Archive for 'NERC CIP'
NERC Responds To Congressional Pounding
NERC got hit hard by Congress in the May Congressional Subcommittee Hearings, most notably on providing false information to Congress in the past. Some members of the Subcommittee went as far as saying NERC needed to be replaced as the ERO. There had to be some action plan by NERC to attempt to restore faith, [...]
Author: Dale Peterson
Posted: July 14th, 2008 under NERC CIP.
Comments: 1
Thoughts on Congressional Hearings
After a few days of letting the Congressional Hearings on security of electric sector control systems sink in here are the three items I found most interesting and important.
1. The fact that NERC previously provided false information to Congress on Aurora mitigation efforts by the electric sector was a huge mistake, whether intentional or inadvertent. [...]
Author: Dale Peterson
Posted: May 28th, 2008 under NERC CIP, US Government.
Comments: 1
GAO Report on TVA
A GAO report on TVA’s control system security is out. This report along with the Congressional hearings are going to be hot topics over the next days and weeks.
Unfortunately we will not have much to say on this because we have a fair amount of inside knowledge covered under NDA. TVA is a partner in [...]
Author: Dale Peterson
Posted: May 21st, 2008 under NERC CIP, US Government.
Comments: 4
Shameless Marketing FUD and Hype
I’m sure many of you have been spammed by an email from TDI about a “NERC CIP Cyber Asset Alert”. I personally received three alert emails plus a blog spam. We get a lot of this type of material, but this one topped anything we have received lately in pure FUD and hype to promote [...]
Author: Dale Peterson
Posted: April 10th, 2008 under Calculating Risk, NERC CIP.
Comments: 2
NERC Looking for Security Experts to Assist with CIP Modifications
Just a quick note. Want to help improve the NERC CIP cyber security standards? They are looking for industry experts to assist. Nominate yourself before April 4th.
Author: Dale Peterson
Posted: March 25th, 2008 under NERC CIP.
Comments: none
SPP Critical Infrastructure Protection Working Group Meeting
Since leaving my post at a utility company and joining the Digital Bond team, my attention level to the NERC CIP saga has dropped off a bit. I’m back up to date now, though, after attending the SPP CIPWG meeting earlier this week. (SPP is the RTO and RE in my part of the [...]
Author: Jason Holcomb
Posted: March 20th, 2008 under Big Picture, NERC CIP.
Comments: none
Bravo FERC!
Today FERC approved the NERC/ERO CIP cyber security standards for the electric industry. This was the right decision to avoid derailing progress.
What is most impressive are the comments in the press release and final rule.
They directed modifications and improvements. This is the Version 1.0, and it will get better and more stringent. Basically NERC/NRO needs [...]
Author: Dale Peterson
Posted: January 17th, 2008 under NERC CIP.
Comments: 2
FERC “Proposes” Collecting Information on Aurora Mitigation
After the furor of Aurora and the Congressional hearings FERC is proposing to collect “information in connection with steps being taken by the electric industry to address potential cyber vulnerabilities”. The proposing part of this equation has to do with the FERC rulemaking procedure and requirements for public comment which I don’t claim to be [...]
Author: Dale Peterson
Posted: December 11th, 2007 under NERC CIP.
Comments: 16
Only 7 Months to First NERC CIP Compliance Deadline
December 1. Can you believe it is only 7 months until Balancing Authorities and Transmission Operators who were required to self-certify to NERC 1200 will need to be compliant with 13 NERC CIP requirements? (hat tip: Ron Blume of Dyonyx).
Some of the 30 June 2008 requirements are:
Test procedures for significant patches and upgrades. This [...]
Author: Dale Peterson
Posted: December 1st, 2007 under NERC CIP.
Comments: none
Faux Congressional Testimony on NERC / ERO / CIP
Representatives from NERC, Joe Weiss and a couple of other experts will be testifying tomorrow to a subcommittee of the House Committee on Homeland Security. Of course as nothing more than a researcher/consultant/humble blogger I was not asked to testify, so I’ll testify to the loyal readers. Maybe some staffer will Google this and get [...]
Author: Dale Peterson
Posted: October 16th, 2007 under NERC CIP.
Comments: none