

# Application security
<a name="application-security"></a>


|  **MIDASEC08:** How do you adhere to regulatory guidelines with application teams in industrial environments?  | 
| --- | 
|   | 

 Application teams must align their security controls with recognized industry standards like NIST 800-82, ISO/IEC 27001, and IEC 62443 in industrial environments. Conduct regular security awareness training programs for industrial application teams and implement automated compliance monitoring tools to maintain adherence to regulatory requirements while supporting secure manufacturing operations. 


|  **MIDASEC09:** What practices do you follow for securing OT application systems?  | 
| --- | 
|   | 

 Implement secure coding practices, regular vulnerability scanning, and automated patch management for OT applications and systems. Apply secure coding guidelines for applications and data integrations, perform regular vulnerability assessments and penetration testing, and maintain systematic patch management processes to help protect industrial control systems while verifying operational continuity and compliance with security standards. 

**Topics**
+ [MIDASEC08-BP01 Align security controls with industry standards](midasec08-bp01.md)
+ [MIDASEC08-BP02 Conduct regular security awareness programs](midasec08-bp02.md)
+ [MIDASEC09-BP01 Apply secure coding practices for applications and data integrations](midasec09-bp01.md)
+ [MIDASEC09-BP02 Perform regular vulnerability scans and penetration tests](midasec09-bp02.md)
+ [MIDASEC09-BP03 Automate patch management for ICS and connected data infrastructure](midasec09-bp03.md)