Cyber Security Working Group
|
|
|
- Abel Peters
- 10 years ago
- Views:
Transcription
1 Cyber Security Working Group National Institute of Standards and Technology U.S. Department of Commerce 1
2 Energy Independence and Security Act In the Energy Independence and Security Act (EISA) of 2007, Congress established the development of a Smart Grid as a national policy goal. Under EISA, NIST is directed to coordinate the development of a framework that includes protocols and model standards for information management to achieve interoperability of smart grid devices and systems as well as maintain the reliability and security of the electricity infrastructure. 2
3 NIST Three Phase Plan PHASE 1 Identify an initial set of existing consensus standards and develop a roadmap to fill gaps PHASE 2 Establish public/private Standards Panel to provide ongoing recommendations for new/revised standards PHASE 3 Testing and Certification Framework
4 President s Cyberspace Policy Review as the United States deploys new Smart Grid technology, the Federal government must ensure that security standards are developed and adopted to avoid creating unexpected opportunities for adversaries to penetrate these systems or conduct large-scale attacks. 4
5 Cyber Security Working Group (CSWG) To address the cross-cutting issue of cyber security, NIST established the Cyber Security Coordination Task Group (CSCTG) in March Moved under the NIST Smart Grid Interoperability Panel (SGIP) as a standing working group and was renamed the Cyber Security Working Group (SGIP CSWG). The CSWG now has more than 500 participants from the private sector (including vendors and service providers), academia, regulatory organizations, national research laboratories, and federal agencies. 5
6 The CSWG Management Team Marianne Swanson NIST Chair Bill Hunteman DOE, Vice Chair Alan Greenberg Boeing, Vice Chair Dave Dalva CISCO, Vice Chair Mark Enstrom Neustar, Secretary Tanya Brewer NIST Victoria Yan Booz Allen Hamilton Sandy Bacik - EnerNex 6
7 CSWG Meeting Info Weekly telecon Teleconference Day & Time: Mondays, 11am Eastern Time Call-in number: Participant passcode:
8 CWSG Subgroups and Leads AMI Security Group Darren Highfill, Ed Beroset Architecture Group Sandy Bacik Bottom Up Group Andrew Wright; Daniel Thanos Crypto and Key Management Group Daniel Thanos; Doug Biggs; Tony Metke Design Principles Group Daniel Thanos Privacy Group Rebecca Herold R & D Group Isaac Ghansah; Daniel Thanos Security Testing and Certification Group Nelson Hastings, Sandy Bacik, and Robert Former Standards Group Frances Cleveland Vulnerabilities Group Matt Carpenter, Matt Thomson 8
9 Guidelines for Smart Grid Cyber Security NIST Interagency Report August 2010 Development of the document lead by NIST Represents significant coordination among Federal agencies Private sector Regulators Academics 9
10 NISTIR 7628 What it IS and IS NOT What it IS A tool for organizations that are researching, designing, developing, and implementing Smart Grid technologies May be used as a guideline to evaluate the overall cyber risks to a Smart Grid system during the design phase and during system implementation and maintenance Guidance for organizations Each organization must develop its own cyber security strategy (including a risk assessment methodology) for the Smart Grid. What it IS NOT It does not prescribe particular solutions It is not mandatory 10
11 New Activities Introduction to NISTIR Page description of the document content Written for utility or security personnel SGIP Priority Action Plan (PAP) Collaboration Cyber Security Review of Standards Completed - 5 Common Information Model Standards, NEMA Smart Meter Upgradeability Standard, 3 SAE Standards, the AEIC Metering Guidelines, the NAESBY Energy Usage Information, NIST Wireless Guidelines (future NISTIR), OASIS WS-Calendar Future - AMI Standards and Renewables Standards Ongoing work by some of the Subgroups 11
12 Outreach Completed University of Washington - Seattle, July 2010 Cal Poly Pomona, August 2010 CPUC San Francisco, September 2010 University of Illinois Champaign, 5 November 2010 Georgia Tech Atlanta, November 2010 (following NARUC meeting) 12
13 Outreach Going Forward Northeastern University Boston, MA 18 January 2010 New York PUC Albany, NY 19 January 2010 Ohio PUC Columbus, OH 26 January 2011 University of Maryland, Baltimore Co. Baltimore, MD 15 February 2011 Public Utility Commission of Texas 23 February
14 How to Participate in CSWG NIST Smart Grid portal Cyber Security Working Group Lead: Marianne Swanson NIST Support: Tanya Brewer Cyber Security Twiki site 14
Cyber Security Working Group
Cyber Security Working Group Guidelines for Smart Grid Cyber Security (NISTIR 7628) National Institute of Standards and Technology U.S. Department of Commerce 1 Today s Electric Grid Markets and Operations
NIST and the Smart Grid
NIST and the Smart Grid NISTIR 7628, Guidelines for Smart Grid Cyber Security National Institute of Standards and Technology U.S. Department of Commerce September 28, 2010 1 Welcome Thank You California
NIST Coordination and Acceleration of Smart Grid Standards. Tom Nelson National Institute of Standards and Technology 8 December, 2010
NIST Coordination and Acceleration of Smart Grid Standards Tom Nelson National Institute of Standards and Technology 8 December, 2010 The Electric Grid One of the largest, most complex infrastructures
Securing the Grid. Marianne Swanson, NIST Also Moderator Akhlesh Kaushiva (AK), DOE Lisa Kaiser, DHS Leonard Chamberlin, FERC Brian Harrell, NERC
1 Securing the Grid Marianne Swanson, NIST Also Moderator Akhlesh Kaushiva (AK), DOE Lisa Kaiser, DHS Leonard Chamberlin, FERC Brian Harrell, NERC February 27, 2012 NIST and the SGIP 2.0 Cybersecurity
Consulting International
NIST Cyber Security Working Group (CSWG) NISTIR 7628: NIST Guidelines for Smart Grid Cyber Security Frances Cleveland Xanthus Consulting International Xanthus Consulting International [email protected]
Cybersecurity in the Utilities Sector Best Practices and Implementation 2014 Canadian Utilities IT & Telecom Conference September 24, 2014
Cybersecurity in the Utilities Sector Best Practices and Implementation 2014 Canadian Utilities IT & Telecom Conference September 24, 2014 Victoria Yan Pillitteri Advisor for Information Systems Security
National Institute of Standards and Technology Smart Grid Cybersecurity
National Institute of Standards and Technology Smart Grid Cybersecurity Vicky Yan Pillitteri Advisor for Information Systems Security SGIP SGCC Chair [email protected] 1 The National Institute of Standards
Cybersecurity & Public Utility Commissions
Cybersecurity & Public Utility Commissions November 12, 2014 TCIPG Ann McCabe, Commissioner Illinois Commerce Commission NARUC (National Association of Regulatory Utility Commissioners) Cybersecurity Primer
Introduction to NISTIR 7628 Guidelines for Smart Grid Cyber Security
Introduction to NISTIR 7628 Guidelines for Smart Grid Cyber Security The Smart Grid Interoperability Panel Cyber Security Working Group September 2010 Table of Contents Table of Contents...2 1. Introduction
Testimony of Patrick D. Gallagher, Ph.D. Deputy Director
Testimony of Patrick D. Gallagher, Ph.D. Deputy Director National Institute of Standards and Technology United States Department of Commerce Before the Committee on Energy and Natural Resources United
64th Annual National Moot Court Competition Regional Sponsors List
Sept. 23, 2013 64th Annual National Moot Court Competition Regional Sponsors List REGION 1 SUFFOLK UNIVERSITY LAW SCHOOL Julie A. Baker, Associate Professor of Legal Writing Suffolk University Law School
Grid Modernization and Smart Grid
Grid Modernization and Smart Grid Paul Molitor, Assistant Vice President Origins of Smart Grid in the U.S. The Blackout of 1965 25 million people affected 80,000 square miles Congressional Hearings Cites
Utility-Scale Applications of Microgrids: Moving Beyond Pilots Cyber Security
Boeing Defense, Space & Security Ventures Utility-Scale Applications of Microgrids: Moving Beyond Pilots Cyber Security Tristan Glenwright - Boeing BOEING is a trademark of Boeing Management Company. The
Button. Dr. Martin J. Burns President, Hypertek Inc. for NIST
Testing and Certification for Green Button Dr. Martin J. Burns President, Hypertek Inc. for NIST OpenADE: Green Button Test Plan 2 What is Green Button SGIP PAP20 Green Button ESPI Evolution Why we need
National Bureau for Academic Accreditation And Education Quality Assurance PUBLIC HEALTH
1 GEORGE WASHINGTON UNIVERSITY WASHINGTON DC B Athletic Training 1 MA B 1 BROWN UNIVERSITY PROVIDENCE RI B EAST TENNESSEE STATE UNIVERSITY JOHNSON CITY TN B 3 HUNTER COLLEGE NEW YORK NY B 4 UNIVERSITY
Cyber Security and Privacy - Program 183
Program Program Overview Cyber/physical security and data privacy have become critical priorities for electric utilities. The evolving electric sector is increasingly dependent on information technology
DEVELOPING A CYBERSECURITY POLICY ARCHITECTURE
TECHNICAL PROPOSAL DEVELOPING A CYBERSECURITY POLICY ARCHITECTURE A White Paper Sandy Bacik, CISSP, CISM, ISSMP, CGEIT July 2011 7/8/2011 II355868IRK ii Study of the Integration Cost of Wind and Solar
Risk Management, Equipment Protection, Monitoring and Incidence Response, Policy/Planning, and Access/Audit
Page 1 of 10 Events Partners Careers Contact Facebook Twitter LinkedIn Pike Research Search search... Home About Research Consulting Blog Newsroom Media My Pike Logout Overview Smart Energy Clean Transportation
ZigBee IP Stack Overview Don Sturek Pacific Gas and Electric (PG&E) 2009 ZigBee Alliance. All rights reserved. 1
ZigBee IP Stack Overview Don Sturek Pacific Gas and Electric (PG&E) 1 Presenter Background Pacific Gas and Electric Company Northern and Central California Gas and Electric Utility Company (including San
Bridging the knowledge gap between power engineering and cyber security: Imparting the interdisciplinary knowledge in cyber security for power systems
1 Bridging the knowledge gap between power engineering and cyber security: Imparting the interdisciplinary knowledge in cyber security for power systems Peter W. Sauer University of Illinois at Urbana-Champaign
NIST Cloud Computing Program
NIST Program USG Roadmap Top 10 high priority requirements to accelerate USG adoption of the model NIST Mission: To promote U.S. innovation and industrial competitiveness by advancing measurement science,
future data and infrastructure
White Paper Smart Grid Security: Preparing for the Standards-Based Future without Neglecting the Needs of Today Are you prepared for future data and infrastructure security challenges? Steve Chasko Principal
Cyber Infrastructure for the Smart Grid
Cyber Infrastructure for the Smart Grid Dr. Anurag K. Srivastava, Dr. Carl Hauser, and Dr. Dave Bakken Smart Grid Use Cases: Part 2 SGIC Xcel Energy SG Xcel Energy A public Service company of Colorado
Appendix D. Petersens Guide Listings for PhD in Public Policy
Appendix D Petersens Guide Listings for PhD in Public Policy Brandeis University Waltham, MA Program in Social Justice and Social Policy Claremont Graduate University Claremont, CA Department of Economics
US News & World Report Best Undergraduate Engineering Programs: Specialty Rankings 2014 Rankings Published in September 2013
US News & World Report Best Undergraduate Engineering Programs: Specialty Rankings 2014 Rankings Published in September 2013 Aerospace/Aeronautical/Astronautical 2 Georgia Institute of Technology Atlanta,
SGIG Cyber Security Program Review Process
SGIG Cyber Security Program Review Process A. DAVID MCKINNON, PH.D. Cyber Security Group, National Security Directorate TCIPG Industry Workshop 2014 November 14, 2014 PNNL-SA-106570 1 SGIG Cyber Security
Using Architecture to Guide Cybersecurity Improvements for the Smart Grid
Using Architecture to Guide Cybersecurity Improvements for the Smart Grid Elizabeth Sisley, Ph.D. 1 Agenda Context US Smart Grid 7 Domains Logical Reference Model Cybersecurity requirements ConfidenCality,
RESEARCH CALL TO DOE/FEDERAL LABORATORIES. Cybersecurity for Energy Delivery Systems Research Call RC-CEDS-2012-02
RESEARCH CALL TO DOE/FEDERAL LABORATORIES Cybersecurity for Energy Delivery Systems Research Call RC-CEDS-2012-02 CONTACT: Diane Hooie, Project Manager TELEPHONE NUMBER: (304) 285-4524 FAX NUMBER: (304)
ADVANCED DISTRIBUTION MANAGEMENT SYSTEMS OFFICE OF ELECTRICITY DELIVERY & ENERGY RELIABILITY SMART GRID R&D
ADVANCED DISTRIBUTION MANAGEMENT SYSTEMS OFFICE OF ELECTRICITY DELIVERY & ENERGY RELIABILITY SMART GRID R&D Eric Lightner Director Federal Smart Grid Task Force July 2015 2 OE Mission The Office of Electricity
Highlights & Next Steps
USG Cloud Computing Technology Roadmap Highlights & Next Steps NIST Mission: To promote U.S. innovation and industrial competitiveness by advancing measurement science, standards, and technology in ways
Cyber Security. Smart Grid
Cyber Security for the Smart Grid Peter David Vickery Executive Vice President N-Dimension Solutions Inc. APPA National Conference June 21, 2010 Cyber Security Solutions For Cyber Security
DOE Cyber Security Policy Perspectives
DOE Cyber Security Policy Perspectives Mike Smith Senior Cyber Policy Advisor to the Assistant Secretary Department of Energy Overview of DOE Cybersecurity Priorities Protecting the DOE Enterprise from
US Department of Health and Human Services Exclusion Program. Thomas Sowinski Special Agent in Charge/ Reviewing Official
US Department of Health and Human Services Exclusion Program Thomas Sowinski Special Agent in Charge/ Reviewing Official Overview Authority to exclude individuals and entities from Federal Health Care
SOFTWARE AND HARD TARGETS: ENHANCING SMART GRID CYBER SECURITY IN THE AGE OF INFORMATION WARFARE. Energy Security Initiative
Energy Security Initiative at BROOKINGS ENHANCING SMART GRID CYBER SECURITY IN THE AGE OF INFORMATION WARFARE Charles Ebinger Kevin Massy FEBRUARY 2011 Policy Brief 11-01 Energy Security Initiative at
National Bureau for Academic Accreditation And Education Quality Assurance
1 ARKANSAS STATE UNIVERSITY - STATE UNIV. AR M JONESBORO 2 AUBURN UNIVERSITY - AUBURN AUBURN AL MD 3 BALL STATE UNIVERSITY MUNCIE IN M 4 CALIFORNIA STATE UNIVERSITY - ^ Enrollment to the ESL program and
Cyber Security Health Test
ENERGY Cyber Security Health Test Robin Massink 20-05-2014 1 DNV GL 2013 2014 20-12-2013 SAFER, SMARTER, GREENER Cyber security issues facing the utility industry We are moving from IEC60870-5-101/ DNP3
The NIST Definition of Cloud Computing
Special Publication 800-145 The NIST Definition of Cloud Computing Recommendations of the National Institute of Standards and Technology Peter Mell Timothy Grance NIST Special Publication 800-145 The NIST
How Much Cyber Security is Enough?
How Much Cyber Security is Enough? Business Drivers of Cyber Security Common Challenges and Vulnerabilities Cyber Security Maturity Model Cyber Security Assessments September 30, 2010 Business in the Right
WWW.IMMIGRANTJUSTICE.ORG/KIDS
On the following pages you will find addresses for: Dept. of Justice Immigration Courts AND Dept. of Homeland Security Offices of Chief Counsel (OCC) DISCLAIMER: The most current addresses for DOJ Immigration
Guideline for the Implementation of Coexistence for Broadband Power Line Communication Standards
NISTIR 7862 Guideline for the Implementation of Coexistence for Broadband Power Line Communication Standards Dr. David Su Dr. Stefano Galli http://dx.doi.org/10.6028/nist.ir.7862 1 NISTIR 7862 Guideline
Risk Management in Practice A Guide for the Electric Sector
Risk Management in Practice A Guide for the Electric Sector Annabelle Lee Senior Technical Executive ICCS European Engagement Summit April 28, 2015 Before we continue let s get over our fears and myths
IEEE-Northwest Energy Systems Symposium (NWESS)
IEEE-Northwest Energy Systems Symposium (NWESS) Paul Skare Energy & Environment Directorate Cybersecurity Program Manager Philip Craig Jr National Security Directorate Sr. Cyber Research Engineer The Pacific
Fast Facts About The Cyber Security Job Market
Cybersecurity Cybersecurity is the measures taken to protect a computer or computer system (as on the Internet) against unauthorized access or attack. Cybersecurity is the faster growing IT job, growing
Green Cloud Computing: Case Study Sri Lanka & Pakistan
Green Cloud Computing: Case Study Sri Lanka & Pakistan 28-30 July 2015 Colombo, Sri Lanka Sameer Sharma, Senior Advisor Regional Office Asia-Pacific Recalling ITU TRCSL Workshop in 2013 ITU TRCSL Workshop
Cyber Security Risk Management: A New and Holistic Approach
Cyber Security Risk Management: A New and Holistic Approach Understanding and Applying NIST SP 800-39 WebEx Hosted by: Business of Security and Federal InfoSec Forum April 12, 2011 Dr. Ron Ross Computer
Testimony of. Before the United States House of Representatives Committee on Oversight and Government Reform And the Committee on Homeland Security
Testimony of Dr. Phyllis Schneck Deputy Under Secretary for Cybersecurity and Communications National Protection and Programs Directorate United States Department of Homeland Security Before the United
THE 411 ON CYBERSECURITY, INFORMATION SHARING AND PRIVACY
THE 411 ON CYBERSECURITY, INFORMATION SHARING AND PRIVACY DISCLAIMER Views expressed in this presentation are not necessarily those of our respective Departments Any answers to questions are our own opinions
ELECTRICITY SECTOR CYBERSECURITY RISK MANAGEMENT PROCESS GUIDELINE
1 2 3 4 5 6 7 ELECTRICITY SECTOR CYBERSECURITY RISK MANAGEMENT PROCESS GUIDELINE 8 9 U.S. Department of Energy 10 11 12 13 14 15 16 17 18 19 20 21 22 SEPTEMBER 2011 23 Draft for Public Comment 24 2 Draft
National Bureau for Academic Accreditation And Education Quality Assurance
1 ARIZONA STATE UNIVERSITY - TEMPE TEMPE AZ MD 2 BOSTON COLLEGE CHESTNUT HILL MA B 3 BOSTON UNIVERSITY ^ BOSTON MA B 4 CASE WESTERN RESERVE UNIVERSITY CLEVELAND OH B ^ D in Music is for Residential Program
Cybersecurity in the Energy/Utility Sectors
Cybersecurity in the Energy/Utility Sectors Hon. Todd Snitchler Chairman Thomas Pearce Senior Utility Specialist Chair, NARUC Staff Subcommittee on Critical Infrastructure Thursday, March 21, 2013 Ohio
Asset Management Challenges and Options, Including the Implications and Importance of Aging Infrastructure
Asset Management Challenges and Options, Including the Implications and Importance of Aging Infrastructure Presentation to the U.S. Department of Energy by the IEEE Joint Task Force on QER Trends: Resilience
What Risk Managers need to know about ICS Cyber Security
What Risk Managers need to know about ICS Cyber Security EIM Risk Managers Conference February 18, 2014 Joe Weiss PE, CISM, CRISC, ISA Fellow (408) 253-7934 [email protected] ICSs What are they
Cyber Security Presentation. Ontario Energy Board Smart Grid Advisory Committee. Doug Westlund CEO, N-Dimension Solutions Inc.
Cyber Security Presentation Ontario Energy Board Smart Grid Advisory Committee Doug Westlund CEO, N-Dimension Solutions Inc. October 1, 2013 Cyber Security Protection for Critical Infrastructure Assets
STATEMENT OF PATRICIA HOFFMAN ACTING ASSISTANT SECRETARY FOR ELECTRICITY DELIVERY AND ENERGY RELIABILITY U.S. DEPARTMENT OF ENERGY BEFORE THE
STATEMENT OF PATRICIA HOFFMAN ACTING ASSISTANT SECRETARY FOR ELECTRICITY DELIVERY AND ENERGY RELIABILITY U.S. DEPARTMENT OF ENERGY BEFORE THE COMMITTEE ON ENERGY AND NATURAL RESOURCES UNITED STATES SENATE
Homeland Open Security Technology HOST Program
Homeland Open Security Technology HOST Program Informational Briefing August 2011 Sponsored by: U.S. Department of Homeland Security Science and Technology Directorate Implemented by: Open Technology Research
Smart Meter Capabilities and Implications for Net Metering. MADRI Smart Meters and Distributed Resource Data Issues
Smart Meter Capabilities and Implications for Net Metering MADRI Smart Meters and Distributed Resource Data Issues Presented by: Robert Stewart, Manager of Advanced Technology and New Business February
Panel Session: Lessons Learned in Smart Grid Cybersecurity
PNNL-SA-91587 Panel Session: Lessons Learned in Smart Grid Cybersecurity TCIPG Industry Workshop Jeff Dagle, PE Chief Electrical Engineer Advanced Power and Energy Systems Pacific Northwest National Laboratory
National Cybersecurity Challenges and NIST. Donna F. Dodson Chief Cybersecurity Advisor ITL Associate Director for Cybersecurity
National Cybersecurity Challenges and NIST Donna F. Dodson Chief Cybersecurity Advisor ITL Associate Director for Cybersecurity Though no-one knows for sure, corporate America is believed to lose anything
Cybersecurity and the Evolving Role of State Regulation: How it Impacts the California Public Utilities Commission
Cybersecurity and the Evolving Role of State Regulation: How it Impacts the California Public Utilities Commission GRID PLANNING AND RELIABILITY POLICY PAPER Elizaveta Malashenko ENERGY DIVISION Chris
Cyber Risk to Help Shape Industry Trends in 2014
Cyber Risk to Help Shape Industry Trends in 2014 Rigzone Staff 12/18/2013 URL: http://www.rigzone.com/news/oil_gas/a/130621/cyber_risk_to_help_shape_industry_trends_i n_2014 The oil and gas industry s
12/4/2013. Regulatory Updates. Eric M. Wright, CPA, CITP. Schneider Downs & Co., Inc. December 5, 2013
Regulatory Updates Eric M. Wright, CPA, CITP Schneider Downs & Co., Inc. December 5, 2013 Eric M. Wright, CPA, CITP Eric has been involved with Information Technology with Schneider Downs since 1983. He
Framework for Improving Critical Infrastructure Cybersecurity
Framework for Improving Critical Infrastructure Cybersecurity 18 November 2015 [email protected] [email protected] National Institute of Standards and Technology About NIST NIST s mission is to develop
Facilitated Self-Evaluation v1.0
Electricity Subsector Cybersecurity Capability Maturity Model (ES-C2M2) Patricia Hoffman Facilitated Self-Evaluation v1.0 Assistant Secretary Office of Electricity Delivery and Energy Reliability U.S.
Community Cyber Security. Center for Infrastructure Assurance and Security
Community Cyber Security Overview CIAS program Nevada implementation Get involved Physical and Cyber Threats Intersect The most destructive scenarios involve cyber actors launching several attacks on our
NISTIR 7359 Information Security Guide For Government Executives
NISTIR 7359 Information Security Guide For Government Executives Pauline Bowen Elizabeth Chew Joan Hash NISTIR 7359 Information Security Guide For Government Executives Pauline Bowen Elizabeth Chew Joan
