Place the component
Identify the workload's role, trust boundary, communication paths, dependencies, and operational owner before selecting a baseline.
FRAMEWORKS / ISA/IEC 62443
Select controlled Linux baselines for workloads around industrial automation and control systems while keeping asset-owner, integrator, supplier, and service responsibilities explicit.
PROGRAM CONTEXT
ISA/IEC 62443 addresses industrial automation and control system security across people, processes, technology, and lifecycle roles. A hardened cloud image can support a defined system design, but it cannot stand in for the complete security program or system-level assessment.
Identify the workload's role, trust boundary, communication paths, dependencies, and operational owner before selecting a baseline.
Record which configuration belongs to the image seller, cloud team, integrator, application owner, and asset owner.
Plan how the image will be validated, updated, replaced, monitored, and recovered throughout the workload's service life.
IMAGE SELECTION
Use the workload's system role and lifecycle ownership to narrow the catalog by profile, OS, release, and processor architecture.
Use the named profile and product scope—not the page headline—as the description of image-level hardening.
Confirm application support, release lifecycle, package behavior, and the team's ability to maintain the platform.
Choose x86_64 or arm64 against workload compatibility, tooling, performance, and support requirements.
Test identity, networking, applications, monitoring, recovery, exceptions, and operating procedures before production use.
SECTOR ROUTES
The same program can lead to different infrastructure decisions when uptime, access, ownership, and service consequences change.
NEXT STEP