Date

13.11.25

Location

Scandic St Olavs plass
Sankt Olavs Plass 1
0165 Oslo

Program (the program is subject to change)

  • 09:05 - 11:30

    Basic concepts of IEC 62443 and ISO 27001

    Elements of a security program

    IACS lifecycles

    Risk-based approach

    ISMS in operating facilities

    Combining ISO 27001 and IEC 62443

     

    Break at 10:15

  • 11:30

    Lunch

  • 12:15

    How to comply with NIS 2

    The NIS 2 Directive

    Essential and Important Entities: sectors, subsectors and types of entities

    Cybersecurity risk management

    Reporting and information obligations

    Governance

     

    Compliance with NIS 2

    Implementing Acts

    ISMS, Incident Management, Business Continuity, Supply Chain MFA and SSO, Access Control, certified products

    Mapping of NIS 2 requirements to the standards

     

    Breaks at 13:15 and 14:30

Presenters

Dr. Pierre Kobes

Dr. Pierre Kobes has a longstanding experience in the automation division of Siemens. He was responsible during the last ten years of its career for cybersecurity  standards, regulations and certifications. He influenced significantly the development of the standard series ISA/IEC 62443 and is author of the book “Guideline Industrial Security – IEC 62443 is easy!”.

He is active in German and international standardization committees and propagates a holistic approach for the protection of operating facilities as well as the integration of security in development and production of automation products.

Compliance with NIS 2 based on IEC 62443 and ISO 27001

The NIS2 Directive is a significant EU regulation enhancing cybersecurity across member states through a unified legal framework and stricter requirements for critical sectors. It replaces the original NIS Directive to:

  • Strengthen security requirements

  • Address supply chain security

  • Streamline reporting obligations

  • Introduce stricter supervisory measures and harmonised sanctions across the EU.

Together with ISO 27001, the IEC 62443 standard provides operators and asset owners with a framework for establishing comprehensive security programs in industrial environments.

During this course, you will gain an overview of ISO 27001 and IEC 62443, and learn how they relate to the requirements of NIS 2. The session includes practical information exchange on using these standards to achieve NIS 2 compliance.

Target audience

  • Operators and Asset Owners: Facility managers, IT network managers, CISOs/ISOs, and those responsible for cybersecurity, policies, and procedures in operating facilities.

  • Service Providers: System architects, project leaders, CISOs/ISOs in projects, and policy/procedure owners.

  • Product Suppliers: Product managers.

 

Learning targets

  • Asset owners will understand key issues in establishing security programs for their facilities and providing evidence of NIS 2 compliance.

  • Service providers and product suppliers will gain insight into the contributions needed to support customers in fulfilling NIS 2 requirements.

Practical information

Date

13.11.25

Location

Scandic St Olavs plass
Sankt Olavs Plass 1
0165 Oslo

Participation fee

  • Company member NOK. 4 500,-
  • Personal member NOK. 4 500,-
  • Non-member NOK. 5 5000,-

Read more about our cancellation and refund policy by clicking HERE.

Accommodation

Each participant is responsible for booking their own accommodation.