Quillnet
Standards
CRA - Manufacturer
IEC-62443-2-1
IEC-62443-4-1
6.3.1: Security Risk Mitigation
Mandatory
Requirement:
The asset owner shall have policies and procedures around identifying, documenting, and mitigating or otherwise managing IACS cybersecurity risks, including determining a tolerable risk level and responding to risks outside that tolerable risk level.
Guidance: