enhanced security through human error awareness pnnl-sa-42136

19
Enhanced Security Enhanced Security Through Human Error Through Human Error Awareness Awareness PNNL-SA-42136

Upload: lilliana-swallows

Post on 02-Apr-2015

226 views

Category:

Documents


1 download

TRANSCRIPT

Page 1: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Enhanced Security Through Enhanced Security Through Human Error AwarenessHuman Error Awareness

PNNL-SA-42136

Page 2: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Tracking aTracking aSecurity EventSecurity Event

Event

A Security Event Occurs

Page 3: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

Event

It Is Identified and Categorized

Page 4: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

Event

A Preliminary Report to DOE Is Made

Page 5: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

Event

A Full Inquiry Is Begun

Page 6: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

TakeMitigative

Action

Event

Impact Is Assessed, Mitigation Begun

Page 7: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

Contributions

TakeMitigative

Action

Event

Direct Cause andContributing Factors Are Identified

Page 8: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

TakeMitigative

Action

Event

Internal, and… External (ITAC) Documentation

Page 9: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

AssessPatterns &

Trends

DevelopCorrective

Actions

TakeMitigative

Action

Event

Resulting in CorrectiveActions and…

…Assessmentof Patternsand Trends

Page 10: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

AssessPatterns &

Trends

DevelopCorrective

Actions

Prevent Recurrence

TakeMitigative

Action

Event

Corrective Actions to Prevent Recurrence

Page 11: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

AssessPatterns &

Trends

DevelopCorrective

Actions

Prevent Recurrence

TakeMitigative

Action

Event

Distribute Lessons Learned

Lessons Learned Are Distributed in DOE

Page 12: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

AssessPatterns &

Trends

DevelopCorrective

Actions

Prevent Recurrence

Distribute Lessons Learned

PreventSimilar

Occurrences Elsewhere

TakeMitigative

Action

Event

…to Prevent the Likelihood of Similar Occurrences Elsewhere

Page 13: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Distribute Lessons Learned

You AreHere

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

AssessPatterns &

Trends

DevelopCorrective

Actions

Prevent Recurrence

PreventSimilar

Occurrences Elsewhere

TakeMitigative

Action

Event

Your role in theincident inquiry process is acritical link in thechain of incident reporting, inquiry, documentation and analysis that supports the goal of reducing the number of security incidents across the DOE complex.

Page 14: Enhanced Security Through Human Error Awareness PNNL-SA-42136

You AreHere

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

AssessPatterns &

Trends

DevelopCorrective

Actions

Prevent Recurrence

PreventSimilar

Occurrences Elsewhere

TakeMitigative

Action

EventReporting

Reporting

Distribute Lessons Learned

Page 15: Enhanced Security Through Human Error Awareness PNNL-SA-42136

You AreHere

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

AssessPatterns &

Trends

DevelopCorrective

Actions

Prevent Recurrence

PreventSimilar

Occurrences Elsewhere

TakeMitigative

Action

EventReporting

Reporting

InquiryInquiry

Distribute Lessons Learned

Page 16: Enhanced Security Through Human Error Awareness PNNL-SA-42136

You AreHere

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

AssessPatterns &

Trends

DevelopCorrective

Actions

Prevent Recurrence

Prevent Similar

Occurrences Elsewhere

TakeMitigative

Action

EventReporting

Reporting

Documentation

DocumentationInquiryInquiry

Distribute Lessons Learned

Page 17: Enhanced Security Through Human Error Awareness PNNL-SA-42136

You AreHere

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

AssessPatterns &

Trends

DevelopCorrective

Actions

Prevent Recurrence

PreventSimilar

Occurrences Elsewhere

TakeMitigative

Action

EventReporting

Reporting

AnalysisAnalysis

Documentation

DocumentationInquiryInquiry

Distribute Lessons Learned

Page 18: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Distribute Lessons Learned

You AreHere

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

AssessPatterns &

Trends

DevelopCorrective

Actions

Prevent Recurrence

PreventSimilar

Occurrences Elsewhere

TakeMitigative

Action

EventReporting

Reporting

AnalysisAnalysis

Documentation

DocumentationInquiryInquiry

Lessons LearnedLessons Learned

Page 19: Enhanced Security Through Human Error Awareness PNNL-SA-42136

Distribute Lessons Learned

You AreHere

Tracking aTracking aSecurity EventSecurity Event

Identify &Categorize

PreliminaryReport to DOE

FullInquiry

AssessImpact

Assess DirectCause &

ContributionsDocumentIMI 1, 2, 3via ITAC

DocumentNon Incidents

& IMI 4’sInternally

AssessPatterns &

Trends

DevelopCorrective

Actions

Prevent Recurrence

PreventSimilar

Occurrences Elsewhere

TakeMitigative

Action

Event Reduced Likelihood of Security Incidents

Reduced Likelihood of Security Incidents

Reduced Likelihood of Security Incidents

Reduced Likelihood of Security Incidents

ESTHER:ESTHER:Enhanced Security Enhanced Security

Through Human Through Human Error ReductionError Reduction