Certification study · OT security

IEC 62443 Certification Study Guide 2026 by Kai London

Candidates fail IEC 62443 examinations on structure, not on effort — they know industrial security but not how the series divides responsibility between asset owner, integrator and product supplier. This guide teaches the standard the way it is actually examined, and the way it is actually used.

Available on Amazon. An independent study guide — not affiliated with, endorsed by or accredited by any standards body or certification scheme.

What is inside

The series, mapped

How the general, policy, system and component parts fit together, and which part answers which examination question.

Roles and responsibilities

Asset owner, system integrator and product supplier — the distinction candidates most often lose marks on.

Zones, conduits and risk

Partitioning, high-level and detailed risk assessment, and consequence-driven scoping worked through end to end.

Security levels and requirements

Foundational requirements, target versus achieved levels, and system requirements read the way an examiner reads them.

Applied scenarios

Plant-floor situations that force you to choose between defensible answers rather than recall a definition.

Review questions

Exam-style questions with reasoning, so wrong answers teach you something instead of just costing a mark.

Who it is for: OT security practitioners and control engineers preparing for IEC 62443 examinations, and consultants who need the series in working memory rather than in a PDF.

IEC 62443NIS2NERC CIPNIST CSF 2.0
“

Learn the standard as a division of labour and the exam stops being a memory test.

About the author

Professor Kai London — CISSP, CISM.

An internationally recognised cybersecurity executive, board advisor and Founder & CEO of Quantum AI Systems Security LLC, writing at the convergence of AI, governance and operational resilience. Honorary Professor and Researcher at UCL.