Security for industrial automation and control systems

Part 4-1: Secure product development lifecycle requirements

(IEC 62443-4-1:2018); German version EN IEC 62443-4-1:2018
Class/Status: Standard, valid
Released: 2018-10
VDE Art. No.: 0800517

Specifies process requirements for the secure development of products used in industry automation and control systems. It defines a secure development life-cycle (SDL) including security requirements definition, secure design, secure implementation (including coding guidelines), verification and validation, defect management, patch management and product end-of-life. These requirements can be applied to new or existing processes for developing, maintaining and retiring hardware, software or firmware for new or existing products. These requirements apply to the developer and maintainer of the product, but not to the user of the product.