IEC 62443: Threat Modeling an IACS Conduit — A Worked STRIDE Example
- Date
- 2027-01-25
- Location
- Online
- Host
- Zach L
About this event
A live 30-minute expert session on Threat Modeling an IACS Conduit — A Worked STRIDE Example (IEC 62443 — Industrial Cybersecurity). What We'll Cover: Where conduit-level threat modeling sits inside the 62443-3-2 detailed risk assessment and the 4-1 SR practice The worked example step by step: DFD of the conduit, STRIDE per element, scoring, mitigation selection tied to SL-T How identified threats map to specific SRs and the threat model report and mitigation backlog produced Common mistakes: modeling the whole plant at once, threats without an access vector, mitigations never fed back into requirements The traceability an assessor checks: each high-rated threat closed by a requirement, countermeasure or accepted risk Related topics: threat modeling · stride · data flow diagram · conduit t