
Abstract
Specifies process requirements for the secure development of products used in industry automation and control systems. It defines a secure development life-cycle (SDL) including security requirements definition, secure design, secure implementation (including coding guidelines), verification and validation, defect management, patch management and product end-of-life. These requirements can be applied to new or existing processes for developing, maintaining and retiring hardware, software or firmware for new or existing products. These requirements apply to the developer and maintainer of the product, but not to the user of the product.General Information
Publication date: 01 October 2018
ICT rolling plan topic: Digital Product Passport
SDO: IEC
Latest publishied version: https://webstore.iec.ch/publication/33615