between IT and OT systems
  • Industrial cybersecurity terminology
  • How IT and OT should work together, what should be protected in each environment, and the associated risks
  • The consequences of implementing a disjointed cybersecurity program (or not having a program entirely)
  • The benefits of implementing the ISA/IEC 62443 series of standards

The use-case MLMs review two cyberattacks on Ukraine in 2015 and 2016, and an attack on a wastewater plant in the United States. These videos examine the causes of the attacks, the ramifications of the attacks, and how a cybersecurity program would have prevented the attacks or mitigated the consequences.

Learn more by visiting the IACS Cybersecurity for CISOs MLM page here.

The ISA MLM program strives to strengthen infrastructure around the world by helping users understand several key aspects of the ISA/IEC 62443 series of standards. This includes why cybersecurity is vital to industries using automation and control processes; the topics, benefits, and company roles covered in the ISA/IEC 62443 series of standards; and how to successfully implement and support a cybersecurity program.

These new MLMs focus on the ISA/IEC 62443 series of standards as a foundation to create a robust cybersecurity program that encompasses all processes, from the boardroom to the plant floor. As the world’s only consensus-based automation and control systems cybersecurity standards, the ISA/IEC 62443 series of standards codifies hundreds of years of OT and internet of things (IoT) cybersecurity subject matter expertise. The standards define the requirements and procedures for implementing secure automation/industrial control systems, establishing security practices, and assessing security performance. The ISA/IEC 62443 series of standards approach cybersecurity challenges in a holistic way, bridging the gap between OT/IT and process safety and cybersecurity.

To learn about ISA’s new Microlearning Modules Program, click here.

Steven Aliano
Steven Aliano
Steven Aliano is the Content Marketing Specialist for ISA & ISAGCA.

Related Posts

Should ISA/IEC 62443 Security Level 2 Be the Minimum for COTS Components?

A recent white paper published by the ISA Security Compliance Institute (ISCI) and its ISASecure certific...
Liz Neiman Apr 23, 2024 5:18:27 PM

How to Secure Machine Learning Data

Data security is paramount in machine learning, where knowledge drives innovation and decision-making. Th...
Zac Amos Mar 12, 2024 11:10:47 AM

Fortifying Your Security Arsenal: A Strategic Approach to Safeguarding OT Security Assets from Adversarial Threats

Introduction Despite investing significant budgets and resources in security products and services. The c...
Mohannad AlRasan Mar 5, 2024 9:17:57 AM