UCAIug Summit SG Security Session 16 November 2011 Austin, TX Opening Session Agenda Status Updates Distribution Reliability & Cyber Security.

Slides:



Advertisements
Similar presentations
1 Introducing the Specifications of the Metro Ethernet Forum.
Advertisements

Digital Energy Communications GE MDS Communications Network for AMI.
SG-Systems Boot Camp Use Case Process with TOGAF AMI-ENT Example Kay Stefferud Chair, SG-Systems Use Cases For more information visit:
“SG-Systems” (Smart Grid – Operational Applications Integration) “Boot Camp” Overview Greg Robinson, Co-Chair, SG-Systems Brent Hodges, Chair, SG-Systems.
1 Smart Grid Vision Electric Grid Modernization Steering Committee Grid Facing Technology Subcommittee January 14, 2013.
SG Security Working Group Face-to-Face Meeting – July Vancouver, BC  Usability Analysis Task Force  Cybersec-Interop Task Force  Embedded Systems.
UCAIug HAN SRS v2.0 Summary August 12, Scope of HAN SRS in the NIST conceptual model.
May 2010 Slide 1 SG Communications Boot Camp Matt Gillmore 03/07/11.
OpenSG Closing Plenary Ft Lauderdale November, 2010.
OpenHAN Boot Camp July 19, OpenHAN TF Overview Chair Erich W. Gunther, EnerNex – Co-chair Mary Zientara, Reliant Energy -
Draft February 2010 OpenHAN TFSlide 1 Submission Title: OpenSG San Francisco Opening Report Date Submitted: February xx, 2010 Source: OpenHAN Task.
The Voice of the Asset Owner ICSJWG – April Dallas  UCAIug  SG Security  ASAP-SG SG Security WG Chair: Darren Reece Highfill
Slide 1 UCAIug OpenSG OpenADE Automated Data Exchange Requirements NAESB ESPI Energy Services Provider Interface Standard Specification Overview November.
Team Dec13_11: Cole Hoven Jared Pixley Derek Reiser Rick Sutton Adviser/Client: Prof. Manimaran Govindarasu Graduate Assistant: Aditya Ashok PowerCyber.
WebCast 5 May 2003 NERC Cyber Security Standard Overview of Proposed Cyber Security Standard.
Smart Grid - Cyber Security Small Rural Electric George Gamble Black & Veatch
Chapter 19: Network Management Business Data Communications, 4e.
1 ITC242 – Introduction to Data Communications Week 12 Topic 18 Chapter 19 Network Management.
# 1 Information Exchange Standards Development Collaboration for AMI and HAN For further information, contact: Wayne Longcore
Security Conformity March 10, 2011 SF Bay Area. Agenda for Thursday, March 10th Discuss Security Testing & Certification Authority Review Security Testing.
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All Gale Lightfoot, Senior Staff Program Manager, Office of the CTO, SPB Cisco ATIS and the Smart Grid.
1 Connectivity Week 2010 How Can Standards Be Regulated? Thursday May 27 10:30AM-Noon Zahra Makoui.
Terry Chandler Power Quality Inc, USA Power Quality Thailand LTD Sept /6/20091www.powerquality.org all rights reserve.
SCADA and Telemetry Presented By:.
GridWise ® Architecture Council Cyber-Physical System Requirements for Transactive Energy Systems Shawn A. Chandler Maseeh College of Electrical and Computer.
Introduction & Overview April 11, 2011 Barry Haaser Managing Director.
McLean VA, May 3, 2010 SG Systems Systems Requirements Specification Approach Overview.
FirstEnergy / Jersey Central Power & Light Integrated Distributed Energy Resources (IDER) Joseph Waligorski FirstEnergy Grid-InterOp 2009 Denver, CO November.
Darren Highfill Chairing on behalf of Erich W. Gunther UtilityAMI Chairman/Facilitator Chairman/CTO – EnerNex Corporation Utility Industry.
1 OpenADR Taskforce Chair – Albert Chiu Co-chair – Ed Koch Technical Editors – Bruce Bartell, Gerald Gray.
Doc.: IEEE /0047r1 Submission SGIP Liaison Report to IEEE Following the SGIP (2.0) Inaugural Conference Nov 5-7, 2013 Date:
An Overview of the Smart Grid David K. Owens Chair, AABE Legislative Issues and Public Policy Committee AABE Smart Grid Working Group Webinar September.
OpenSG Closing Plenary Knoxville February, UCAIug IPR Policy UCAIug Public or Private Documents may or may not contain the information included.
Status Report for Critical Infrastructure Protection Advisory Group
1 Smart Grid Cyber Security Annabelle Lee Senior Cyber Security Strategist Computer Security Division National Institute of Standards and Technology June.
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All SMART GRID ICT: SECURITY, INTEROPERABILITY & NEXT STEPS John O’Neill, Senior Project Manager CSA.
OpenSG Status UCAIug Members Meeting Chris Knudsen – Chair Gary Stuebing – Vice-Chair November 9 th, 2009.
Geneva, Switzerland, April 2012 Introduction to session 7 - “Advancing e-health standards: Roles and responsibilities of stakeholders” ​ Marco Carugi.
WebCast 5 May 2003 Proposed NERC Cyber Security Standard Presentation to IT Standing Committee Stuart Brindley, IMO May 26, 2003.
© 2011 EnerNex. All Rights Reserved. Lemnos Interoperable Security Project Background and Benefits 8/11/2011.
Presentation Identifier (Title or Location), Month 00, 2008 Cost and Benefit Analysis Framework: Update EPRI Smart Grid Advisory Meeting October 14, 2009.
Frankfurt (Germany), 6-9 June 2011 Iiro Rinta-Jouppi – Sweden – RT 3c – Paper 0210 COMMUNICATION & DATA SECURITY.
1 SGIP PAP 11 PEV V2G DEWG Dec 2-3, 2010 Grid InterOp 2010 Eric Simmon, NIST Jerry Melcher, EnerNex SGIP PAP 11 PEV V2G DEWG Grid InterOp 2010 Meeting.
On-line Condition Monitoring of Distribution Network Assets – Making the Network Smarter Neil Davies Neil Davies – UK – Session 1: Network Components –
Knoxville, TN October 20, 2009 SG-Systems Systems Requirements Specification Team Status and Breakout Session.
Smart Grid Introduction
Boot Camp - Conformity July 19, 2010 Detroit, USA.
OpenHAN TF Meeting Where do we go next? Erich W. Gunther.
Erich W. Gunther UtilityAMI Chairman/Facilitator Chairman/CTO – EnerNex Corporation Jerry Melcher Onsite facilitator for this meeting.
Overview AMI-Enterprise For further information, contact: Wayne Longcore Chair of AMI-Enterprise Task Force, Board Of Directors.
Open AMI Network 10/22/08.
SG-Systems Working Group Status: Active, meet once at each face-to-face meeting Charter: The SG-Systems Working Group defines requirements, policies, and.
Open Smart Grid (OpenSG) Technical Committee Plenary October 20, 2009.
OpenHAN SRS v1.95 Overview June 8, OpenHAN SRS v Introduction  OpenHAN area of focus within the NIST conceptual model.
OpenSG SG Conformity – Security Conformity July 22, 2010 Bobby Brown.
Usability Analysis Task Force Activity Update July 20, 2011.
OpenADR Taskforce. OpenADR and NIST Smart Grid Roadmap Conceptual Model.
May 2010 Slide 1 SG Communications Boot Camp Matt Gillmore 11/1/2010.
Jeju, 13 – 16 May 2013Standards for Shared ICT Dr. Farrokh Khatibi Director of Engineering Qualcomm ATIS and the Smart Grid Document No: GSC17-PLEN-63.
© 2011 EnerNex. All Rights Reserved. NERC Update  2011 GridEx – Cybersecurity exercise completed yesterday  Smart Grid Task Force  Cyber.
February 2010 OpenHAN TFSlide 1 Submission Title: OpenSG San Francisco Opening Report Date Submitted: February xx, 2010 Source: OpenHAN Task Force Re:
Draft February 2010 OpenHAN TFSlide 1 Submission Title: OpenSG San Francisco Opening Report Date Submitted: February xx, 2010 Source: OpenHAN Task.
Chapter 19: Network Management
Smart Grid cyber security within IEC TC57 WG15
STANDARDS AND THE FUTURE OF DISTRIBUTED ELECTRICITY
SG Security – Key Accomplishments
Smart Grid cyber security within IEC TC57 WG15
Group Meeting Ming Hong Tsai Date :
“OpenADR” “Boot Camp” Overview
Cyber Security of SCADA Systems Remote Terminal Units (RTU)
Presentation transcript:

UCAIug Summit SG Security Session 16 November 2011 Austin, TX Opening Session Agenda Status Updates Distribution Reliability & Cyber Security

Agenda DayTimeslotSubjectGroup Tuesday SG Security Boot CampSG Sec WG Wednesday Opening PlenaryUCAIug Agenda & Status updates Usability Analysis TF Distribution Reliability & Cyber Security SG Sec WG Thursday Vulnerability Handling & Information SharingSG Sec WG SG Security / OpenADR*Joint Session Substation Automation Security ProfileSG Sec WG Friday External Activities: NERC, NESCOR, SGIP… Closeout / Actions Forward SG Sec WG

SG Security Working Group ChairDarren Highfill, SCE Vice-ChairBobby Brown, EnerNex SecretaryScott Palmquist, Itron

SG Security WG – Task Forces Usability Analysis Task Force – Chair: John Lilley (SDG&E), Vice-Chair: Daniel Thanos (GE) CyberSec-Interop Task Force – Chair: Dave Teumim (Teumim Technical), Vice-Chair: John Stewart (TVA) AMI-SEC Task Force – Chair: Darren Highfill (SCE), Vice-Chair: Bobby Brown (EnerNex) Embedded Systems Security Task Force – Chair: Mark Ward (PG&E), Vice-Chair: Rohit Khera (S&C Electric)

SG Security – Recent Accomplishments Usability Analysis Task Force – 2 nd Review of Distribution Management Security Profile – Revision of Wide-Area Monitoring, Protection, & Control Security Profile Embedded Systems Security Task Force – Working on Secure Device Profile for Embedded Systems OpenADR Support – Draft DR Security Profile

Objectives for November F2F Meeting Support relationships with other OpenSG working groups and task forces – OpenADR – Security Conformity Update on external activites – NERC, NESCOR, SGIP ASAP-SG – New work: Substation Automation Security Profile Open discussions – Vulnerability Handling

Usability Analysis TF Distribution Management Security Profile – Status: COMPLETE – Comments have been reviewed and incorporated into the document – Evaluation report issued – Ratification vote passed – Awaiting OpenSG Technical Committee approval

Usability Analysis TF WAMPAC (Synchrophasor) Security Profile – Status: NEARING COMPLETION – Comments have been reviewed and incorporated into the document – Evaluation Report is being finalized – Expect draft for vote soon…

Continuation of CyberSec-Interop? Interoperable Configuration Profiles – Valuable work products – Close alignment with goals of UCA, SGIP Work/activity appears to have stalled Need champion to carry work forward

AMI-SEC Task Force Re-work of AMI Security Profile by CSWG AMI Security Subgroup – Using ASAP-SG method Are there other tasks?

Embedded Systems Security TF Work still continuing, but loss of momentum Re-scope work to reap value from what has already been accomplished? Re-examine sub-leads and meeting times

Distribution Reliability Classic definitions – Interruption indices: SAIDI, SAIFI, CAIFI Number of momentary and sustained interruptions Duration of interruptions Number of customers interrupted

Smart Grid Conceptual Model

Distribution Domain

Home Area Network

Distribution Failures Line Segments – Permanent vs. Temporary – Mean Time to Repair Protective & Switching Devices – Probability of Failure – Protection Reliability – Reclose Reliability – Mean Time to Repair – Switching Reliability – Mean Time to Switch

Distribution Reliability Newer generation of indices – Power Quality (sag and swell) – SIARFI, SMARFI, STARFI Customers with specific power needs – Largely industrial customers to-date – Moving toward service-oriented model?

Customer Domain

Ways to Improve Maintenance – Corrective and Preventative Installation of reclosers & breakers Automation Crew Management Switching algorithms – Upstream and Downstream (back feeding) System Reconfiguration – Islanding & Restoration

UCAIug Summit SG Security Session 17 November 2011 Austin, TX Security Vulnerability Discussion

Vulnerability Disclosure and Information Sharing

Vulnerability Disclosure Progress ? General practice ICSJWG Whitepaper status The Beresford Vulnerabilities, ICS-CERT, and Siemens Digital Bond’s Response

Information Sharing What is this? Some people know something bad about security of critical infrastructure Only government agencies, asset owners, the discoverer, and the supplier directly involved are allowed to know. Other people need to know this – Ever hear of proactive response to threats? Government lawyers are here to help but don’t tell anybody what you know.

Vulnerability Disclosure and Information Sharing Who is going to shoot that elephant!? Can we hold anyone responsible for being irresponsible? Do we want to hold anyone responsible?

Vulnerability Disclosure and Information Sharing Does anyone know the requirements for vulnerability disclosure and information sharing processes that would protect the security of critical infrastructure? Sounds like an OSGug kind of thing to me?

UCAIug OpenADR Taskforce Meeting Nov 16,17, 2011 Austin Face to Face Meeting

Face to Face OpenADR Taskforce Agenda Wed, 11/16 – 3:30 – 5:50 PAP09/OpenADR joint meeting Thur, 11/17 – 8:00 -10:00 – Phase II SRS discussion – 100: :00 Joint Security Meeting – 3:30-5:30 Phase II SRS wrap up, future planning

Phase 2 Requirements Phase 2 Business & User Requirements addressed by System Requirements Phase 2 requirements B&U requirements are Dispositioned in one of five ways: 1New service is identified. 2Change to an existing service. 3Existing service addresses the requirement. 4Non-functional requirement. 5Out of Scope.

OpenADR Security Profile Goal: Provide vetted OpenADR Security Profile November 2011 Today’s Session (Working Session) – Review Security Profile Development Process – Review ASAP-SG Framework used – High level review of existing document OpenADR functionality Use Cases- taxonomy and failure points – Open Issues – Steps to conclusion for comments and approval

OpenADR Security Profile Process Developed by joint team from OpenADR TF and SG Security Additional Stakeholders in OpenADR Alliance (OpenADR 2.0 Spec. & CoS) Developed using ASAP-SG Framework – Framework overview from Darren

ASAP-SG SUBSTATION AUTOMATION SECURITY PROFILE ROLE TO DEVICE MAPPING DISCUSSION UCAIug/SG Security F2F November 2011

Substation Roles Identified  SENSOR  ACTUATOR  PROTECTION APPLICATION  MONITORING APPLICATION  CONTROL APPLICATION  CONTROL AUTHORITY  INFORMATION REPOSITORY  PROXY  USER INTERFACE  DEVICE MANAGER  USER  MAINTAINER 32

Some Quick Notes About Roles Many devices today can support numerous roles A Utility may implement all or a subset of the devices capabilities (roles) A role may be implemented more than once within a substation automation system 33

Example Substation Architecture 34

Role to Device Mapping Example 35 PROTECTION RELAY and MERGING UNIT

36 COMMUNICATIONS PROCESSOR Role to Device Mapping Example

37 DIGITAL FAULT RECORDER & METER Role to Device Mapping Example

38 HUMAN MACHINE INTERFACE (HMI) Role to Device Mapping Example

39 SUBSTATION GATEWAY

40 REMOTE TERMINAL UNIT (RTU) Role to Device Mapping Example

41 PROGRAMMABLE LOGIC CONTROLLER (PLC) Role to Device Mapping Example

Substation Automation Security Profile Security of automated functions found in transmission and distribution substations, including system monitoring, switchgear control, and system protection Considered “in scope”: – Equipment inside the substation perimeter (i.e., fence, building, or other enclosure) – Interfaces to substation equipment for communications with remote sites and other facilities – Direct communications between substations (e.g., transfer trip) Processing & Communications Processing & Communications of Measurements, Notifications, & Control Signals Measurements, Notifications, & Control Signals Operate, Control, & Protect Operate, Control, & Protect Within & Amongst Substation Components used to the Electric Grid

UCAIug Summit SG Security Session 18 November 2011 Austin, TX Industry Updates Action Items & Closeout

CSWG Update Subgroups – DPG – Privacy – High Level Requirements – Architecture – Testing & Certification – AMI Security F2F – GridInterop, December 5, 2011, 3:30-5:00 CT, Phoenix – Cyber Physical conference in April 23-24, 2012, Gaithersburg, MD – CSWG F2F April 24-25, 2012, Sterling, VA

NERC Update 2011 GridEx – Cybersecurity exercise completed yesterday Smart Grid Task Force Cyber Attack Task Force Severe Impact Resiliency

Questions? SG Security WG Collaboration Site