Cybersecurity: Lessons Learned from DOE Projects
|
|
|
- Juniper Webb
- 10 years ago
- Views:
Transcription
1 1 Cybersecurity: Lessons Learned from DOE Projects Mark Morgan: PNNL Ginger Armstrong: CMEEC Sue Blanchette: Groton Utilities Scott Franklin: Exelon Paul Hartung: NOVEC
2 2 Program Outline Background: SGIG Process Results/Observations Federal Role moving forward Awardee perspective
3 3 Just the facts, Ma'am Smart Grid Investment Grant (SGIG) was funded by the 2009 ARRA and managed through DOE 400+ applied 99 Grants awarded $3.4B of federal funding, matched by $4.4B of private sector funding
4 4 Just the facts, Ma'am Broad distribution of Utility Types Diverse range of Utilities (size) and award values Broad mixture of technology types Transmission (10) Distribution (13) AMI (31) Customer Systems (5) Cross-cutting (40)
5 5 The Role of Cyber in SGIG Cybersecurity requirements built in from the outset Pre-award: Addressed in proposal Post-award: Prior to work starting the awardee was required to develop and submit a Cybersecurity Plan (CSP) Annually: DOE site visit with a dedicated discussion of cyber implementation progress and alignment with approved CSP Site visits occurred from 2011 through 2014
6 6 The Cyber Team DOE requested PNNL to establish a team to support the lifecycle of the program Drew from Universities, National Labs, and private industry Established processes and conducted site visits Established resources to aid utilities
7 7 Site Visit Analysis Process Data/Grades for 13 criteria were collected and analyzed from the site visits using a green/yellow/red rating scale Demographics were collected and the awards were classified into one of 3 categories; PUD/Cites, Rural Electric/Cooperatives, and Transmission & Generation Grades and changes in grade were determined
8 8 Site Visit Results Highest performers were Transmission & Generation followed by Cities/PUD s and then Rural Electrics/Cooperatives Highest gains in performance was demonstrated by Cities/PUD s followed by Rural Electrics/Cooperatives and then Transmission & Generation
9 9 Example Data Results RE/COOP Normalized Score (%) Average 2013 Average Change in Average CP RE/COOP T&G (1.0) All Portfolio
10 10 Major Observations Cybersecurity built in not bolt on Benefits in both cost and accountability White Hat, not Black Hat as a future role model Corporate Cyber vs. Operations Cyber Benefits to industry and DOE Value of a standards based approach Senior Management accountability Vendors response The benefits of the CSP during and after the project
11 11 Sustaining the Momentum Cybersecurity is not fire and forget Large family that includes a Government role Examples of Federal roles: DOE:Electricity Subsector Cybersecurity Capability Maturity Model (ES-C2M2) NIST: Framework DHS: US-CERT NERC: ES-ISAC Excellent non-federal resources such as National Rural Electric Cooperative Association (NRECA)
12 Awardee Perspective 12
13 13 Program Project No: CYBER SECURITY PROJECT Presenters: Ginger Armstrong Sue Blanchette
14 Who We Are Groton Utilities provides electric service to two separate service territories: City of Groton, CT and Bozrah Light and Power (BL&P). GU also provides water and sewer to customers in the City of Groton. South Norwalk Electric and Water (SNEW) provides electric and water services to customers in South Norwalk, CT Jewett City Department of Public Utilities (JCDPU) provides electric and sewer services to customers in the borough of Jewett City, CT Norwich Public Utilities (NPU) provides electric, water, sewer and gas services to customers in the city of Norwich, CT Connecticut Municipal Electric Energy Cooperative (CMEEC) is a joint action agency that provides wholesale energy procurement, small capacity demand response generation, limited high voltage transmission resources and the management of energy efficiency programs on behalf of its wholesale customers 14
15 15 Demographics Characteristic BL&P GU NPU JCDPU SNEW CMEEC Customers 2,700 13,496 20,900 2,200 6, Total Employees IT Employees Peak Load (MW) Annual Energy (million KWh) ,006 Service Territory (Square Miles) Distribution Line Miles
16 16 Technical Scope ConnSMART Program Technical Scope Program Management Metering & Communications Interval Data Processing & Presentment Customer Demand Management Distribution Automation Project Management DOE Grant Administration We are Here Wholesale Business Intelligence Security Controls and Testing Cyber Security Planning & Compliance
17 17 Cyber Security in the Boardroom Executive Buy-In Company-wide Buy-In Board Education and Buy-In Plan approval Value of & Need for Awareness Training Incorporate as regularly reported CS metric at Staff and Board meetings
18 18 Vendor Readiness Smart Grid hardware still maturing Software design basis lacking in Cyber Security considerations Vendor reluctance to comply with CSPs Federal and Industry Standards slow to develop, vendors unaware of requirements Many delays due to lack of vendor readiness
19 19 Tools that made life easier Frequent Cyber Security Team meetings Team developed Cyber Security Status Tracking tool early on in project Use of outside subject matter experts Information exchange during DOE Site visits Vulnerability assessments engagements Boston Cream donuts, Strong coffee & Humor
20 20 Now what? Money & People Funding Cyber Security into the future Continued Board understanding & support Staffing Outsourcing Working without a net Managing risk, monitoring evolving threats and advancing technologies
21 21 What would you do differently? Better job of management buy-in at beginning Tighter collaboration between the vendors from the start Better understanding of resource and funding requirements for Cyber Security Vendor proof of concept Staff dedicated to project and the future
22 22 Thank You Let us rise up and be thankful, for if we didn t learn a lot today, at least we learned a little, and if we didn t learn a little, at least we didn t get sick, and if we got sick, at least we didn t die; so, let us all be thankful. Buddha
23 23 Cybersecurity Lessons Learned at NOVEC Paul Hartung, PE Manager Substation & Telecommunications
24 24 Outline Overview of NOVEC DOE Grant Background Cybersecurity Implementations Cybersecurity Roadmap Lessons Learned
25 25 Overview of NOVEC Northern Virginia Electric Cooperative (NOVEC) provides reliable electric service to more than 155,000 homes and businesses located in Clarke, Fairfax, Fauquier, Loudoun, Prince William and Stafford counties, the City of Manassas Park and the Town of Clifton, all in the state of Virginia. NOVEC's service territory encompasses 651 square miles with more than 6,880 miles of power lines. Summer peak load of ~925MW 53 Substations with Intelligent Electronic Devices (IED) communicating over fiber, microwave, radio and cellular networks.
26 26 DOE Grant Goals Substation Automation: Install modern digital control equipment to better monitor and control substation assets Feeder automation Voltage Regulator Peak Demand Voltage Reduction program Utilize DNP 3.0 Distribution Automation The VAR control project will strategically place switched capacitor banks Install remotely controlled switching devices consisting of intelligent electronic reclosers and Motor Operated switches to improve reliability utilizing two-way communications for data collection and remote control.
27 27
28 NOVEC s Cybersecurity Enhancements for SCADA 28 SGIG Project: Developed a Cybersecurity (CS) Plan Conducted SCADA Security Assessment Guiding Principle No SCADA connection to the internet Electronic and physical separation from the corporate network and from the internet - SCADA Firewall and DMZ solution Controlled internal SCADA access Implemented a manual disconnect process for remote vendor access Enhanced access controls for vendor and internal support Operational audit capability - Implemented centralized logging and monitoring access to the SCADA and Substations environments Installed and configured Intrusion Detection technology
29 29 Network Segregation Implemented DMZ architecture Eliminated direct inbound connections to SCADA Implemented more secure remote access method Includes private fiber and MPLS network
30 30 Log Management Centralized SCADA security event logs Implemented Solar Winds Log & Event Manager (LEM) Drafted log management policy and procedure Daily log review
31 31 Intrusion Detection Implemented SourceFire Intrusion Detection System at key SCADA and Substations network chokepoints
32 32 Vendor Access Controls Vendor support now requires pre-coordinated and a physical connect/disconnect process instead of full time VPN access SCADA administrators receive notifications for vendor logins
33 33 Security Patching Updated patches to remediate 2011 vulnerability assessment findings Monitor vendor patch notices and apply as required Program will be formalized under policy and procedure effort
34 34 NOVEC s Cybersecurity Roadmap DOE Cybersecurity Capabilities Maturity Model Assessment (C2M2) Completed in April 2014 and established a maturity baseline Developing a road map to accomplish maturity level 2 Cyber Training and Education Formalizing cyber education for all NOVEC employees Conduct annual Phishing Test and Cyber Survey Conduct Annual Vulnerability Assessment SCADA, Corporate, and Wireless Implementation Support for Metering, Outage Management and distribution line devices Firewall MPLS 3 rd Party connectivity Migrate OMS (Outage Management System) and MV-90 (Metering data)to DMZ
35 35 NOVEC s Cybersecurity Roadmap Create & implement processes for patching SCADA Network Substation Servers Other substation assets to include 3 rd party client applications Continually assess vulnerabilities and Identify solutions New IP based radio system Direct connection of Distributed Automation devices to fiber Implement additional access controls Security controls and firewalls
36 36 Lessons Learned Make CS integral to design Balance security vs operability DOE site visits reinforced CS Vulnerability testing proves the solution works Vendors can do more CS requirement the same but solutions may differ dependent on utility size
37 37 Cyber Security Lessons Learned Scott Franklin Manager Cyber Security Architecture and Design
38 38 Agenda Overview of BGE, PECO DOE Grant/Smart Grid Smart Meter (SGSM) Program Overview Cyber Security Program Overview Critical Success Factors Challenges The Path Forward
39 39 BGE Overview Baltimore Gas and Electric (BGE) serves more than 1.2 million business and residential electric customers and more than 655,000 gas customers located in Baltimore City and all or part of 10 Central Maryland counties BGE s electric service territory encompasses 2,300 square miles with more than 26,000 miles of both overhead and underground power lines BGE s gas service territory encompasses 800 square miles with more than 7,100 miles of natural gas pipeline mains Summer peak load of ~7,200 MW 243 substations Approximately 3,400 employees
40 40 PECO Overview Philadelphia Electric Company (PECO) serves more than 1.6 million business and residential electric customers and more than 500,000 gas customers located in southeastern Pennsylvania PECO s electric service territory encompasses 2,100 square miles with more than 29,000 miles of both overhead and underground power lines PECO s gas service territory encompasses 800 square miles with more than 6,600 miles of natural gas pipeline mains Summer peak load of ~8,250 MW 500 substations Approximately 2,400 employees
41 41 BGE DOE Grant/SGSM Program SGIG Program Goals ( Territory-wide deployment of Advanced Metering Infrastructure (AMI) assets including: 575,081 Electric Smart Meters AMI Communications Systems Meter Communications Network (RF mesh, 1,250 network devices) Backhaul Communications (Cellular) Customer Care and Billing System (partially funded by the SGIG program) Meter Data Management System Customer Web Portal and Home Energy Reports 202,906 Direct Load Control Devices 144,482 Smart Thermostats Peak-Time Rebate (Default Residential Tariff) Overall SGSM Program Goals 1.2 million Electric Smart Meters 800,000 Gas IMUs
42 42 PECO DOE Grant/SGSM Program SGIG Program Goals ( Territory-wide deployment of Advanced Metering Infrastructure (AMI) and Distribution Automation (DA) assets including: More than 600,000 Smart Meters AMI Communication Systems Web Portal Access Distribution System Automation/Upgrades Distribution Management System/SCADA Intelligent Substation Upgrades Feeder Monitors/Indicators Automated Feeder Switches Capacitor Automation Dynamic Pricing Programs Time of Use Pilot program offered to 120k Residential, 10k Commercial accounts In-Home Displays Pilot ~200 accounts Customer Education and Communication Overall SGSM Program Goals 1.2 million Electric Smart Meters 525,000 AMI Gas Module 4,400 MV-90 AMI Electric Meters
43 43 Cyber Security Program Overview Common approach for BGE and PECO DOE (and public-facing) Cyber Security Plans reflected existing, mature cyber security programs and incorporated SGSM-specific requirements as needed (NISTIR-7628, ISO, CoBIT, NIST Cybersecurity Framework, ES-C2M2) Intelligence-driven risk management approach to cyber security Intelligence and security analysis (threat models) Comprehensive risk management program Configuration and vulnerability management are critical Secure by design Build security in from the start (end-to-end project management lifecycle-integrated security, work with vendors/partners) Cyber security requirements and SLAs embedded in vendor/partner contracts, and ENFORCED Secure architecture by default Exhaustive cyber security vulnerability assessments (ad hoc, recurring), work with vendors/partners to remediate any findings Continuous, automated security monitoring and alerting (SIEM, IDS/IPS, netflow, full packet capture) across the SGSM infrastructure Security awareness training
44 44 Critical Success Factors Executive support (governance, budgetary) Security as part of the corporate culture DOE site visits reinforced the absolute need for cyber security Public Utility/Service Commission support for cyber security Vendors willing to invest in cyber security and LISTEN Detailed Cyber Security Requirements Matrices provided to vendors, embedded in contracts Enhanced product security roadmaps Vendor security assessment testing (better security QA) Continuous, automated security monitoring and alerting Incident response exercises Big data tools
45 45 Challenges Lack of formal SGSM security standards So much data big data/data analytics tools Multi-million node wireless network & traditional cyber security tools (scale, protocols) Identifying and retaining qualified security personnel Ever-changing threat landscape OT/IT collision SGSM infrastructure operating lifecycle versus cyber security lifecycle Complex systems integrations with varying security capabilities Project versus sustain mindset Vendor/product maturity
46 46 The Path Forward Continual investment in cyber security personnel and tools Annual external cyber security reviews (Public Utility/Service Commissions) Enhanced, multi-utility incident response exercises Continuous monitoring and improvement
IEEE-Northwest Energy Systems Symposium (NWESS)
IEEE-Northwest Energy Systems Symposium (NWESS) Paul Skare Energy & Environment Directorate Cybersecurity Program Manager Philip Craig Jr National Security Directorate Sr. Cyber Research Engineer The Pacific
Smart Grid Cybersecurity Lessons Learned
Smart Grid Cybersecurity Lessons Learned Hank Kenchington Deputy Assistant Secretary From More than 11 Million Smart Meters Deployed Office of Electricity Delivery and Energy Reliability Grid Modernization:
ARRA Grant Case Studies SMUD s Smart Grid Program
. ARRA Grant Case Studies SMUD s Smart Grid Program Jim Parks December 2012 Powering forward. Together. About SMUD 600,000 customers 1.4 million population $1.4 billion in revenues 900 mi 2, 2331 km 2
SGIG Cyber Security Program Review Process
SGIG Cyber Security Program Review Process A. DAVID MCKINNON, PH.D. Cyber Security Group, National Security Directorate TCIPG Industry Workshop 2014 November 14, 2014 PNNL-SA-106570 1 SGIG Cyber Security
How Much Cyber Security is Enough?
How Much Cyber Security is Enough? Business Drivers of Cyber Security Common Challenges and Vulnerabilities Cyber Security Maturity Model Cyber Security Assessments September 30, 2010 Business in the Right
CenterPoint Energy Robert B. Frazier Director of Electric Technology
Smart Grid The Texas Experience CenterPoint Energy Robert B. Frazier Director of Electric Technology WHO IS CENTERPOINT ENERGY? Public company traded on the New York Stock Exchange (CNP) Headquartered
Rebecca Massello Energetics Incorporated
Cybersecurity Procurement Language for Energy Delivery Systems Rebecca Massello Energetics Incorporated NRECA TechAdvantage February 25, 2015 Talking Points What is this document? Who can use this document
How to Integrate NERC s Requirements in an Ongoing Automation and Integration Project Framework
How to Integrate NERC s Requirements in an Ongoing Automation and Integration Project Framework Jacques Benoit, Cooper Power Systems Inc., Energy Automations Solutions - Cybectec Robert O Reilly, Cooper
Office of Electricity Delivery & Energy Reliability ANALYSIS AND REPORTING OF METRICS AND BENEFITS FOR ARRA SMART GRID PROJECTS
November 7, 2011 Office of Electricity Delivery & Energy Reliability ANALYSIS AND REPORTING OF METRICS AND BENEFITS FOR ARRA SMART GRID PROJECTS Joe Paladino EU/US Meeting Objectives Elements What we are
Release of the Draft Cybersecurity Procurement Language for Energy Delivery Systems
Release of the Draft Cybersecurity Procurement Language for Energy Delivery Systems Energy Sector Control Systems Working Group Supporting the Electricity Sector Coordinating Council, Oil & Natural Gas
Jim Sheppard, Director of Business Processes CenterPoint Energy, Texas, USA
Jim Sheppard, Director of Business Processes CenterPoint Energy, Texas, USA About Us... Public company traded on the New York Stock Exchange (CNP) Headquartered in Houston, TX Operating 3 business segments
RE: Experience with the Framework for Improving Critical Infrastructure Cybersecurity
October 10, 2014 Ms. Diane Honeycutt National Institute of Standards and Technology 100 Bureau Drive, Stop 8930 Gaithersburg, MD 20899 RE: Experience with the Framework for Improving Critical Infrastructure
Facilitated Self-Evaluation v1.0
Electricity Subsector Cybersecurity Capability Maturity Model (ES-C2M2) Patricia Hoffman Facilitated Self-Evaluation v1.0 Assistant Secretary Office of Electricity Delivery and Energy Reliability U.S.
Utility-Scale Applications of Microgrids: Moving Beyond Pilots Cyber Security
Boeing Defense, Space & Security Ventures Utility-Scale Applications of Microgrids: Moving Beyond Pilots Cyber Security Tristan Glenwright - Boeing BOEING is a trademark of Boeing Management Company. The
Preparing for the Meter Data Deluge An Intelligent Utility Reality Webcast
Preparing for the Meter Data Deluge An Intelligent Utility Reality Webcast 10/15 10/29 June 2, 2011 1/28 Join the conversation on Twitter using #IUWebcasts and follow Intelligent Utility on Twitter @IntelUtil
Risk Management, Equipment Protection, Monitoring and Incidence Response, Policy/Planning, and Access/Audit
Page 1 of 10 Events Partners Careers Contact Facebook Twitter LinkedIn Pike Research Search search... Home About Research Consulting Blog Newsroom Media My Pike Logout Overview Smart Energy Clean Transportation
Securing the Grid. Marianne Swanson, NIST Also Moderator Akhlesh Kaushiva (AK), DOE Lisa Kaiser, DHS Leonard Chamberlin, FERC Brian Harrell, NERC
1 Securing the Grid Marianne Swanson, NIST Also Moderator Akhlesh Kaushiva (AK), DOE Lisa Kaiser, DHS Leonard Chamberlin, FERC Brian Harrell, NERC February 27, 2012 NIST and the SGIP 2.0 Cybersecurity
Cyber Security and Privacy - Program 183
Program Program Overview Cyber/physical security and data privacy have become critical priorities for electric utilities. The evolving electric sector is increasingly dependent on information technology
Update On Smart Grid Cyber Security
Update On Smart Grid Cyber Security Kshamit Dixit Manager IT Security, Toronto Hydro, Ontario, Canada 1 Agenda Cyber Security Overview Security Framework Securing Smart Grid 2 Smart Grid Attack Threats
Cyber Infrastructure for the Smart Grid
Cyber Infrastructure for the Smart Grid Dr. Anurag K. Srivastava, Dr. Carl Hauser, and Dr. Dave Bakken Smart Grid Use Cases: Part 2 SGIC Xcel Energy SG Xcel Energy A public Service company of Colorado
Future of Electric Distribution Dialogue
Future of Electric Distribution Dialogue Webinar Series Session I: State of U.S. Electric Distribution July 11, 2012 2:00 3:30 p.m. EDT Session I: State of U.S. Electric Distribution 2:00 p.m. Opening
SANS Top 20 Critical Controls for Effective Cyber Defense
WHITEPAPER SANS Top 20 Critical Controls for Cyber Defense SANS Top 20 Critical Controls for Effective Cyber Defense JANUARY 2014 SANS Top 20 Critical Controls for Effective Cyber Defense Summary In a
Securing the Electric Grid with Common Cyber Security Services Jeff Gooding
Securing the Electric Grid with Common Cyber Security Services Jeff Gooding TCIPG Seminar April 4, 2014 Southern California Edison (SCE) is committed to safely providing reliable and affordable electricity
Unifying Smart Grid Communications using SIP
Unifying Smart Grid Communications using SIP Joe DiAdamo, P.Eng. Chief Technologist, Smart Grid Siemens Enterprise Communications Sept 1, 2009 One of, I think, the most important infrastructure projects
Cybersecurity in a Mobile IP World
Cybersecurity in a Mobile IP World Alexander Benitez, Senior Scientist, ComSource Introduction by Robert Durbin, Cybersecurity Program Manager, ComSource Introduction ComSource s cybersecurity initiative
End Point Devices to be Deployed for Each. AC Independence
Estimated Number of Communications Nodes to be Deployed for Each Application (e.g. thousands of Estimated Number of End Point Devices to be Deployed for Each Application (e.g. millions of meters) AC Independence
Defending Against Data Beaches: Internal Controls for Cybersecurity
Defending Against Data Beaches: Internal Controls for Cybersecurity Presented by: Michael Walter, Managing Director and Chris Manning, Associate Director Protiviti Atlanta Office Agenda Defining Cybersecurity
Developing a Next-Generation Customer Engagement Program
Developing a Next-Generation Customer Engagement Program Broadband to the Home a Key Component UTC and Rural Broadband Council Workshop Rick Schmidt Power System Engineering, Inc. www.powersystem.org July
Pennsylvania Summer Reliability
A. Reliability Enhancement Programs In 2015, Pennsylvania Power Company s ( Penn Power or Company ) reliability plan incorporates projects and programs to enhance overall reliability. The plan is structured
SmartSacramento. Green Summit 2011. Jim Parks Program Manager SmartSacramento Team. April 19, 2011
SmartSacramento Green Summit 2011 April 19, 2011 Jim Parks Program Manager SmartSacramento Team The Current State of the Grid Current grid tends toward dumb We typically learn about outages via phone Many
For Utility Operations
For Utility Operations Provided For: SCAMPS 2014 Annual Meeting Presented By: Michael E. Jenkins, PE What Are We Talking About? Simply, Preparing A Clear Picture Of Where And How The Utility Is Headed
7 Homeland. ty Grant Program HOMELAND SECURITY GRANT PROGRAM. Fiscal Year 2008
U.S. D EPARTMENT OF H OMELAND S ECURITY 7 Homeland Fiscal Year 2008 HOMELAND SECURITY GRANT PROGRAM ty Grant Program SUPPLEMENTAL RESOURCE: CYBER SECURITY GUIDANCE uidelines and Application Kit (October
Smart Metering System for Smart Communities
Smart Metering System for Smart Communities Chuck Sathrum, Director Smart Grid Solutions Metering s Transitional Role Product Oriented Value Process Oriented Value People Oriented Value EM Meter Send Bill
future data and infrastructure
White Paper Smart Grid Security: Preparing for the Standards-Based Future without Neglecting the Needs of Today Are you prepared for future data and infrastructure security challenges? Steve Chasko Principal
ComEd Grid Renewal Terence R. Donnelly
ComEd Grid Renewal Terence R. Donnelly Executive Vice President and Chief Operating Officer September 23, 2013 COMED S GRID MODERNIZATION VISION ComEd will fulfill the promise of grid modernization for
The Importance of Cybersecurity Monitoring for Utilities
The Importance of Cybersecurity Monitoring for Utilities www.n-dimension.com Cybersecurity threats against energy companies, including utilities, have been increasing at an alarming rate. A comprehensive
DMS - Breakthrough Technology for the Smart Grid
DMS - Breakthrough Technology for the Smart Grid The emerging smart grid is expected to address many of the current challenges in the electrical power industry. It is expected to make the electric grid
Naperville Smart Grid Initiative
Naperville Smart Grid Initiative Business Case Fundamentals Updated on 9/7/2010 Summary The NGSI program delivers an excellent ROI by increasing network reliability, operational efficiencies, reducing
System Stability through technology
System Stability through technology 1 Smart Grid Design Goals More increased capabilities More capabilities at the edge and enterprise, pervasive automation Better faster, more reliable & secure The electric
Effective Use of Assessments for Cyber Security Risk Mitigation
White Paper Effective Use of Assessments for Cyber Security Risk Mitigation Executive Summary Managing risk related to cyber security vulnerabilities is a requirement for today s modern systems that use
SCADA Security Training
SCADA Security Training 1-Day Course Outline Wellington, NZ 6 th November 2015 > Version 3.1 web: www.axenic.co.nz phone: +64 21 689998 page 1 of 6 Introduction Corporate Background Axenic Ltd Since 2009,
Deterrent and detection of smart grid meter tampering and theft of electricity, water, or gas
Deterrent and detection of smart grid meter tampering and theft of electricity, water, or gas Jeff McCullough Introduction This white paper was inspired by real concerns regarding smart grid electric meters
METER DATA MANAGEMENT LESSONS LEARNED LIFE AFTER GO LIVE Insight on Leveraging Integration While Preserving Technical Investment
METER DATA MANAGEMENT LESSONS LEARNED LIFE AFTER GO LIVE Insight on Leveraging Integration While Preserving Technical Investment November 2015 FMEA Energy Connections Conference Presenters: Matt Matherne
North American Electric Reliability Corporation: Critical Infrastructure Protection, Version 5 (NERC-CIP V5)
Whitepaper North American Electric Reliability Corporation: Critical Infrastructure Protection, Version 5 (NERC-CIP V5) NERC-CIP Overview The North American Electric Reliability Corporation (NERC) is a
ComEd Improves Reliability and Efficiency with a Single Network for Multiple Smart Grid Services
: ComEd ComEd Improves Reliability and Efficiency with a Single Network for Multiple Smart Grid Services BACKGROUND Commonwealth Edison (ComEd), a unit of Chicago-based Exelon Corporation, provides electrical
BAE Systems PCI Essentail. PCI Requirements Coverage Summary Table
BAE Systems PCI Essentail PCI Requirements Coverage Summary Table Introduction BAE Systems PCI Essential solution can help your company significantly reduce the costs and complexity of meeting PCI compliance
WELCOME. Landis+Gyr Technical Training Catalog
WELCOME Training is essential to ensure the customer s success in implementing the Smart Grid Solution. Our goal at Landis+Gyr is to provide a foundation of knowledge that will allow personnel to quickly
NAVFAC EXWC Platform Information Technology (PIT) Cyber Security Initiatives
NAVFAC EXWC Platform Information Technology (PIT) Cyber Security Initiatives Center of excellence for secure integration, deployment and sustainment of Industrial Control Systems and Operational Technology
AMI and DA Convergence: Benefits of Growing Your Smart Grid Infrastructure with a Multi Technology Approach
AMI and DA Convergence: Benefits of Growing Your Smart Grid Infrastructure with a Multi Technology Approach April 2011 Prepared for: By Sierra Energy Group The Research & Analysis Division of Energy Central
State of Oregon. State of Oregon 1
State of Oregon State of Oregon 1 Table of Contents 1. Introduction...1 2. Information Asset Management...2 3. Communication Operations...7 3.3 Workstation Management... 7 3.9 Log management... 11 4. Information
The American Recovery and Reinvestment Act Smart Grid Highlights Jumpstarting a Modern Grid
The American Recovery and Reinvestment Act Smart Grid Highlights Jumpstarting a Modern Grid October 2014 The Office of Electricity Delivery and Energy Reliability (OE) provides national leadership to ensure
Enterprise Approach to OSIsoft PI System
Enterprise Approach to OSIsoft PI System Presented by Subbu Sankaran 2012 San Diego Gas & Electric Company. All trademarks belong to their respective owners. All rights reserved. Copyr i g h t 2013 O S
Advanced Distribution Grid Management for Smart Cities
Smart Grid Solutions Advanced Distribution Grid Management for Smart Cities Kevin Corcoran, Director Product Line Management IEEE SmartGridComm 2015 Miami, FL Bridging Smart Cities & Smart Grids Common
Scroll. An MDM (Metering Data Management) platform
Scroll An MDM ( Data Management) platform Overview Meter Data Management (MDM) has been traditionally defined as a repository for meter data collected from diverse meter collection systems as well as providing
Executive Summary... ii
Table of Contents Executive Summary... ii 1. Introduction... 1 1.1 The American Reinvestment and Recovery Act of 2009... 1 1.2 SGIG and Grid Modernization... 2 1.3 Organization of this Report... 3 2. The
Public Service Co. of New Mexico (PNM) - PV Plus Storage for Simultaneous Voltage Smoothing and Peak Shifting
Public Service Co. of New Mexico (PNM) - PV Plus Storage for Simultaneous Voltage Smoothing and Peak Shifting Steve Willard, P.E. Brian Arellano DOE Peer Review October 20, 2011 Project Goals Develop an
Lessons Learned from AMI Pioneers Follow the Path to Success
welcome Lessons Learned from AMI Pioneers Follow the Path to Success Joe Cummins, PCIP UTC TELECOM May 2010 394 Simcoe Street South Oshawa, ON L1H 4J4 (905) 404-2009 2 outline security risks in smart grid
Cybersecurity@RTD Program Overview and 2015 Outlook
Cybersecurity@RTD Program Overview and 2015 Outlook Finance & Administration Committee Meeting February 10, 2015 Sheri Le, Manager of Cybersecurity RTD Information Technology Department of Finance & Administration
Unlocking the Full Value of Your Meter Data
Unlocking the Full Value of Your Meter Data The Elster Difference When it comes to the many components of your smart grid solution, there are plenty of options from which to choose. But when it comes to
Securing the Service Desk in the Cloud
TECHNICAL WHITE PAPER Securing the Service Desk in the Cloud BMC s Security Strategy for ITSM in the SaaS Environment Introduction Faced with a growing number of regulatory, corporate, and industry requirements,
Summary of CIP Version 5 Standards
Summary of CIP Version 5 Standards In Version 5 of the Critical Infrastructure Protection ( CIP ) Reliability Standards ( CIP Version 5 Standards ), the existing versions of CIP-002 through CIP-009 have
Smart Grid Business Case Analysis. Rochester Public Utilities
DRAFT REVISION Smart Grid Business Case Analysis Prepared For Rochester Public Utilities August 200 Project 55060 prepared for Rochester Public Utilities Rochester, Minnesota August 200 Project No. 55060
PROJECT BOEING SGS. Interim Technology Performance Report 3. Company Name: The Boeing Company. Contract ID: DE-OE0000191
Interim Techlogy Performance Report 3 PROJECT BOEING SGS Contract ID: DE-OE0000191 Project Type: Revision: V1 Company Name: The Boeing Company November 19, 2013 1 Interim Techlogy Performance Report 3
Goals. Understanding security testing
Getting The Most Value From Your Next Network Penetration Test Jerald Dawkins, Ph.D. True Digital Security p. o. b o x 3 5 6 2 3 t u l s a, O K 7 4 1 5 3 p. 8 6 6. 4 3 0. 2 5 9 5 f. 8 7 7. 7 2 0. 4 0 3
AMI security considerations
AMI security considerations Jeff McCullough Introduction Many electric utilities are deploying or planning to deploy smart grid technologies. For smart grid deployments, advanced metering infrastructure
Ecom Infotech. Page 1 of 6
Ecom Infotech Page 1 of 6 Page 2 of 6 IBM Q Radar SIEM Intelligence 1. Security Intelligence and Compliance Analytics Organizations are exposed to a greater volume and variety of threats and compliance
THE FUTURE OF SMART GRID COMMUNICATIONS
THE FUTURE OF SMART GRID COMMUNICATIONS KENNETH C. BUDKA CTO STRATEGIC INDUSTRIES MAY 2014 THE GRID OF THE FUTURE WIDE-SCALE DEPLOYMENT OF RENEWABLES INCREASED ENERGY EFFICIENCY PEAK POWER REDUCTION, DEMAND
The President s Critical Infrastructure Protection Board. Office of Energy Assurance U.S. Department of Energy 202/ 287-1808
cover_comp_01 9/9/02 5:01 PM Page 1 For further information, please contact: The President s Critical Infrastructure Protection Board Office of Energy Assurance U.S. Department of Energy 202/ 287-1808
NERC CIP VERSION 5 COMPLIANCE
BACKGROUND The North American Electric Reliability Corporation (NERC) Critical Infrastructure Protection (CIP) Reliability Standards define a comprehensive set of requirements that are the basis for maintaining
Cyber Security. BDS PhantomWorks. Boeing Energy. Copyright 2011 Boeing. All rights reserved.
Cyber Security Automation of energy systems provides attack surfaces that previously did not exist Cyber attacks have matured from teenage hackers to organized crime to nation states Centralized control
Industrial Cyber Security 101. Mike Spear
Industrial Cyber Security 101 Mike Spear Introduction Mike Spear Duluth, GA USA Global Operations Manager, Industrial Cyber Security [email protected] Responsible for the Global Delivery of Honeywell
Cyber Security Seminar KTH 2011-04-14
Cyber Security Seminar KTH 2011-04-14 Defending the Smart Grid [email protected] Appropriate Footer Information Here Table of content Business Drivers Compliance APT; Stuxnet and Night Dragon
AMI Overview. Craig Williamson, Energy Insights. February 26, 2008 AEIC Workshop, San Antonio, TX
AMI Overview Craig Williamson, Energy Insights February 26, 2008 AEIC Workshop, San Antonio, TX What are utilities thinking about Smart Metering? Understanding of Smart Metering terms Plug-in vehicle Load
Project Management for Implementing the Smart Grid By Power System Engineering, Inc. Abstract PM Methodology Using a Repeatable Project Management
Project Management for Implementing the Smart Grid By Power System Engineering, Inc. Abstract PM Methodology Using a Repeatable Project Management Approach Project management solutions for the Smart Grid
IT ASSET MANAGEMENT Securing Assets for the Financial Services Sector
IT ASSET MANAGEMENT Securing Assets for the Financial Services Sector V.2 Final Draft May 1, 2014 [email protected] This revision incorporates comments from the public. Page Use case 1 Comments
Altius IT Policy Collection Compliance and Standards Matrix
Governance IT Governance Policy Mergers and Acquisitions Policy Terms and Definitions Policy 164.308 12.4 12.5 EDM01 EDM02 EDM03 Information Security Privacy Policy Securing Information Systems Policy
AMI and DA Convergence: Enabling Energy Savings through Voltage Conservation
AMI and DA Convergence: Enabling Energy Savings through Voltage Conservation September 2010 Prepared for: By Sierra Energy Group The Research & Analysis Division of Energy Central Table of Contents Executive
Cyber Security for NERC CIP Version 5 Compliance
GE Measurement & Control Cyber Security for NERC CIP Version 5 Compliance imagination at work Contents Cyber Security for NERC CIP Compliance... 5 Sabotage Reporting... 6 Security Management Controls...
ABB Automation Days, Madrid, May 25 th and 26 th, Patrik Boo What do you need to know about cyber security?
ABB Automation Days, Madrid, May 25 th and 26 th, Patrik Boo What do you need to know about cyber security? Agenda Threats Risk Assessment Implementation Validation Advanced Security Implementation Strategy
PCI Requirements Coverage Summary Table
StillSecure PCI Complete Managed PCI Compliance Solution PCI Requirements Coverage Summary Table January 2013 Table of Contents Introduction... 2 Coverage assumptions for PCI Complete deployments... 2
NSA/DHS Centers of Academic Excellence for Information Assurance/Cyber Defense
NSA/DHS Centers of Academic Excellence for Information Assurance/Cyber Defense Cyber Investigations Data Management Systems Security Data Security Analysis Digital Forensics Health Care Security Industrial
Network Communications System. Redefining Intelligent Utility Communications
Network Communications System Redefining Intelligent Utility Communications Technology that takes you from today to tomorrow. FlexNet Technology you can trust FlexNet is a robust, high-powered solution
The NES Smart Metering System. The World s Most Advanced Metering System Solution for the Smart Grid
The NES Smart Metering System The World s Most Advanced Metering System Solution for the Smart Grid Making the Grid Smarter At Echelon, we believe the smart grid is an energy network. It includes not only
Cyber Security focus in ABB: a Key issue. 03 Luglio 2014, Roma 1 Conferenza Nazionale Cyber Security Marco Biancardi, ABB SpA, Power System Division
Cyber Security focus in ABB: a Key issue 03 Luglio 2014, Roma 1 Conferenza Nazionale Cyber Security Marco Biancardi, ABB SpA, Power System Division Cyber Security in ABB Agenda ABB introduction ABB Cyber
BGE s Residential Smart Energy Rewards (SER) Program at NY REV: The Role of Time-Variant Pricing Forum. Wayne Harbaugh March 31, 2015
BGE s Residential Smart Energy Rewards (SER) Program at NY REV: The Role of Time-Variant Pricing Forum Wayne Harbaugh March 31, 2015 1 Baltimore Gas and Electric Maryland s largest utility 200 years 1
The IBM Solution Architecture for Energy and Utilities Framework
IBM Solution Architecture for Energy and Utilities Framework Accelerating Solutions for Smarter Utilities The IBM Solution Architecture for Energy and Utilities Framework Providing a foundation for solutions
GE Measurement & Control. Top 10 Cyber Vulnerabilities for Control Systems
GE Measurement & Control Top 10 Cyber Vulnerabilities for Control Systems GE Proprietary Information: This document contains proprietary information of the General Electric Company and may not be used
The Smart Energy Pricing Evolution at BGE
The Smart Energy Pricing Evolution at BGE for The 2011 National Town Meeting on Demand Response and Smart Grid 2011 National Town Meeting on Demand Response and Smart Grid Wayne Harbaugh VP Pricing & Regulatory
