1.7 Cybersecurity of Power Facilities: Past, Present, and Future
91
– PPD 41, US Cyberincident Coordination, 2016;
– EO 13800, Strengthening the Cybersecurity of Federal Networks and Critical
Infrastructure, 2017 and others.
For assurance of cybersecurity it is essential to have an interaction between Department of Domestic Security, Department of Energy, and intelligence community of
the country for the purpose of protecting electric power system against cyberthreats,
which is implemented through National Cyberinvestigative Joint Task Force, and
also through cybermonitoring system CyWatch of FBI.
Department of Energy of the USA in cooperation with North American Electricity Reliability Corporation have elaborated the standards on cybersecurity of
electric power system and also guidelines on implementation of the measures for
their immunity improvement. Modern strategy of the country’s electric power system
cybersecurity assurance is reduced to two main trends of activities.
– Development and introduction of innovation approaches to cyberprotection of the
existing electric power system of the USA with mastering respective methods and
forms of struggle with network threats.
– Anticipatory creation of technological basis for advanced future-oriented American electric power system having unprecedented immunity, reliability, resilience
against cyberattacks, and also ability to automated reconfiguration and selfrecovery, preserving and resuming the main functions after tampering.
There were taken preventive actions, in particular, there were revised the plans for
setting up computer safety and network security of the systems in use, including the
procedures of electronic and physical access, additional training was made available
for the personnel. Besides the employees were subjected to personnel certification
and testing for possible leaks of confidential information about peculiarities of functioning of computer security systems. The system of prompt notification was put into
operation, reporting about all suspicious cases and attempts of unauthorized entry
into information networks of electric power systems (EPS). The problem of assuring
situational notification on the state of electric power system in real-time mode is
being proactively solved, self diagnostics and recovery of electric power supply to
consumers in automated mode at emergency shutdowns.
The activities in this scope have resulted, in particular, in the development of
Environment for Analysis of Geo-Located Energy Information in time mode close
to real.
A fundamentally new step is broad introduction of EPS state continuous evaluation
on the basis of transient states monitoring system (WideAreaManagementSystem—
WAMS)5.
For purposes of continuous monitoring and evaluation of EPS cybersecurity and
also for computerization of data traffic between the public and private sectors,
there have been introduced two programs for analyzing cyberthreats in time mode
close to real one: trusted automated exchange of indicator information (TAXII) and
cybersecurity risk information sharing program (CRISP).
Précédent

- 113/839

Suivant