Managing Risks, Countering Threats: Protecting Critical National Infrastructure Against Terrorism Martin Rudner Canadian Centre of Intelligence and Security.

Slides:



Advertisements
Similar presentations
Tehran University of Medical Sciences Institute of Public Health Research Health in Emergency & Disaster Department (HE&DD) D isaster: Basic Terminology.
Advertisements

Thai delegation Presentation at 4 th ARF seminar on Cyber-terrorism
Critical Infrastructure Protection Policy Priorities Sara Pinheiro European Commission DG Home Affairs.
Department of Homeland Security Site Assistance Visit (SAV)
Homeland Security and Law Enforcement Created By: Ashley Spivey For _Local_Actions_for_Homeland_Security.pdf.
1 Protecting the Long Island Business Community A Public Safety Partnership.
Kenneth Watson Partnership for Critical Infrastructure Security Partnership for Critical Infrastructure Security.
Session 8: Modeling the Vulnerability of Targets to Threats of Terrorism 1 Session 8 Modeling the Vulnerability of Targets to Threats of Terrorism John.
Cyber and Maritime Infrastructure
National Infrastructure Protection Plan
DHS, National Cyber Security Division Overview
-NEW EDUCATIONAL PATWAY FOR GLOBAL PUBLIC HEALTH SECURITY- (2) South Eastern Europe (SEE) PUBLIC HEALTH PREPAREDNESS SUPERCOURSE NETWORK Elisaveta Stikova,
Mainstreaming Disaster Risk Management in Iraq
Progressiveness A Vital Principle in Emergency Management.
Managerial Flexibility in the Department of Homeland Security R. Steven Daniels, CSUB & Carolyn L. Clark-Daniels, Bakersfield, CA.
PPA 573 – Emergency Management and Homeland Security Lecture 9b - Department of Homeland Security Strategic Plan.
Critical Infrastructure Protection (and Policy) H. Scott Matthews March 5, 2003.
June 9, 2003 Updated July 2004 Slide 1 Critical Infrastructure Assurance: The US Experience.
How Can Policy Research Help the Department of Homeland Security? Jack Riley November 18, 2004.
Leslie W Kennedy Director RUTGERS Newark. Sponsored by the Rutgers School of Criminal Justice, Center for Global Change and Governance, College of Nursing.
Protection and Disaster Risk Reduction (Place) – (Date) Session 6.1: Integrating Protection into Disaster Risk Reduction.
Dynamic Islanding of Critical Infrastructures, a Suitable Strategy to Survive and Mitigate Critical Events Joint Infrastructure Interdependencies Research.
Food Safety and Inspection Service U.S. Department of Agriculture Homeland Security: Protecting the U.S. Food Supply Office of Food Security & Emergency.
Resiliency Rules: 7 Steps for Critical Infrastructure Protection.
Technician Module 2 Unit 8 Slide 1 MODULE 2 UNIT 8 Prevention, Intelligence & Deterrence.
The U. S. National Strategy for Global Supply Chain Security Neema Khatri Office of International Affairs U.S. Department of Homeland Security.
ARTIFICIAL INTELLIGENCE IN HOMELAND SECURITY Patrick Hathaway CS572 – Advanced Artificial Intelligence.
Isdefe ISXXXX XX Your best ally Panel: Future scenarios for European critical infrastructures protection Carlos Martí Sempere. Essen.
1 © 2003 Cisco Systems, Inc. All rights reserved. CIAG-HLS Security For Infrastructure Protection: Public-Private Partnerships KEN WATSON 15 OCT.
1 Information System Security Assurance Architecture A Proposed IEEE Standard for Managing Enterprise Risk February 7, 2005 Dr. Ron Ross Computer Security.
ICTs Tackling Climate Changes Dr. Amr Badawi Executive President NTRA.
The role of private security in the protection of critical infrastructures Veerle Pashley Free University of Brussels Department of Criminology.
Association of Defense Communities June 23, 2015
Critical Infrastructure Protection Overview Building a safer, more secure, more resilient America The National Infrastructure Protection Plan, released.
Australia Cybercrime Capacity Building Conference April 2010 Brunei Darussalam Ms Marcella Hawkes Director, Cyber Security Policy Australian Government.
Australia’s National Security Apparatus Ms Vikki Templeman Director Strategic Assessments and Long Range Planning.
Jerry Cochran Principal Security Strategist Trustworthy Computing Group Microsoft Corporation.
Homeland Security, First Edition © 2012 Pearson Education, Inc. All rights reserved. Introduction to Homeland Security CHAPTER 1.
1 State Homeland Security: Priorities and Funding R. Chris McIlroy Homeland Security and Technology Division National Governors Association.
InfraGard A Government and Private Sector Alliance Information sharing begins with human relationships – people talking with people whom they trust. Information.
A Global Approach to Protecting the Global Critical Infrastructure Dr. Stephen D. Bryen.
1 Washington State Critical Infrastructure Program “No security, No infrastructure” Infrastructure Protection Office Emergency Management Division Washington.
Governor’s Office of Homeland Security & Emergency Preparedness LOUISIANA BANKERS ASSOCIATION 2010 Louisiana Emergency Preparedness Coalition Meetings.
WHY DRR Minimizing impacts of disasters in health sector Maximizing readiness to respond 1$ vs 7 $
What is “national security”?  No longer defined only by threat of arms  It really is the economy  Infrastructure not controlled by the government.
AUSTRALIA. A National Strategy for Enhancing the Safety and Security of our Food Supply ที่มา : We pride ourselves on our high safety and security standards.
UNECE – SC2 Rail Security Analysis and economic assessment of rail transport security 1st October 2009 Andrew Cook.
TRANSPORTATION SECURITY Transportation Border Working Group Dearborn, MI - June 1, 2005 Serge Lavoie, Surface & Multi-modal Security Policy Security and.
STRATEGIC INTELLIGENCE MANAGEMENT Chapter by Kristian Krieger, M. Brooke Rogers Chapter 7 - Promoting Public Resilience against Chemical, Biological, Radiological.
OAS Secretariat for Multidimensional Security CICTE Secretariat Disasters and Critical Infrastructure Protection.
1 INTERNATIONAL NETWORK ON FINANCIAL MANAGEMENT OF LARGE-SCALE CATASTROPHES Global Conference on Insurance and Reinsurance for Natural Catastrophe Risk.
Dr Jenean Spencer Director Pandemic Preparedness Section Office of Health Protection Department of Health and Ageing Public-Private Partnerships for Pandemic.
November 19, 2002 – Congress passed the Homeland Security Act of 2002, creating a new cabinet-level agency DHS activated in early 2003 Original Mission.
Establishing an Aviation Risk Context APEC TPTWG-27 Aviation Security Experts Sub-Group Meeting Denise Morgan Office of Transport Security May 2006.
A Presentation to the 2017 GEO Work Programme Symposium,
Disaster and Emergency Management
Cybersecurity, competence and preparedness
Ken Watson 9 Sep 2003 Critical Infrastructure Assurance: Business Case for Public-Private Partnership Ken Watson 9 Sep 2003
Sendai Framework for Disaster Risk Reduction
Critical Infrastructure in Varna
and Security Management: ISO 28000
California Cybersecurity Integration Center (Cal-CSIC)
CIRAS FINAL CONFERENCE
Critical Infrastructure Protection Policy Priorities
Protection of Critical Infrastructure
The U.S. Department of Homeland Security
Prevention, Intelligence
Deborah Housen-Couriel, ADV.
Presentation transcript:

Managing Risks, Countering Threats: Protecting Critical National Infrastructure Against Terrorism Martin Rudner Canadian Centre of Intelligence and Security Studies The Norman Paterson School of International Affairs Carleton University

CRITICAL NATIONAL INFRASTRUCTURE PUBLIC GOODS & SERVICES PUBLIC GOODS & SERVICES PRIVATE OWNERSHIP/OPERATORS PRIVATE OWNERSHIP/OPERATORS INTERDEPENDENCY INTERDEPENDENCY INTERNATIONAL LINKAGES /GLOBALIZATION INTERNATIONAL LINKAGES /GLOBALIZATION

CIP SECTORS ENERGY ENERGY TRANSPORTATION TRANSPORTATION TELECOMMUNICATIONS TELECOMMUNICATIONS DEFENCE & CHEMICAL INDUSTRY DEFENCE & CHEMICAL INDUSTRY FINANCE FINANCE WATER SUPPLY WATER SUPPLY PUBLIC HEALTH PUBLIC HEALTH FOOD FOOD GOVERNMENT GOVERNMENT

THREAT ASSESSMENTS AL-QAEDA TARGETING OF CRITICAL NATIONAL INFRASTRUCTURE AL-QAEDA TARGETING OF CRITICAL NATIONAL INFRASTRUCTURE STRATEGY STRATEGY EVOLUTION EVOLUTION OBJECTIVES OBJECTIVES AL-QAEDA OPERATIONS IN IRAQ AGAINST CRITICAL NATIONAL INFRASTRUCTURE AL-QAEDA OPERATIONS IN IRAQ AGAINST CRITICAL NATIONAL INFRASTRUCTURE REDEPLOYMENT/RETURN OF MUJAHIDEEN REDEPLOYMENT/RETURN OF MUJAHIDEEN AL-QAEDA OPERATIONS ELSEWHERE AGAINST CRITICAL NATIONAL INFRASTRUCTURE AL-QAEDA OPERATIONS ELSEWHERE AGAINST CRITICAL NATIONAL INFRASTRUCTURE LONDON, MADRID, TURKEY LONDON, MADRID, TURKEY SAUDI ARABIA SAUDI ARABIA JORDAN JORDAN BAB EL-MANDEB BAB EL-MANDEB OTHER TERROR TARGETING OF CRITICAL NATIONAL INFRASTRUCTURE OTHER TERROR TARGETING OF CRITICAL NATIONAL INFRASTRUCTURE COLOMBIA COLOMBIA NIGER DELTA NIGER DELTA SRI LANKA SRI LANKA ISRAEL ISRAEL

A DEFENSIVE APPROACH TO CRITICAL INFRASTRUCTURE PROTECTION FOCUS AT MICO-LEVEL, SINGULARITIES FOCUS AT MICO-LEVEL, SINGULARITIES REACTIVE, PASSIVE PROTECTION REACTIVE, PASSIVE PROTECTION GUARDS, GATES (AND GUNS?) GUARDS, GATES (AND GUNS?) PROTECTIVE SECURITY PROTECTIVE SECURITY HARDENING HARDENING ROBUST DESIGN/TECHNOLOGIES ROBUST DESIGN/TECHNOLOGIES REDUNDANCY REDUNDANCY EMERGENCY PREPAREDNESS EMERGENCY PREPAREDNESS ASSURANCE ASSURANCE MITIGATION MANAGEMENT MITIGATION MANAGEMENT

A RISK MANAGEMENT APPROACH TO CRITICAL INFRASTRUCTURE PROTECTION PUBLIC/PRIVATE LIABILITIES PUBLIC/PRIVATE LIABILITIES PARADIGMS OF RISK PARADIGMS OF RISK ACTUARIAL RISK ACTUARIAL RISK PROBABILITY ASSESSMENT PROBABILITY ASSESSMENT WICKED PROBLEMS WICKED PROBLEMS CONSEQUENCE MANAGEMENT CONSEQUENCE MANAGEMENT CRITICALITY AND INTERDEPENDENCE CRITICALITY AND INTERDEPENDENCE PRIORITIZATION/RESOURCE ALLOCATION PRIORITIZATION/RESOURCE ALLOCATION LOW RISK, CATASTROPHIC CONSEQUENCES LOW RISK, CATASTROPHIC CONSEQUENCES

A STRATEGIC APPROACH TO CRITICAL INFRASTRUCTURE PROTECTION PROACTIVE INTELLIGENCE-LED CIP PROACTIVE INTELLIGENCE-LED CIP IDENTIFY THREATS IDENTIFY THREATS EARLY WARNING EARLY WARNING PREVENT ATTACKS PREVENT ATTACKS INTEGRATED, ALL-SOURCE ASSESSEMENT OF THREATS INTEGRATED, ALL-SOURCE ASSESSEMENT OF THREATS DATA-MINING DATA-MINING NETWORK ANALYSIS NETWORK ANALYSIS OPERATIONAL PARTNERSHIPS: SECURITY MANAGERS - INTELLIGENCE – LAW ENFORCEMENT OPERATIONAL PARTNERSHIPS: SECURITY MANAGERS - INTELLIGENCE – LAW ENFORCEMENT CULTURAL SHIFT: FROM “NEED TO KNOW” TO “NEED TO SHARE” CULTURAL SHIFT: FROM “NEED TO KNOW” TO “NEED TO SHARE” THREAT BASED, DESIGNED PROTECTION THREAT BASED, DESIGNED PROTECTION

A STRATEGIC APPROACH TO CRITICAL INFRASTRUCTURE PROTECTION (CONT.) PUBLIC-PRIVATE SECTOR PUBLIC-PRIVATE SECTOR PRIVATE SECTOR LIABILITY PRIVATE SECTOR LIABILITY INFORMATION SHARING INFORMATION SHARING INFORMATION PROTECTION INFORMATION PROTECTION STANDARDS FOR PROTECTIVE SECURITY STANDARDS FOR PROTECTIVE SECURITY COUNTER-PENETRATION ALERTNESS COUNTER-PENETRATION ALERTNESS RESILIENCE PLANNING RESILIENCE PLANNING INTERNATIONAL COOPERATION INTERNATIONAL COOPERATION TRAINING REQUIREMENT TRAINING REQUIREMENT

LESSONS THAT NEED TO BE LEARNED Gaps in protection represent vulnerabilities to determined terrorists Gaps in protection represent vulnerabilities to determined terrorists Terrorists will exploit any chink in our armor Terrorists will exploit any chink in our armor There will always be chinks in the armor of an open society There will always be chinks in the armor of an open society National Security Policy for CIP to ensure: National Security Policy for CIP to ensure: that cost to adversaries of trying to exploit these chinks is high that cost to adversaries of trying to exploit these chinks is high their prospects of success minimal their prospects of success minimal potential consequential damages are mitigated, and that our Critical National Infrastructure has a pre- planned capacity for resilience. potential consequential damages are mitigated, and that our Critical National Infrastructure has a pre- planned capacity for resilience.

THE ETHIC OF WARNING “On issues of life and death the intelligence officer must always err on the side of the threat and not on the side of the optimist. Even if the threat is classified as being of low probability, it must be perceived as real and immediate. This is especially so if the penalty of a mistake would result in the deaths of thousands, major economic catastrophes, and … social upheaval…” “On issues of life and death the intelligence officer must always err on the side of the threat and not on the side of the optimist. Even if the threat is classified as being of low probability, it must be perceived as real and immediate. This is especially so if the penalty of a mistake would result in the deaths of thousands, major economic catastrophes, and … social upheaval…” -Efrain Halevy -Efrain Halevy