Standard Swedish standard · SS-EN ISO/IEC 27019:2020

Information technology - Security techniques - Information security controls for the energy utility industry (ISO/IEC 27019:2017, Corrected version 2019-08)

Status: Valid

Buy this standard

Standard Swedish standard · SS-EN ISO/IEC 27019:2020

Information technology - Security techniques - Information security controls for the energy utility industry (ISO/IEC 27019:2017, Corrected version 2019-08)
Subscribe on standards - Read more Dölj
Price: 1 320 SEK
standard ikon pdf

PDF

Price: 1 320 SEK
standard ikon

Paper

Price: 2 112 SEK
standard ikon pdf + standard ikon

PDF + paper

Show more Show less
Scope
This document provides guidance based on ISO/IEC 27002:2013 applied to process control systems
used by the energy utility industry for controlling and monitoring the production or generation,
transmission, storage and distribution of electric power, gas, oil and heat, and for the control of
associated supporting processes. This includes in particular the following:
— central and distributed process control, monitoring and automation technology as well as
information systems used for their operation, such as programming and parameterization devices;
— digital controllers and automation components such as control and field devices or Programmable
Logic Controllers (PLCs), including digital sensor and actuator elements;
— all further supporting information systems used in the process control domain, e.g. for supplementary
data visualization tasks and for controlling, monitoring, data archiving, historian logging, reporting
and documentation purposes;
— communication technology used in the process control domain, e.g. networks, telemetry, telecontrol
applications and remote control technology;
— Advanced Metering Infrastructure (AMI) components, e.g. smart meters;
— measurement devices, e.g. for emission values;
— digital protection and safety systems, e.g. protection relays, safety PLCs, emergency
governor mechanisms;
— energy management systems, e.g. of Distributed Energy Resources (DER), electric charging
infrastructures, in private households, residential buildings or industrial customer installations;
— distributed components of smart grid environments, e.g. in energy grids, in private households,
residential buildings or industrial customer installations;
— all software, firmware and applications installed on above-mentioned systems, e.g. DMS (Distribution
Management System) applications or OMS (Outage Management System);
— any premises housing the above-mentioned equipment and systems;
— remote maintenance systems for above-mentioned systems.
This document does not apply to the process control domain of nuclear facilities. This domain is covered
by IEC 62645.
This document also includes a requirement to adapt the risk assessment and treatment processes
described in ISO/IEC 27001:2013 to the energy utility industry-sector–specific guidance provided in
this document.

Subjects

Documents in administration, commerce and industry (01.140.30) Management systems (03.100.70) Quality management and quality assurance (03.120.10) Information sequrity management systems (04.050) Data communication networks (33.040.40) General (35.020) Information coding (35.040) Software development and system documentation (35.080)


Buy this standard

Standard Swedish standard · SS-EN ISO/IEC 27019:2020

Information technology - Security techniques - Information security controls for the energy utility industry (ISO/IEC 27019:2017, Corrected version 2019-08)
Subscribe on standards - Read more Dölj
Price: 1 320 SEK
standard ikon pdf

PDF

Price: 1 320 SEK
standard ikon

Paper

Price: 2 112 SEK
standard ikon pdf + standard ikon

PDF + paper

Show more Show less

Product information

Language: English

Written by: LIS, SIS/TK 318/AG 11

International title:

Article no: STD-80020982

Edition: 1

Approved: 3/30/2020

No of pages: 48