04-21-2020

Standard Number:ISO/IEC 27019-2017
Standard Name:Information technology — Security techniques — Information security controls for the energy utility industry
Standard Size:3.72M
File Format:PDF
Introduction:This document provides guiding principles based on ISO/IEC 27002: 2013″Code of practice for information security controls” for information security management applied to process control systems as used in the energy utility industry. The aim of this document is to extend the contents of ISO/IEC 27002: 2013 to the domain of process control systems and automation technology, thus allowing the energy utility industry to implement a standardized and specific information security management system (ISMS) that is in accordance with ISO/IEC 27001: 2013 and extends from the business to the process control level.
4.1 General
This document is a sector-specific standard related to ISO/IEC 27002: 2013. The energy utility-sector specific reference control objectives and controls are listed in Annex A.
