IAEA Nuclear Security Series No. 17-T Rev.1 Computer Security at Nuclear Facilities
International guidance for computer security at nuclear facilities published by the International Atomic Energy Agency. 14 sections covering computer security management, risk management, defense-in-depth (5 security levels), identification and authentication, access control, system integrity, audit and monitoring, communication security, supply chain security, incident response, contingency planning, personnel security, physical security integration, and assessment and testing. Provides framework for protecting instrumentation and control (I&C) systems including safety-critical systems. Applied globally through national regulatory implementations.
Clauses: 14
Avg Coverage: 76.6%
Publisher: International Atomic Energy Agency (IAEA) Version: Rev.1 (2023) | Clause | Title | SP 800-53 Controls |
|---|---|---|
| Sec 3 | Computer Security Management | |
| Sec 4 | Risk Management | |
| Sec 5.1 | Defense-in-Depth | |
| Sec 5.2 | Identification and Authentication | |
| Sec 5.3 | Access Control | |
| Sec 5.4 | System Integrity | |
| Sec 5.5 | Audit and Monitoring | |
| Sec 5.6 | Communication Security | |
| Sec 6 | Supply Chain Security | |
| Sec 7 | Incident Response | |
| Sec 8 | Contingency Planning | |
| Sec 9 | Personnel Security | |
| Sec 10 | Physical Security Integration | |
| Sec 11 | Assessment and Testing |