Cybersecurity by Design
The mySCADA Technologies development team recently completed specialized training on European and international cybersecurity frameworks. As regulations tighten and the threat landscape evolves, understanding these standards isn’t optional — it’s foundational to building trustworthy industrial software.
Standards Covered
RED & EN 18031 — EU standards defining security requirements for radio equipment and wireless devices. These ensure user and data protection across all radio-based technologies embedded in our products.
IEC 62443 — The international standard for securing industrial automation and control systems (OT/ICS). It establishes best practices for designing and maintaining secure operational technology infrastructure — directly relevant to SCADA deployments.
CRA — Cyber Resilience Act — A new EU regulation mandating cybersecurity requirements throughout a product’s entire lifecycle: from initial design, through deployment, maintenance and end-of-life updates.
Security by Design
The training reinforced a core principle: security must be built in from the start, not bolted on afterwards. Key practices we apply:
- Early threat modeling — identify risks during the design phase, not after release
- Least privilege access — users and systems receive only the permissions they need
- Attack resilience — systems remain secure even under active attack
- Lifecycle planning — secure update paths and maintenance processes from day one
- Clear documentation — full auditability and transparency for compliance
This investment ensures that mySCADA products meet today’s regulatory requirements — and are ready for what’s coming.