92
1 Information Weapon: Concepts, Means, Methods …
CRISP is intended for cross-machine bi-lateral data traffic and provides an opportunity to detect malicious software and to take protection measures in due time
manner. It is being elaborated by the center of data distribution and analysis at
Department of Homeland Security, infrastructure of energy industry.
By 2019 around 50% of all energy providers in the USA have been using this
system. It has created the basis for centrally controlled coordination of protection
against cyberattacks targeted at electric power systems and guiding its recovery after
their occurrence.
In the function of further development of CRISP, the Division of electric power
supply and power generating reliability at Ministry of Energy is currently implementing CATT project on creation of computerized tools for analysis and evaluation of EPS cybersecurity status. Thus in 2011–2014 the Ministry of Energy
created a model for actions efficiency evaluation in the sphere of EPS cybersecurity
(CybersecurityCapabilityMaturingModel).
For detection and prevention of cyberattacks at EPS facilities presently there
is extensively used computer program software management and documentation
systems (SMDS), which is integrated into systems for remote control and data
acquisition SCADA. On the basis of this program, there is being deployed system
for protection of network with application of inter-network displays DMZ, tunnels
(VPN), and others.
The attacks and intrusions are being detected by means of Intrusion detection
systems (IDS).
For prevention of insider attaches (sabotage and conspiracy between employees
and terrorists including) Sandia National Laboratories in cooperation with Lockheed
Martin Corporation is currently elaborating access system for operators of electric
grid control systems based on permanent monitoring of biometrics data (pulse rate,
breathing, pressure, body temperature, and others) in the process fo working on
computer.
Ministry of Energy is planning to sponsor setting up a storage for malicious
programs and data on them, catalogued software viruses and other types of software.
It is intended to constitute a basis for creation of computerized tools to analyze
malicious software, indicators of cyberthreats (signatures of cyberattacks).
There are being elaborated tools for safe interaction between network equipment
of electric power systems with “cloud” storages with a view of prompt analysis of
big size data within the frameworks of assessing the immunity of energy systems.
“Cloud” service is used for notification and responding to cyberthreats.
Simultaneously there performed large-scale research studies in the sphere of EPS
cybersecurity. Thus in the context of national infrastructure protection in 2013, there
were selected 12 trends in research and development activity aimed at improvement
of performance reliability and immunity of energy systems which are set up within
the frameworks of the reliability improvement program at the Department of Energy
of the USA (Electric Delivery and Energy Reliability Research and Development),
and development of EPS security systems against cyber (Cybersecurity for Energy
Delivery Systems) is one of the most important trends. For instance, within the
first decade of 2000 in the USA there were implemented over 170 research and
Précédent

- 114/839

Suivant