Smart Grid Security Architecture Development based on IntelliGrid Methodologies Authors Joe Hughes Technical Manager Madhava Sushilendra.

Slides:



Advertisements
Similar presentations
NIST Interoperability Framework for the Smart Grid
Advertisements

Connected Health Framework
Requirements Based Evaluation of BPL for Power System Sensing, Command and Control Applications Erich W. Gunther EnerNex Corporation
Impact of Smart Grid, ICT on Environment and Climate Change David Su Advanced Network Technologies National Institute of Standards and Technology ITU Symposium.
UCAIug HAN SRS v2.0 Summary August 12, Scope of HAN SRS in the NIST conceptual model.
Who is NEMA? NEMA is the association of electrical equipment and medical imaging manufacturers, founded in 1926 and headquartered in Arlington, Virginia.
September 30, 2011 OASIS Open Smart Grid Reference Model: Standards Landscape Analysis.
Cyber Security and the Smart Grid George W. Arnold, Eng.Sc.D. National Institute of Standards and Technology (NIST) U.S. Department of Commerce
Smart Grid - Cyber Security Small Rural Electric George Gamble Black & Veatch
Connecting People With Information DoD Net-Centric Services Strategy Frank Petroski October 31, 2006.
Smart The Grid Plenary Panel: Smart Grid Interim Roadmap Draft and Processes Joe Hughes, EPRI Erich Gunther, Enernex Frances Cleveland, Xanthus Consulting.
Smart Grid Security Architecture Development based on IntelliGrid Methodologies Authors Joe Hughes Technical Manager Madhava Sushilendra.
Advanced Metering Infrastructure AMI Security Roadmap April 13, 2007.
IntelliGrid: Enabling The Power Delivery System of the Future Don Von Dollen EPRI IntelliGrid Program 9th International Symposium on Power- Line Communications.
OpenFMB Specification Development Plan
EPRI Smart Grid Demonstration and CIM Standards Development
1 ISO/RTO Council Wholesale Demand Response Projects & OpenADR David Forfia.
Jeju, 13 – 16 May 2013Standards for Shared ICT HIS – Smart Grid Karen Bartleson, President, IEEE Standards Association Document No: GSC17-PLEN-72 Source:
American Electric Power (AEP) Virtual Power Plant Simulator (VPPS) Tom Jones, Manger – Corporate Technology Development American Electric Power Grid-InterOp.
Jerry FitzPatrick, NIST Chair Wednesday, May 26. Introduction - IKB PAP8 PAP14 DEWG Charter What should the T&D DEWG be doing? T&D DEWG or T and D DEWGs?
Smart Grid Standards Bill Moroney President & Chief Executive Utilities Telecom Council.
1 Connectivity Week 2010 How Can Standards Be Regulated? Thursday May 27 10:30AM-Noon Zahra Makoui.
Smart Grid Interoperability Standards George W. Arnold, Eng.Sc.D. National Coordinator for Smart Grid Interoperability National Institute of Standards.
2015 World Forum on Energy Regulation May 25, 2015
B usiness T echnology S olutions AMI – Advanced Metering Infrastructure Consumers Energy Mark Ortiz March 9, 2011.
GridWise ® Architecture Council Cyber-Physical System Requirements for Transactive Energy Systems Shawn A. Chandler Maseeh College of Electrical and Computer.
PTD Energy Management & Information Systems FERC TC: Information Technology for Reliability & Markets ISO-RTO Standards Collaborative July 14, 2004 J.
Don Von Dollen Senior Program Manager, Data Integration & Communications Grid Interop December 4, 2012 A Utility Standards and Technology Adoption Framework.
Engineering, Operations & Technology | Information TechnologyAPEX | 1 Copyright © 2009 Boeing. All rights reserved. Architecture Concept UG D- DOC UG D-
FirstEnergy / Jersey Central Power & Light Integrated Distributed Energy Resources (IDER) Joseph Waligorski FirstEnergy Grid-InterOp 2009 Denver, CO November.
Sketches of the Smart Grid a quick survey of recent presentation art for the NIST B2G DEWG Toby Considine TC9 –
Common Information Model and EPRI Smart Grid Research
DOCUMENT #:GSC15-PLEN-53 FOR:Presentation SOURCE:ETSI AGENDA ITEM:PLEN 6.11 CONTACT(S):Emmanuel Darmois, Board Member Marylin Arndt, TC M2M chair Smart.
EDISON INTERNATIONAL® SM SCE Project Story CIM User Group 10/12/2010 Jim Horstman Southern California Edison.
The Challenge of IT-Business Alignment
Doc.: IEEE /0047r1 Submission SGIP Liaison Report to IEEE Following the SGIP (2.0) Inaugural Conference Nov 5-7, 2013 Date:
1 Smart Grid Cyber Security Annabelle Lee Senior Cyber Security Strategist Computer Security Division National Institute of Standards and Technology June.
IEC SG 3 - Smart Grid Strategic Group CEN/CENELEC - Focus Group activities on standards for the Smart Grid P. Boss, Geneva (CH)
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All SMART GRID ICT: SECURITY, INTEROPERABILITY & NEXT STEPS John O’Neill, Senior Project Manager CSA.
Applicable EPRI and Other Research to Assist Designs for AMI and Customer Communications Joe Hughes EPRI.
FCC Field Hearing on Energy and the Environment Monday November 30, 2009 MIT Stratton Student Center, Twenty Chimneys Peter Brandien, Vice President System.
Smart Grid Interoperability Panel & ISO / RTO Council Smart Grid Projects David Forfia SGIP Governing Board Member – Stakeholder Category 21 ISO/RTO Sponsor.
Common Information Model - enabling data exchanges and interoperability in the electric utility industry P&E Magazine, May 2015 Power & Energy Magazine.
Frankfurt (Germany), 6-9 June 2011 Iiro Rinta-Jouppi – Sweden – RT 3c – Paper 0210 COMMUNICATION & DATA SECURITY.
© 2015 Electric Power Research Institute, Inc. All rights reserved. Ameen H. Hamdon, P.Eng President, SUBNET Solutions Inc. EMMOS 2015 September 22, 2015.
Updated 1/28/2011.
June 17, 2009 Michael W. Howard, Ph.D. Sr. Vice President The Interoperable Smart Grid Evolving.
The Smart Grid: Re-powering America George W. Arnold National Coordinator for Smart Grid Interoperability NIST Gaithersburg, MD April 28, 2010.
DOCUMENT #:GSC15-PLEN-82r2 FOR:Presentation SOURCE:ATIS AGENDA ITEM: PLEN 6.14 CONTACT(S): Andrew White ATIS’
IEC TC57 Smart Grid Activities Scott Neumann USNC TA IEC TC57 November 6, 2009.
International Security Management Standards. BS ISO/IEC 17799:2005 BS ISO/IEC 27001:2005 First edition – ISO/IEC 17799:2000 Second edition ISO/IEC 17799:2005.
G. Suter CH Session 3 – Block 2 – 4 th Question Barcelona May “ System Interfaces for Distribution Management “ TC57 WG14 Standards IEC
FERC Staff’s Report on Demand Response and Advanced Metering.
“SG-Systems” ( Smart Grid – Operational Applications Integration ) Charter & Status Greg Robinson, Co-Chair, SG-Systems Brent Hodges, Chair, SG-Systems.
SE513 Software Quality Assurance Lecture12: Software Reliability and Quality Management Standards.
Jeju, 13 – 16 May 2013Standards for Shared ICT Smart Grids activities in ETSI Presenter: Adrian Scrase ETSI Chief Technical Officer (CTO) Document No:
Eric Peirano, Ph.D., TECHNOFI, COO
Eric Peirano, Ph.D., TECHNOFI, COO
[WP1] T1.2 User and Business Requirements
“SG-Systems” (Smart Grid – Operational Applications Integration) Charter & Status Brent Hodges, Chair, SG-Systems Greg Robinson, Co-Chair, SG-Systems.
Smart Grid Interoperability Standards
Quality management standards
Karen Bartleson, President, IEEE Standards Association
Project: IEEE P Working Group for Wireless Personal Area Networks (WPANs) Submission Title: [Smart Grid Overview] Date Submitted: [13.
IEC TC57 Smart Grid Activities
Smart Grids activities in ETSI
Group Meeting Ming Hong Tsai Date :
Chapter 1 Introduction.
ETSI Standardization Activities on Smart Grids
Energy Storage & Cyber Security
Presentation transcript:

Smart Grid Security Architecture Development based on IntelliGrid Methodologies Authors Joe Hughes Technical Manager Madhava Sushilendra Sr. Project Manager

2 © 2007 Electric Power Research Institute, Inc. All rights reserved. What is an Industry Level Architecture? Architecture: The Structure of Components, their relationships, and the principles and guidelines governing their design and evolution over time*. *DoD Integrated Architecture Panel, based on IEEE Std

3 © 2007 Electric Power Research Institute, Inc. All rights reserved. Drivers behind Architecture Development Systems development lack an overall enterprise-wide implementation perspective Infrastructure is underspecified –Unable to scale up from demonstration “pilots” –Major issues not addressed systematically Integration across the enterprise Integration across the industry Data sharing, hardware resource sharing No Integrated System Management “Stovepiped” systems Disparate Standards Initiatives

Hard Real-Time Intra-Substations Distribution Field Equipment Comm Inter-Control Center Control Center  Customer Equip Inter-Corporation Inter-Customer Sites Hard Real-Time Inter-Substations Data Acquisition Control Centers  ESPs Control Center  Corporations DER Monitoring and Control Customer  ESP High security intra-substation Intra-Control Center RTOs  Market Participants Intra-CorporationIntra-Customer Site HV Generation Plant External Corporations Corporate Utility Market participants Management and Security Architecture Challenges: 1.The Industry is a Blend of Different Distributed Computing Environments

5 © 2007 Electric Power Research Institute, Inc. All rights reserved. Security and Management Topics Cut Across IntelliGrid Architecture Domains Transmission Architecture Distribution Architecture Consumer Communications Architecture Security and Management

6 © 2007 Electric Power Research Institute, Inc. All rights reserved. Management and Security Architecture Challenges: Enterprise Management Policy Sources In Progress Energy Industry Level Policies Regional Level Policies Federal Level Policies International Level Policies International Level Agreements, Rules of Governance, Resolutions, Business and Regulatory Practices Federal Policies on key topics, National Security, Communications Regulations, Critical Infrastructure Protection…Other… Energy Industry-Wide Policies: RTO and Market Operations… UN, European Union, International Standards, ITU, ISO, IEC, CIGRE…Other FCC, DHS, DOD, DOC, GAO, GSA, FBI, NSA… FERC, NERC, NARUC, NIST, DOE, DHS RTO/ISO Operations CAL ISO, PJM, MISO, North American Architects

7 © 2007 Electric Power Research Institute, Inc. All rights reserved. Management and Security Architecture Challenges: 3.Consistent Approach to Architecture Governance Needed for Energy Industry Federal Enterprise Architecture Department of Defense Architecture Framework Energy Industry Architecture Federal CIO Council GSA, OMB, NIST Department of Defense Joint Architecture Working Group Branches of Military Service Regulators, North American Electric Reliability Council Utility Management ISO/RTO’s, Other, TBD Governance OrganizationsArchitectures

8 © 2007 Electric Power Research Institute, Inc. All rights reserved. Key Standards Organizations Involved in the Development of Industry Level Infrastructure ISOIEC International standards- developing organizations National Organizations Trade, technical, and government Consortia and user groups JTC 1 ANSI(US) EIA/CEMA IEEE ASHRAE SAE UCA International Zigbee Alliance AEIC Meter Group BACnet™ Users ITU IEC 61970/68 CIM Users IEC Users Open AMI AHAM Utility AMI Open HAN BACnet™ Mfrs JTC 1 WG 25 *Representative Sample ASHRAE SSPC 135 UIWG ANSI C12 Series EPRI IWG ISA IETF CENELEC Other Projects NIST RD&D Projects EPRI ProjectsNIST ProjectsDOD ProjectsDOE Projects

9 © 2007 Electric Power Research Institute, Inc. All rights reserved. Management and Security Related Standards Development (Sample) IEC TC 57 WG 15: (IEC/TR 62210) Also embedded within IEC ISO Common Criteria (ISO/IEC 15408) ITU X.805 also designated as ISO ISA: ANSI/ISA NIST 800 Series Documents and Federal Information Processing Standards (i.e. SP , SP ) IETF: Several RFC’s ANSI C12: Embedded in Metering Standards ASHRAE SSPC 135 Other

10 © 2007 Electric Power Research Institute, Inc. All rights reserved. Integration Across Both Information Technology (IT) and Field Equipment (“Real-Time”) is Required Customer Integration Distribution automation Substation automation Transmission Ops WAMAC PP integration DER integration Power System Resources Real Time Applications Communication Infrastructure Data Management Enterprise Applications Power procurement Market operations Regional Transmission Operator Distribution Control CenterExternal corporations DER integration

11 © 2007 Electric Power Research Institute, Inc. All rights reserved. Examples of Intelligrid Architecture Recommendations Apply ASHRAE BACnet™ for Building Automation Apply ANSI C12 for Revenue Metering Apply IEC for Real-Time Controls Apply IEC and for Enterprise Data Sharing R&D: Harmonize IEC and Standards Develop and implement consistent systems management and security policies

12 © 2007 Electric Power Research Institute, Inc. All rights reserved. Key Points of Technical Interoperability Content –Migration to Consistent Industry Policies –Common Well Defined Industry-Level Requirements Management, Security and Energy Applications –Applications Level Semantics and Syntax Management, Security and Energy Applications –Common Well Defined Communications Interfaces –“Bracketing” and Robustness Development Methods –Migration to Improved Systems Engineering and Architecture Development Approaches –Migration to Use of Industry Tools and Models

13 © 2007 Electric Power Research Institute, Inc. All rights reserved. User Groups Reference Designs Standards Architecture Development Ingredients for Successful Industry Level Interoperable and Managed Systems Development Three Legged Stool: For Interoperable Products 2) Involved User Group: Interoperability Agreements, Labeling, Testing, Marketing UCA International, BACnet Mfgs. Assoc. Assoc. of Edison Illuminating Cos 3) Reference implementations and Designs: Developer Tools, Standards Implementations and test implementations 1) Open Mature Standards: Protocols, test schemas, object models IEC TC57, ANSI C12, ASHRAE SPC135, Other

14 © 2007 Electric Power Research Institute, Inc. All rights reserved. Architecture Vision Uses Consistent Policies Across Operating Domains Integrates a Wide Variety of Networks Integrates a Wide Variety of Physical Media Enables Interoperability among Intelligent equipment Uses a Carefully Integrated Set of Standards from Different Industries Standards are Supported by Effective User Groups Industry Requirements are Shared across the industry Interoperable Equipment is available Across the Industry Conformance and Interoperability Testing widely adopted Standardized Notation and Systems Engineering is Widely Used to Specify and Manage Systems

15 © 2007 Electric Power Research Institute, Inc. All rights reserved. Architectural Gaps Policies for management and security need to be further developed and consistently applied Network and Systems Management Infrastructures need to be further specified, evaluated and adopted/developed Security Architecture Needs to be Developed/Adopted for Advanced Automation and Customer Communications Physical Media Options Need to be Better Understood for Power System Specific Functions, Designs Developed Implemented and Tested Networking Infrastructure Options Need to be Better Understood and Designs Developed, Implemented and Tested

16 © 2007 Electric Power Research Institute, Inc. All rights reserved. General “Methods”: Requirements Driven Process Industry Policies (In Progress, but fragmented) Technical Requirements In Progress, but fragmented Systems Engineering …needs to be applied

17 © 2007 Electric Power Research Institute, Inc. All rights reserved. Recommended Approaches: Develop Functional and Non-Functional Requirements Together Applications: –System must support the requirements coming from power engineering and industry application needs Systems and Network Management: –Networks and intelligent equipment must be able to scale and managed: Fault, Configuration, Accounting, Performance, Security, Application Management Security: –System must include adherence to existing and emerging security policies including system “hardening” as well as managing residual risk

18 © 2007 Electric Power Research Institute, Inc. All rights reserved. Architecture Development Applications and Infrastructure Development Needs to Occur in Parallel: Designs are Critical to Architecture Requirements Analyses Designs Implement Bench/Develop Field Test Small/Develop Field Test Large/Demo Commercial Rollout Energy Specific Standards User Groups Manufacturer Individual Project work Interoperable Equipment Adoption Refinement Feedback Iterate QA and Testing

19 © 2007 Electric Power Research Institute, Inc. All rights reserved. Areas of Technical Development Focus Industry Assessments: –Where is the Industry Today with Respect to Systems Management and Security Infrastructure/Architecture Development? Requirements Assessment and Development: –Does the industry have a robust set of requirements for management and security of “smart grid” systems and environments? –Does the industry have a mature set of policy sources for smart grid deployment, management and operations?

20 © 2007 Electric Power Research Institute, Inc. All rights reserved. Areas of Technical Development Focus Reference Designs and Implementations: –Develop Reference Designs for key equipment based on emerging open standards –Develop Initial Implementations (Bench Top First) Security Vulnerability Analyses –Evaluate Security Vulnerabilities in Reference Implementations, Penetration Testing –Propose resolutions and identify technical issues Industry Collaboration –Develop contributions to standards and consortia as appropriate –Refine designs and iterate, Transfer to Industry

21 © 2007 Electric Power Research Institute, Inc. All rights reserved. Questions ??? Madhava Sushilendra Senior Project Manager, Power Delivery & Utilization Electric Power Research Institute (EPRI) 942 Corridor Park Blvd. Knoxville, TN O: C: “Together... Shaping the Future of Electricity ”

22 © 2007 Electric Power Research Institute, Inc. All rights reserved. Together…Shaping the Future of Electricity