Quillnet
Standards
CRA - Manufacturer
IEC-62443-2-1
IEC-62443-4-1
9.4.5: Security patch mitigation
Mandatory
Requirement:
The asset owner shall have policies and procedures related to assessing the risk of not installing any applicable security patches, and if the risk is not tolerable, addressing the risk and documenting the resolution.
Guidance: