ISO/IEC 27019:2024

International Standard   Current Edition · Approved on 18 October 2024

Information security, cybersecurity and privacy protection — Information security controls for the energy utility industry

ISO/IEC 27019:2024 Files

English 39 Pages
Current Edition
195.06 USD

ISO/IEC 27019:2024 Scope

This document provides information security controls for the energy utility industry, based on ISO/IEC 27002:2022, for controlling and monitoring the production or generation, transmission, storage and distribution of electric power, gas, oil and heat, and for the control of associated supporting processes. This includes in particular the following:

    central and distributed process control, monitoring and automation technology as well as information systems used for their operation, such as programming and parameterization devices;

    digital controllers and automation components such as control and field devices or programmable logic controllers (PLCs), including digital sensor and actuator elements;

    all further supporting information systems used in the process control domain, e.g. for supplementary data visualization tasks and for controlling, monitoring, data archiving, historian logging, reporting and documentation purposes;

    communication technology used in the process control domain, e.g. networks, telemetry, telecontrol applications and remote-control technology;

    Advanced metering infrastructure (AMI) components, e.g. smart meters;

    measurement devices, e.g. for emission values;

    digital protection and safety systems, e.g. protection relays, safety PLCs, emergency governor mechanisms;

    energy management systems, e.g. for distributed energy resources (DER), electric charging infrastructures, and for private households, residential buildings or industrial customer installations;

    distributed components of smart grid environments, e.g. in energy grids, in private households, residential buildings or industrial customer installations;

    all software, firmware and applications installed on above-mentioned systems, e.g. distribution management system (DMS) applications or outage management systems (OMS);

    any premises housing the abovementioned equipment and systems;

    remote maintenance systems for abovementioned systems.

This document does not apply to the process control domain of nuclear facilities. This domain is covered by IEC 63096.

Best Sellers

GSO 150-2:2013
 
Gulf Standard
Expiration dates for food products - Part 2 : Voluntary expiration dates
YSMO GSO 150-2:2020
GSO 150-2:2013 
Yemeni Technical Regulation
Expiration dates for food products - Part 2 : Voluntary expiration dates
GSO 2055-1:2015
 
Gulf Technical Regulation
HALAL FOOD - Part 1 : General Requirements
YSMO GSO 150-1:2020
GSO 150-1:2013 
Yemeni Technical Regulation
Expiration dates for food products -Part 1 : Mandatory expiration dates

Recently Published

ISO 7944:2024
 
International Standard
Optics and photonics — Reference wavelengths
ISO 21498-2:2024
 
International Standard
Electrically propelled road vehicles — Electrical specifications and tests for voltage class B systems and components — Part 2: Electrical tests for components
ISO 23551-1:2024
 
International Standard
Safety and control devices for gas burners and gas-burning appliances — Particular requirements — Part 1: Automatic and semi-automatic shut-off valves
ISO 13695:2024
 
International Standard
Optics and photonics — Lasers and laser-related equipment — Test methods for the spectral characteristics of lasers