finint electric power infrastructure: interdependencies...

18
Stronger, Smarter, More Secure and Resilient Cyber-Physical Power Grid Congressional Research and Development Caucus B-369 Rayburn House Office Building, Washington, DC Friday, May 15, 2015, Noon– 1:30pm Dr. S. Massoud Amin* – Chairman, IEEE Smart Grid – ASME Energy Pubic Policy Task Force – Chairman, Board of Directors, Texas Reliability Entity (TexasRE) – Board of Directors, Midwest Reliability Organization (MRO) – Director, & Endowed Chair, Technological Leadership Institute; Professor of Electrical & Computer Engineering, University Distinguished Teaching Professor; Univ. of Minnesota * Support from EPRI, NSF, ORNL, Honeywell and SNL is gratefully acknowledged. Electric Power Infrastructure: Interdependencies, Security, and Resilience Presidential Policy Directive 21: “Energy and communications infrastructure especially critical because of their enabling functions across all critical infrastructure areas” DOE: “A resilient electric grid… is arguably the most complex and critical infrastructure.” The vast networks of electrification are the greatest engineering achievement of the 20th century – U.S. National Academy of Engineering Unconventional Threats to Security Connectivity Complexity Cybersecurity Changing Risks Cyberpower CyberͲAlert Cyber Insurance Cyber Activism Cyber Communication Cyberattack Cyber War Cyber Bullying CyberͲCommerce Cyberspace Cybersecurity CyberͲethics Cyber crime Cyber FININT Cyber Espionage Cyber Law

Upload: others

Post on 09-Oct-2020

8 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Str

ong

er,

Sm

arte

r, M

ore

Sec

ure

an

d

Res

ilien

t C

yber

-Ph

ysic

al P

ower

Gri

d

Con

gres

sion

al R

esea

rch

and

Dev

elop

men

t Cau

cus

B-3

69 R

aybu

rn H

ouse

Off

ice

Bui

ldin

g, W

ashi

ngto

n, D

CFr

iday

, M

ay 1

5, 2

015,

Noo

n–1:

30pm

Dr.

S.

Mas

sou

d A

min

*–

Cha

irm

an,

IEEE

Sm

art

Grid

–ASM

E En

ergy

Pub

ic P

olic

y Ta

sk F

orce

–Cha

irm

an,

Boa

rd o

f D

irec

tors

, Te

xas

Rel

iabi

lity

Entit

y (T

exas

RE)

–Boa

rd o

f D

irec

tors

, M

idw

est

Rel

iabi

lity

Org

aniz

atio

n (M

RO

)–

Direc

tor,

& E

ndow

ed C

hair,

Tech

nolo

gica

l Lea

ders

hip

Inst

itute

; Pr

ofes

sor

of E

lect

rica

l &

Com

pute

r En

gine

erin

g, U

nive

rsity

Dis

tingu

ishe

d Te

achi

ng P

rofe

ssor

; U

niv.

of M

inne

sota

*Sup

port

fro

m E

PRI,

NSF,

ORN

L, H

oney

wel

l and

SN

L is

gra

tefu

lly a

ckno

wle

dged

.

Elec

tric

Pow

er In

fras

truc

ture

: In

terd

epen

denc

ies,

Sec

urity

, and

Res

ilien

ce

Pres

iden

tial P

olic

y D

irec

tive

21:

“Ene

rgy

and

com

mun

icat

ions

in

fras

truc

ture

esp

ecia

lly c

ritic

al

beca

use

of t

heir e

nabl

ing

func

tions

acr

oss

all c

ritic

al

infr

astr

uctu

re a

reas

DO

E: “

A r

esili

ent

elec

tric

grid…

is

arg

uabl

y th

e m

ost

com

plex

an

d cr

itica

l inf

rast

ruct

ure.

The

vast

net

wor

ks o

f ele

ctrif

icat

ion

are

the

grea

test

eng

inee

ring

achi

evem

ent o

f the

20t

h ce

ntur

y–

U.S

. Nat

iona

l Aca

dem

y of

Eng

inee

ring

Un

con

ven

tion

al T

hre

ats

to

Sec

uri

ty

Conn

ectivity

Complexity

Cyb

erse

curi

tyC

han

gin

g R

isks

Cybe

rpow

er

Cybe

rAlert

Cybe

rInsurance

Cybe

rActivism

Cybe

rCom

mun

icatio

n

Cybe

ratta

ckCybe

rWar

Cybe

rBullying

Cybe

rCom

merce

Cybe

rspace

Cybe

rsecurity

Cybe

rethics

Cybe

rcrim

eCybe

rFININT

Cybe

rEspionage

Cybe

rLaw

Page 2: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

IT/

OT

inte

rdep

end

enci

es a

nd

imp

act

•To

day’

s sy

stem

s re

quire

a ti

ghtly

kni

t inf

orm

atio

n an

d co

mm

unic

atio

ns c

apab

ility

•Pr

otec

ting

the

syst

em w

ill re

quire

new

tech

nolo

gy

to e

nhan

ce s

ecur

ity o

f pow

er s

yste

m c

omm

and,

co

ntro

l, an

d co

mm

unic

atio

ns.

Dep

ende

nce

on IT

•Sy

stem

inte

grat

ion,

incr

ease

d co

mpl

exity

: cal

l for

ne

w a

ppro

ache

s to

sim

plify

the

oper

atio

n of

co

mpl

ex in

frast

ruct

ure

and

mak

e th

em m

ore

robu

st to

atta

cks

and

inte

rrupt

ions

.In

crea

sing

Com

plex

ity

•Th

e vu

lner

abilit

ies

of c

entra

lized

con

trol s

eem

to

dem

and

smal

ler,

loca

l sys

tem

con

figur

atio

ns.

Res

ilienc

e re

ly u

pon

the

abilit

y to

brid

ge to

p-do

wn

and

botto

m-u

p de

cisi

on m

akin

g in

real

tim

e.

Cen

traliz

atio

n an

d D

ecen

traliz

atio

n of

C

ontro

l

•Pr

obab

ilistic

ass

essm

ents

can

offe

r stra

tegi

c gu

idan

ce o

n w

here

and

how

to d

eplo

y se

curit

y re

sour

ces

to g

reat

est a

dvan

tage

.

Asse

ssin

g th

e m

ost

Effe

ctiv

e Se

curit

y In

vest

men

ts

source:M

assoud

Amin,EPR

I,Janu

ary27,1998

Big

ger P

ictu

re: D

river

sLe

t’s f

ram

e th

e is

sues

. As

I se

e it,

her

e ar

e th

e to

p 10

dr

iver

s fo

r ch

ange

in t

he e

lect

ric

pow

er s

ecto

r, in

no

part

icul

ar o

rder

:1.

Acc

eler

atio

n of

effic

ienc

y (e

nerg

y in

tens

ity

drop

ping

2%

/yr.

);2.

Dis

trib

uted

gen

erat

ion

and

ener

gy r

esou

rces

(D

G

& D

ERs)

, in

clud

ing

ener

gy s

tora

ge &

mic

rogr

ids;

3.M

ore

citie

s in

tere

sted

in c

hart

ing

thei

r en

ergy

fu

ture

;4.

Dis

tric

t en

ergy

sys

tem

s;5.

Sm

art

Grid;

Source:M.A

min,“TheCase

forthe

SmartG

rid:Fun

ding

ane

winfra

structureinan

ageof

uncertainty.”P

ublic

Utilitie

sFortnightly,M

arch

2015,p

p.24

32andIEEE

SmartG

rid,January

2014

http://

smartgrid

.ieee.org/ja

nuary20

14/102

4theieee

smartg

ridinitiativewhats

aheadin

2014

Driv

ers

(con

t.)6.

Ele

ctrific

atio

n of

tra

nspo

rtat

ion;

7. N

ew E

PA r

egul

atio

ns,

such

as

for

gree

nhou

se g

ases

un

der

Sec

tion

111(

d) o

f Cle

an A

ir A

ct;

8. D

eman

d re

spon

se (

and

3rd-

part

y ag

greg

atio

n of

sa

me)

;9.

Com

bine

d he

at &

pow

er (

CH

P),

plus

was

te h

eat

reco

very

; an

d10

. Th

e in

crea

sing

ly in

ters

tate

and

eve

n tr

ans-

natio

nal

natu

re o

f ut

ilitie

s (a

nd c

ontr

acto

rs t

oo,

whi

ch le

ads

to

secu

rity

con

cern

s).

Source:M.A

min,“TheCase

forthe

SmartG

rid:Fun

ding

ane

winfra

structureinan

ageof

uncertainty.”P

ublic

Utilitie

sFortnightly,M

arch

2015,p

p.24

32andIEEE

SmartG

rid,January

2014

http://

smartgrid

.ieee.org/ja

nuary20

14/102

4theieee

smartg

ridinitiativewhats

aheadin

2014

Key

Que

stio

nsTh

ese

driv

ers

in t

urn

lead

to

som

e im

port

ant

ques

tions

, bo

th f

or t

he u

tility

, as

a b

usin

ess,

and

for

re

gula

tors

, as

mak

ers

of p

olic

y:1.

Wha

t bu

sine

ss m

odel

s m

ay d

evel

op,

and

how

will

the

y su

cces

sful

ly s

erve

bot

h up

stre

am e

lect

rici

ty m

arke

t ac

tors

and

2.

Wha

t ef

fect

s co

uld

thes

e ne

w b

usin

ess

mod

els

have

on

incu

mbe

nt u

tiliti

es,

and

wha

t op

port

uniti

es m

ay e

xist

for

ot

her

indu

stry

sec

tors

to

capi

taliz

e on

the

se c

hang

es?

3.H

ow w

ill r

egul

atio

n ne

ed t

o ev

olve

to

crea

te a

leve

l pl

ayin

g fie

ld f

or b

oth

dist

ribu

ted

and

trad

ition

al e

nerg

y re

sour

ces?

Source:M.A

min,“TheCase

forthe

SmartG

rid:Fun

ding

ane

winfra

structureinan

ageof

uncertainty.”P

ublic

Utilitie

sFortnightly,M

arch

2015,p

p.24

32andIEEE

SmartG

rid,January

2014

http://

smartgrid

.ieee.org/ja

nuary20

14/102

4theieee

smartg

ridinitiativewhats

aheadin

2014

Page 3: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Key

Que

stio

ns (c

ont.)

4. W

hat

plau

sibl

e vi

sion

s do

we

see

for

the

futu

re o

f th

e po

wer

sec

tor,

incl

udin

g ch

ange

s fo

r in

cum

bent

ut

ilitie

s, n

ew e

lect

rici

ty s

ervi

ce p

rovi

ders

, re

gula

tors

, po

licym

aker

s, a

nd c

onsu

mer

s?

5. W

hat

mea

sure

s ar

e pr

actic

al a

nd u

sefu

l for

critic

al

infr

astr

uctu

re p

rote

ctio

n (C

IP)

and

the

secu

rity

of

cybe

r ph

ysic

al in

fras

truc

ture

? en

ergy

con

sum

ers?

“Tod

ay’s

regu

lato

ry fr

amew

ork

is k

eepi

ng

us lo

cked

into

the

20th

cen

tury

.”

-Ann

e Pr

amag

gior

e, C

EO, C

omEd

Source:M.A

min,“TheCase

forthe

SmartG

rid:Fun

ding

ane

winfra

structureinan

ageof

uncertainty.”

PublicUtilitie

sFortnightly,M

arch

2015,p

p.24

32andIEEE

SmartG

rid,January

2014

http://

smartgrid

.ieee.org/ja

nuary20

14/102

4theieee

smartg

ridinitiativewhats

aheadin

2014

Pow

er G

rid

s H

ave

Com

e Fu

ll C

ircl

e…H

isto

rica

lly,

grid

s de

velo

ped

as

isol

ated

sys

tem

s th

at w

ere

man

aged

and

con

trol

led

loca

lly

Thes

e to

o co

uld

be v

iew

ed a

s m

icro

grid

s

Pres

ent

day

chan

ges

are

mad

e po

ssib

le –

•Cha

ngin

g ec

onom

ics

•Dyn

amic

Geo

polit

ics

•Im

prov

ed P

ower

ele

ctro

nics

•Bet

ter

info

rmat

ion

& c

omm

unic

atio

n te

chno

logy

•M

atur

e re

new

able

ene

rgy

tech

nolo

gies

DC s

yste

ms

Min

i grids

(AC)

Sin

gle

Tran

smis

sion

G

rid

(HVA

C)

HVD

C

Isla

nd-a

ble

smar

t gr

ids

(mic

rogr

ids)

Region

alCo

operation:

Hybrid

Netw

orks

Centralized

&Microgrids

Loca

l/Nea

rby…

Reg

iona

l/Nat

iona

l

Inte

rnat

iona

l/Far

away

Dec

entr

aliz

ed

Cen

tral

ized

Poss

ible

Tra

nsiti

onal

and

H

ybrid

izat

ion

Opt

ions

in a

Wid

e R

ange

of A

sses

sed

Scen

ario

s:

Shor

t-an

d Lo

ng-te

rm S

trat

egie

s,

Dec

isio

n Pa

thw

ays,

RO

I, Ec

onom

ic

and

Soci

etal

Obj

ectiv

es, P

olic

ies,

an

d D

isru

ptio

ns (i

nclu

ding

dol

lars

, w

atts

, GH

G e

mis

sion

s,

risks

/ben

efits

–pr

ivat

e an

d pu

blic

)

Dep

endi

ng o

n as

sess

men

ts n

oted

he

rein

, we:

Mod

erni

ze, R

etro

fit, a

nd

Hyb

ridiz

e Le

gacy

Infr

astr

uctu

re•

Leap

-Fro

g fo

r Iso

late

d Lo

calit

ies

or fo

r Cle

an S

late

Des

igns

Local

Microgrids

Internationa

lCo

operation:

Prim

arily

Large

Centralized

Gene

ratio

n

Ove

r the

nex

t fiv

e ye

ars,

sm

art m

icro

grid

s w

ill pl

ay a

gr

owin

g ro

le in

mee

ting

loca

l de

man

d, e

nhan

cing

relia

bilit

y an

d en

surin

g lo

cal c

ontro

l of

elec

trici

ty. E

mer

ging

de

velo

pmen

ts a

nd c

halle

nges

th

e sm

art g

rid c

omm

unity

m

ust a

ddre

ss:

Page 4: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Piv

otal

an

d E

mer

gin

g T

ech

nol

ogie

s1.

Ener

gy s

tora

ge2.

Mic

rogr

ids

3.Cyb

er-P

hysi

cal S

ecur

ity

4.Adv

ance

d Con

trol

s w

ith S

ecur

e Com

mun

icat

ions

-O

pera

ting

Plat

form

–Adv

ance

d EM

S/D

MS

-Sen

sors

, M

onito

ring

, an

d D

iagn

ostic

s -

Sm

art

Bre

aker

s5.

In-h

ome

Tech

nolo

gies

-

Sm

art

hom

es a

nd D

eman

d Res

pons

eTh

ene

xtph

aseof

power

grid

evolutionisman

agingde

man

dthrough

consum

ersa

sparto

fawellm

anaged

,secure,an

dsm

arterg

rid

Exam

ples

of S

G T

echn

olog

ies

& S

yste

ms

New

Cha

lleng

es fo

r a S

mar

t Grid

Nee

d to

inte

grat

e:–

Larg

e-sc

ale

stoc

hast

ic (u

ncer

tain

) ren

ewab

le g

ener

atio

n–

Elec

tric

ener

gy s

tora

ge–

Dis

tribu

ted

gene

ratio

n –

Plug

-in h

ybrid

ele

ctric

veh

icle

s–

Dem

and

resp

onse

(sm

art m

eter

s), A

MI,

Dat

a An

alyt

ics,

Nee

d to

dep

loy

and

inte

grat

e:–

New

Syn

chro

nize

d m

easu

rem

ent t

echn

olog

ies

–N

ew s

enso

rs–

New

Sys

tem

Inte

grity

Pro

tect

ion

Sche

mes

(SIP

S)

Crit

ical

Sec

urity

Con

trols

Para

digm

Shi

ft –

Dat

a at

MN

Val

ley

Coo

p

Befo

re s

mar

t met

ers

–M

onth

ly re

ad–

480,

000

data

poi

nts

per y

ear

Afte

r sm

art m

eter

s –

15-6

0 m

inut

e kW

h–

Peak

dem

and

–Vo

ltage

–Po

wer

inte

rrupt

ions

–48

0,00

0,00

0 da

ta p

oint

s pe

r yea

r

Page 5: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Bat

tery

Po

wer

ed1B

Wat

er M

eter

s1B

Gas

Met

ers

Indu

stry

Nee

ds to

Con

nect

50

Bill

ion

Dev

ices

by

2020

An

unso

lved

pro

blem

cos

ting

billi

ons

per

year

in w

aste

d re

sour

ces

requ

ires

rad

ical

ly im

prov

ed w

irel

ess

perf

orm

ance

and

low

er c

ost

Courtesy

ofOnRa

mpWire

less,Inc.

Allrightsreserved.

Und

ergr

ound

Mill

ions

of m

iles

of P

ipel

ines

& C

ircui

ts

In V

aults

100M

met

ers

Indo

ors

1B s

enso

rs

Secu

rity

need

s

Phys

ical

Sec

urity

–Tr

ansm

issi

on E

quip

men

t –

Syst

em S

ecur

ity: P

reve

ntin

g sy

stem

impa

ct

and

Prot

ectin

g cr

itica

l sub

stat

ions

–St

anda

rds

Cyb

er S

ecur

ity

Secu

rity:

W

hat s

houl

d w

e be

tryi

ng to

pro

tect

Fuel

Sup

ply

and

Gen

erat

ion

Asse

tsTr

ansm

issi

on a

nd D

istri

butio

nC

ontro

ls a

nd C

omm

unic

atio

nsO

ther

Ass

ets

Adap

tive

Infra

stru

ctur

es

Sept

embe

r 11,

200

1 Tr

aged

ies

Page 6: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Adap

tive

Infra

stru

ctur

es

Infr

astr

uctu

re S

ecur

ity

Weare

BulletP

roof

TheSkyisFalling

TheTruth

Sour

ce: E

PRI I

nfra

stru

ctur

e Se

curit

y In

itiat

ive

(ISI)

and

Ente

rpris

e In

form

atio

n Se

curit

y (E

IS) P

rogr

amM

asso

ud A

min

, EPR

I, Se

ptem

ber 2

7, 2

001

Adap

tive

Infra

stru

ctur

es

Infr

astr

uctu

re S

ecur

ity: T

he T

hrea

t

•El

ectri

c po

wer

sys

tem

s co

nstit

ute

the

fund

amen

tal

infra

stru

ctur

e of

mod

ern

soci

ety

and

ther

efor

e an

in

vitin

g ta

rget

for t

hree

kin

ds

of te

rroris

t atta

cks:

•At

tack

s up

onth

e sy

stem

–Po

wer

sys

tem

itse

lf is

pr

imar

y ta

rget

with

ripp

le

effe

ct th

roug

hout

soc

iety

•At

tack

s by

the

syst

em–

Popu

latio

n is

the

actu

al

targ

et, u

sing

par

ts o

f the

po

wer

sys

tem

as

a w

eapo

n•

Atta

ck th

roug

hth

e sy

stem

–U

tility

net

wor

ks p

rovi

de

the

cond

uit f

or a

ttack

s on

br

oad

rang

e of

targ

ets

Sour

ce: E

PRI I

nfra

stru

ctur

e Se

curit

y In

itiat

ive

(ISI)

and

Ente

rpris

e In

form

atio

n Se

curit

y (E

IS) P

rogr

amM

asso

ud A

min

, EPR

I, Se

ptem

ber 2

7, 2

001

Adap

tive

Infra

stru

ctur

es

Step

s To

war

d En

surin

g Se

curit

y

•EP

RI’s

Ele

ctric

ity In

frast

ruct

ure

Sec

urity

Ass

essm

ent c

onsi

ders

six

br

oad

area

s:–

Syst

em-W

ide

Vuln

erab

ility

Asse

ssm

ent

–G

rid S

ecur

ity–

Cyb

er a

nd C

omm

unic

atio

ns

Thre

ats

–D

istri

butio

n Sy

stem

, Dis

aste

r M

itiga

tion

& R

ecov

ery

–G

ener

atio

n/En

viro

nmen

t–

Pow

er M

arke

ts

Sour

ce: E

PRI I

nfra

stru

ctur

e Se

curit

y In

itiat

ive

(ISI)

and

Ente

rpris

e In

form

atio

n Se

curit

y (E

IS) P

rogr

amM

asso

ud A

min

, EPR

I, Se

ptem

ber 2

7, 2

001

Adap

tive

Infra

stru

ctur

es

Pow

er G

rid V

ulne

rabi

litie

s

•Ph

ysic

al:

–O

ver 4

50,0

00 m

iles

of 1

00kV

or h

ighe

r tra

nsm

issi

on li

nes,

an

d m

any

mor

e th

ousa

nds

of m

iles

of lo

wer

-vol

tage

line

s

–N

atur

al d

isas

ters

or a

wel

l-org

aniz

ed g

roup

of t

erro

rists

ca

n ta

ke o

ut p

ortio

ns o

f the

grid

as

they

hav

e do

ne in

the

U.S

., C

olom

bia,

and

oth

er c

ount

ries

–Ef

fect

s ty

pica

lly c

onfin

ed to

the

loca

l reg

ion.

•O

pen-

Sour

ce In

form

atio

n:–

Anal

ysts

hav

e es

timat

ed th

at p

ublic

sou

rces

cou

ld b

e us

ed to

gai

n at

leas

t 80%

of i

nfor

mat

ion

need

ed to

plo

t an

atta

ck

Source:EPR

IInfrastructureSecurityInitiative(ISI)andEnterpriseInform

ationSecurity(EIS)P

rogram

Massoud

Amin,EPR

I,Septem

ber2

7,2001

Page 7: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Adap

tive

Infra

stru

ctur

es

Thre

ats

to S

ecur

ity --

Sour

ces

of V

ulne

rabi

lity

Inte

ntio

nal

hum

an a

cts

Net

wor

ksM

arke

ts

Info

rmat

ion

&

deci

sion

s

Nat

ural

cal

amiti

es

Internal

Sources

External

Sources

•Tr

ansf

orm

er, lin

e re

acto

rs,

series

ca

paci

tors

, tr

ansm

issi

on li

nes.

..•

Prot

ectio

n of

ALL

the

wid

ely

dive

rse

and

disp

erse

d as

sets

is im

prac

tical

--ov

er 4

50,0

00 m

iles

of H

V li

nes

(100

kV

and

abov

e)--

6,64

4 tr

ansf

orm

ers

in E

aste

rn I

nter

con

•Con

trol

Cen

ters

•In

terd

epen

denc

e: G

as p

ipel

ines

, co

mpr

esso

r st

atio

ns,

etc.

; D

ams;

Rai

l lin

es;

Tele

com

–m

onito

ring

& c

ontr

ol o

f sy

stem

•Com

bina

tions

of th

e ab

ove

and

mor

e us

ing

a va

riet

y of

wea

pons

:•

Truc

k bo

mbs

; Sm

all a

irpl

anes

; G

un s

hots

line

insu

lato

rs,

tran

sfor

mer

s; m

ore

soph

istic

ated

mod

es o

f at

tack

•EM

P•

Bio

logi

cal c

onta

min

atio

n (r

eal o

r th

reat

)•

Ove

r-re

actio

n to

isol

ated

inci

dent

s •

Inte

rnet

Att

acks

•O

ver

80,0

00 h

its/d

ay a

t an

ISO

•H

ijack

ing

of c

ontr

ol•

Sto

rms,

Ear

thqu

akes

, Fo

rest

fires

& g

rass

land

fires

… L

oss

of m

ajor

equ

ipm

ent

–es

peci

ally

HV t

rans

form

ers…

“… f

or w

ant

of a

hor

sesh

oe n

ail …

"

Com

mun

icat

ion

Syst

ems

Sour

ce: E

PRI I

nfra

stru

ctur

e Se

curit

y In

itiat

ive

(ISI)

and

Ente

rpris

e In

form

atio

n Se

curit

y (E

IS) P

rogr

amM

asso

ud A

min

, EPR

I, Se

ptem

ber 2

7, 2

001

Adap

tive

Infra

stru

ctur

es

Util

ity T

elec

omm

unic

atio

ns

•El

ectri

c po

wer

util

ities

usu

ally

ow

n an

d op

erat

e at

leas

t par

ts

of th

eir o

wn

tele

com

mun

icat

ions

sys

tem

s

•C

onsi

st o

f bac

kbon

e fib

er o

ptic

or m

icro

wav

e co

nnec

ting

maj

or s

ubst

atio

ns, w

ith s

purs

to s

mal

ler s

ites

•M

edia

:–

Fibe

r opt

ic c

able

s–

Dig

ital m

icro

wav

e–

Anal

og m

icro

wav

e–

Mul

tiple

Add

ress

Rad

io (M

AS)

–Sp

read

Spe

ctru

m R

adio

–VS

AT s

atel

lite

–Po

wer

Lin

e C

arrie

r–

Cop

per C

able

–Le

ased

Lin

es a

nd/o

r Fac

ilitie

s–

Trun

ked

Mob

ile R

adio

–C

ellu

lar D

igita

l Pac

ket D

ata

(CD

PD)

–Sp

ecia

l sys

tem

s (It

ron,

Cel

lNet

)

Sour

ce: E

PRI I

nfra

stru

ctur

e Se

curit

y In

itiat

ive

(ISI)

and

Ente

rpris

e In

form

atio

n Se

curit

y (E

IS) P

rogr

amM

asso

ud A

min

, EPR

I, Se

ptem

ber 2

7, 2

001

Adap

tive

Infra

stru

ctur

es

Con

text

: IT

inte

rdep

ende

ncie

s an

d im

pact

Sour

ce: M

asso

ud A

min

, “To

war

d a

Secu

re a

nd S

mar

t Sel

f-Hea

ling

Grid

,"pr

esen

tatio

n to

the

Stra

tegi

c Sc

ienc

e &

Tec

hnol

ogy

EPR

I Res

earc

h A

dvis

ory

Com

mitt

ee (R

AC

), Tu

esda

y, J

anua

ry 2

7, 1

998

page

7 a

t http

://m

asso

ud-a

min

.um

n.ed

u/pr

esen

tatio

ns/C

INSI

_01-

27-1

998_

RA

C.p

df

Depe

nden

ceon

IT:Tod

ay’ssystem

sreq

uire

atig

htlyknitinform

ationand

commun

icatio

nscapability.Be

causeof

thevulnerability

ofInternet

commun

icatio

ns,protectingthesystem

willrequ

irene

wtechno

logy

toen

hancesecurityof

power

system

command,control,andcommun

icatio

ns.

Increasin

gCo

mplexity

:System

integration,increasedcomplexity

:callfor

new

approaches

tosim

plify

theop

erationof

complex

infra

structureandmake

them

morerobu

stto

attacksa

ndinterrup

tions.

CentralizationandDe

centralizationof

Control:Thevulnerabilitie

sofcen

tralize

dcontrolseem

tode

mandsm

aller,localsystem

configurations.R

esilien

cerely

upon

theability

tobridge

topdo

wnandbo

ttom

upde

cisionmakinginreal

time.

AssessingtheMostE

ffectiveSecurityInvestmen

ts:Probabilistic

assessmen

tscan

offerstrategicguidance

onwhe

reandho

wto

deploy

securityresourcesto

greatestadvantage .

Adap

tive

Infra

stru

ctur

es

Thre

at E

volu

tion:

Mal

icio

us C

ode

Hou

rs

Tim

e

Wee

ks o

r m

onth

s

Day

s

Min

utes

Seco

nds

Cla

ss II

Hum

an re

spon

se: d

iffic

ult/i

mpo

ssib

leAu

tom

ated

resp

onse

: pos

sibl

e

Early

199

0sM

id 1

990s

Late

199

0s20

0020

03

Cla

ss II

IH

uman

resp

onse

: im

poss

ible

Auto

mat

ed re

spon

se: u

nlik

ely

Proa

ctiv

e bl

ocki

ng: p

ossi

ble

Contagion Timeframe

File

Viru

sesM

acro

Viru

sese-

mai

l Wor

ms

Blen

ded

Thr

eatsWar

hol

Thre

ats

Flas

hTh

reat

s

Cla

ss I

Hum

an re

spon

se: p

ossi

ble

source:M

assoud

Amin,EPR

I,Janu

ary29

,199

8

Page 8: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Adap

tive

Infra

stru

ctur

es

Info

rmat

ion

Leak

age

Inte

grity

Vio

latio

nD

enia

l of S

ervi

ceIll

egiti

mat

e U

se

Eave

sdro

ppin

gTr

affic

Ana

lysi

sEM

/RF

Inte

rcep

tion

Indi

scre

tions

by P

erso

nnel

Med

ia

Scav

engi

ng

Inte

rcep

t/Alte

r

Rep

udia

tion

Pene

tratio

nM

asqu

erad

e

Bypa

ssin

gC

ontro

ls

Auth

oriz

atio

nVi

olat

ion

Phys

ical

Intru

sion

Res

ourc

e Ex

haus

tion

Inte

grity

Vio

latio

n

Plan

ting

Troj

an H

orse

Trap

door

Serv

ice

Spoo

fing

Thef

t

Info

rmat

ion

Leak

age

Inte

grity

Vio

latio

n

Thef

t

Rep

lay

Wha

t Can

The

y D

o an

d H

ow C

an T

hey

Do

It?source:M

assoud

Amin,EPR

I,Janu

ary29

,199

8

Adap

tive

Infra

stru

ctur

es

ISI A

reas

: Add

ress

ing

Syst

em V

ulne

rabi

lity

to V

ario

us A

ttack

M

odes

, Red

ucin

g Th

eir I

mpa

ct, a

nd R

apid

Rec

over

y

•St

rate

gic

Spar

e Pa

rts In

vent

ory:

Red

ucin

g re

cove

ry ti

me

from

te

rroris

t atta

ck o

r nat

ural

dis

aste

r by

prov

idin

g sp

are

parts

of

exis

ting

equi

pmen

t and

by

deve

lopi

ng s

tand

ardi

zed

“reco

very

tra

nsfo

rmer

s”w

ith m

ultip

le v

olta

ge ta

ps

•Vu

lner

abilit

y As

sess

men

t (VA

):D

eter

min

ing

the

impa

ct o

f pot

entia

l te

rroris

t atta

cks

on p

ower

sys

tem

com

pone

nts

thro

ugho

ut th

e en

d-to

-end

ele

ctric

ity s

uppl

y ch

ain

•“R

ed T

eam

”Atta

cks:

Laun

ch m

ock

assa

ults

on

the

com

pute

r and

in

form

atio

n ne

twor

ks o

f sel

ecte

d ut

ility

syst

ems,

pro

bing

for

wea

knes

ses

in a

man

ner s

imila

r to

the

FAA’

s R

ed T

eam

effo

rts

•Se

cure

Com

mun

icat

ions

:Sc

opin

g st

udy

to d

eter

min

e ho

w to

de

velo

p a

secu

re, p

rivat

e co

mm

unic

atio

ns n

etw

ork

for t

he e

lect

ric

pow

er in

dust

ry, a

s an

alte

rnat

ive

to In

tern

et-b

ased

sys

tem

s

Source:EPR

IInfrastructureSecurityInitiative(ISI)andEnterpriseInform

ationSecurity(EIS)P

rogram

Massoud

Amin,EPR

I,Octob

er8,2001

Adap

tive

Infra

stru

ctur

es

Wha

t can

be

Don

e? V

ulne

rabi

lity

Ass

essm

ent

Prof

ile T

hrea

ts(D

eter

min

e In

tent

&

Cap

abilit

ies)

Dev

elop

Atta

ckSc

enar

ios*

Asse

ss

Vuln

erab

ilitie

s to

eac

h At

tack

Appl

y W

ar G

amin

gTh

eory

Asse

ss R

isks

(pro

babi

lity

ofsu

cces

sful

at

tack

x im

pact

)

Iden

tify

Like

ly

Targ

ets

Dev

elop

Cou

nter

-m

easu

res

*Evo

lvin

g sp

ectra

of t

arge

ts a

nd m

odes

of a

ttack

Sour

ce: E

PRI I

nfra

stru

ctur

e Se

curit

y In

itiat

ive

(ISI)

and

Ente

rpris

e In

form

atio

n Se

curit

y (E

IS) P

rogr

amM

asso

ud A

min

, EPR

I, Se

ptem

ber 2

7, 2

001

Adap

tive

Infra

stru

ctur

es

Crit

ical

Sys

tem

Dyn

amic

s an

d R

esili

ence

Cap

abili

ties

Varia

bilit

y an

d un

certa

inty

are

inhe

rent

in c

ompl

ex n

etw

orke

d in

terd

epen

dent

soc

io-te

chno

logi

cal s

yste

ms

A sy

stem

of s

yste

ms

view

is n

eces

sary

to m

easu

re, m

onito

r, un

ders

tand

and

man

age

com

plex

wor

k.N

eces

sary

to u

nder

stan

d “n

orm

al”

•An

ticipationof

disrup

tiveeven

ts

•Look

aheadsim

ulationcapa

bility

•Fastiso

latio

nan

dsectiona

lization

•Ad

aptiv

eislan

ding

•Selfhe

alingan

drestoration

resi

lien

ce, n

oun,

18

24: T

he c

apab

ility

of a

st

rain

ed b

ody

to re

cove

r its

siz

e an

d sh

ape

afte

r de

form

atio

n ca

used

es

peci

ally

by

com

pres

sive

stre

ss;

An a

bilit

y to

reco

ver

from

or a

djus

t eas

ily to

m

isfo

rtune

or c

hang

e

Res

ilien

ce e

nabl

es

Rob

ustn

ess

:A

syst

em, o

rgan

ism

or d

esig

n m

ay b

e sa

id to

be

"rob

ust"

if it

is c

apab

le o

f cop

ing

wel

l with

var

iatio

ns

(inte

rnal

or e

xter

nal a

nd s

omet

imes

unp

redi

ctab

le) i

n its

ope

ratin

g en

viro

nmen

t with

min

imal

dam

age,

alte

ratio

n or

loss

of f

unct

iona

lity.

Page 9: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

The

Nat

iona

l Pla

n fo

r Res

earc

h an

d D

evel

opm

ent

In S

uppo

rt o

f Crit

ical

Infr

astr

uctu

re P

rote

ctio

nTh

e ar

ea o

f sel

f-hea

ling

infra

stru

ctur

e w

as

reco

mm

ende

d in

200

5 by

the

Whi

te H

ouse

Offi

ce o

f Sci

ence

an

d Te

chno

logy

Pol

icy

(OST

P)

and

the

U.S

. Dep

artm

ent o

f H

omel

and

Secu

rity

(DH

S) a

s on

e of

thre

e th

rust

are

as fo

r th

e N

atio

nal P

lan

for r

esea

rch

and

deve

lopm

ent i

n su

ppor

t of

Crit

ical

Infra

stru

ctur

e P

rote

ctio

n (C

IP)

Secu

rity:

W

hat i

ssue

s im

pede

Pro

tect

ion

Inab

ility

to s

hare

in

form

atio

nIn

crea

sed

cost

of s

ecur

ityW

idel

y di

sper

sed

asse

tsW

idel

y di

sper

sed

owne

rs

and

oper

ator

sFi

ndin

g tra

inin

g an

d em

pow

erin

g se

curit

y pe

rson

nel

•C

omm

erci

al o

ff-th

e-sh

elf

(CO

TS) c

ontro

ls a

nd

com

mun

icat

ions

•Si

ting

cons

train

ts•

Long

lead

-tim

e eq

uipm

ent

•Av

aila

bilit

y of

rest

orat

ion

fund

s•

R&D

focu

sed

on

vuln

erab

ilitie

s

Elec

tric

al-G

as In

terd

epen

denc

y

Ther

e ha

s be

en a

pro

lifer

atio

n of

nat

ural

gas

Th

is h

as re

sulte

d in

a s

hift

to u

se g

as fo

r gen

erat

ion,

es

peci

ally

as

olde

r pla

nts

usin

g ot

her f

uels

are

retir

edPi

pelin

e ca

paci

ties

are

an is

sue

durin

g co

ld w

eath

er

New

Eng

land

gov

erno

rs a

nd o

ther

par

ties

are

brin

ging

forw

ard

crea

tive

idea

s to

mak

e lo

ng-te

rm

com

mitm

ents

to b

uild

new

cap

acity

Add

ition

al g

as p

ipel

ine

capa

city

, acc

ompa

nied

by

supp

ly c

ontra

cts,

is

requ

ired

to m

eet t

he g

row

ing

dem

and

for n

atur

al g

as fo

r pow

er g

ener

atio

n

Ass

et S

trat

egie

s 1

(3)

Gen

erat

ion

–R

efer

ence

NR

C m

etho

dolo

gies

&st

anda

rds

for n

on-n

ucle

ar, w

here

app

ropr

iate

Tran

smis

sion

Lin

es–

Phys

ical

sec

urity

is n

ot th

e an

swer

her

e be

caus

e th

ere

are

too

man

y tra

nsm

issi

on li

nes

and

mos

tly in

the

open

. Vul

nera

bilit

ies

shou

ld b

e ad

dres

sed

thro

ugh

redu

ndan

cy o

r ris

k m

itiga

tion

stra

tegi

es.

–Th

e Fe

dera

l gov

ernm

ent c

ould

faci

litat

e re

dund

ancy

app

roac

h by

exp

edite

d si

ting

and

wor

k w

ith s

tate

and

loca

l gov

ernm

ents

to fa

cilit

ate

coor

dina

ted

regi

onal

pla

nnin

g of

mor

e re

dund

ant a

nd le

ss v

ulne

rabl

e tr

ansm

issi

on

grid

–Th

e us

e of

saf

e, e

nerg

ized

wor

k te

chni

ques

is o

ne s

olut

ion

to re

duce

co

nges

tion

and

asso

ciat

ed c

osts

and

min

imiz

e se

rvic

e di

srup

tions

–R

&D u

sing

sen

sors

to c

reat

e ap

prop

riate

ala

rms

for l

ine

sag,

tem

pera

ture

, etc

. –

Enco

urag

e de

sign

s fo

r eas

ier r

epai

r, st

ockp

iling

of a

sset

s an

d ag

reem

ents

to

faci

litat

e re

cove

ry fo

llow

ing

even

ts

Page 10: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Ass

et S

trat

egie

s 2

(3)

Key

subs

tatio

ns a

nd S

witc

hyar

ds–

The

corr

ect l

evel

of s

ecur

ity n

eeds

to b

e de

term

ined

via

a tr

iage

pr

oces

s un

der w

hich

util

ities

pro

tect

thei

r mos

t val

uabl

e re

sour

ces

–R

ecov

ery

from

atta

ck is

impe

ded

by lo

ng le

ad-ti

me

to o

btai

n tr

ansf

orm

ers

and

othe

r com

pone

nts.

Assi

st w

ith a

ddre

ssin

g co

nstra

ints

on

mov

emen

ts o

f equ

ipm

ent,

espe

cial

ly la

rge

asse

ts–

Supp

ort t

he im

plem

enta

tion

of s

pare

equ

ipm

ent p

rogr

ams

and

initi

ativ

es–

Con

tinue

to w

ork

with

indu

stry

and

man

ufac

ture

rs to

exp

and

the

exis

ting

self-

heal

ing

tran

sfor

mer

and

grid

pro

gram

s an

d on

st

anda

rdiz

atio

n an

d m

odul

ariz

atio

n of

key

equ

ipm

ent t

o m

ake

repl

acem

ent e

asie

r

Dis

tribu

tion

of N

atio

nal S

igni

fican

ce–

Stre

ngth

en fe

dera

l, st

ate

and

loca

l coo

rdin

atio

n on

dis

trib

utio

n sy

stem

s of

nat

iona

l sig

nific

ance

to m

ake

repl

acem

ent e

asie

r

Ass

et S

trat

egie

s 3

(3)

Con

trols

and

Com

mun

icat

ions

–In

crea

se R

&D s

o as

to in

crea

se s

ecur

ity w

ithou

t dec

reas

ing

relia

bilit

y an

d fu

nctio

nalit

y–

Fede

ral o

utre

ach

and

awar

enes

s an

d th

e de

velo

pmen

t of s

tand

ard

requ

irem

ents

, e.g

. for

con

trol

sys

tem

per

sonn

el, p

roce

dure

s an

d te

chno

logy

–Se

cure

com

mun

icat

ions

requ

ires

coor

dina

tion

betw

een

fede

ral a

genc

ies

such

as

U.S

. DO

E an

d FC

C–

The

Fede

ral G

over

nmen

t cou

ld p

rom

ote

and

faci

litat

e co

mm

unic

atio

ns a

nd c

yber

sec

urity

aud

its, r

edun

danc

ies,

and

bac

k-up

sys

tem

s–

Com

mun

icat

ions

and

con

trol

s sy

stem

s co

uld

be d

esig

ned

for m

ore

limite

d fa

ilure

–Ev

alua

ting

com

mun

icat

ions

and

con

trol

s fo

r EM

P w

ithst

and

capa

bilit

ies

Pert

inen

t IE

EE S

tand

ards

1 (2

)

End

of L

ife A

sses

smen

t for

Pro

tect

ion

and

Con

trol D

evic

esC

riter

ia fo

r Sec

urity

Sys

tem

s fo

r Nuc

lear

Pow

er G

ener

atin

g St

atio

nsIE

EE G

uide

for A

sses

sing

, Mon

itorin

g an

d M

itiga

ting

Agin

g Ef

fect

s on

Ele

ctric

al E

quip

men

t Use

d in

Nuc

lear

Pow

er

Gen

erat

ing

Stat

ions

and

oth

er N

ucle

ar F

acilit

ies

IEEE

140

2 –

Min

imum

requ

irem

ents

and

pra

ctic

es fo

r ph

ysic

al s

ecur

ity o

f ele

ctric

pow

er s

ubst

atio

nsIE

EE 1

686

–St

anda

rd fo

r Int

ellig

ent E

lect

roni

c D

evic

es

Cyb

er S

ecur

ity C

apab

ilitie

s

Pert

inen

t IEE

E St

anda

rds

2 (2

)

Wor

king

Gro

up C

10 –

Req

uire

men

t and

App

licat

ion

of

the

Subs

tatio

n C

yber

Sec

urity

Sta

ndar

d: 1

646

Wor

king

Gro

up C

6 –

Tria

l Use

Sta

ndar

d fo

r a

Cry

ptog

raph

ic P

roto

col f

or C

yber

Sec

urity

of S

ubst

atio

n Se

rial L

inks

1815

-201

2 –

IEEE

Sta

ndar

d fo

r Ele

ctric

Pow

er S

yste

ms

Com

mun

icat

ions

Dis

tribu

ted

Net

wor

k C

ontro

l (D

NP3

)W

orki

ng G

roup

C16

–P2

030.

102.

1 In

tero

pera

bilit

y of

IP

SEC

Util

ized

with

in U

tility

Con

trol S

yste

ms

Page 11: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Incr

ease

d fe

dera

l R&D

for e

mer

ging

tech

nolo

gies

that

m

ay im

pact

T&D

grid

s, in

clud

ing

new

type

s of

ge

nera

tion,

new

use

s of

ele

ctric

ity a

nd e

nerg

y st

orag

e,

with

an

addi

tiona

l foc

us o

n de

ploy

men

t and

inte

grat

ion

of

such

tech

nolo

gies

to im

prov

e th

e re

liabi

lity,

effi

cien

cy

and

man

agem

ent o

f the

grid

s Ap

plic

atio

n of

pro

-act

ive

wid

espr

ead

cond

ition

m

onito

ring,

inte

grat

ing

cond

ition

and

ope

ratio

nal d

ata,

ha

s be

en s

how

n to

pro

vide

a b

enef

it to

real

-tim

e sy

stem

op

erat

ions

, bot

h in

term

s of

ass

et u

se a

nd c

ost-e

ffect

ive

plan

ned

repl

acem

ent o

f ass

ets

Rec

omm

enda

tions

–A

sset

Man

agem

ent 1

(2)

Rec

omm

enda

tions

–A

sset

Man

agem

ent 2

(2)

Infra

stru

ctur

e se

curit

y re

quire

s a

new

mod

el fo

r priv

ate

sect

or-

gove

rnm

ent r

elat

ions

hips

. –

Ove

rlapp

ing

and

inco

nsis

tent

role

s an

d au

thor

ities

hin

der

deve

lopm

ent o

f pro

duct

ive

wor

king

rela

tions

hips

and

ope

ratio

nal

mea

sure

s

Perfo

rm c

ritic

al s

pare

s an

d ga

ps a

naly

sis

–A

deta

iled

inve

ntor

y is

nee

ded

of c

ritic

al e

quip

men

t, th

e nu

mbe

r and

lo

catio

n of

ava

ilabl

e sp

ares

and

the

leve

l of i

nter

chan

geab

ility

betw

een

site

s an

d co

mpa

nies

.

–M

echa

nism

s ne

ed to

be

deve

lope

d fo

r sto

ckpi

ling

long

lead

-tim

e eq

uipm

ent a

nd fo

r rei

mbu

rsem

ent t

o th

e st

ockp

iling

auth

ority

, be

it pr

ivat

e or

gov

ernm

ent.

Oth

er a

ppro

ache

s in

clud

e st

anda

rdiz

ing

equi

pmen

t to

redu

ce le

ad ti

mes

and

incr

ease

inte

rcha

ngea

bilit

y

Rec

omm

enda

tions

–Se

curit

y, P

rivac

y,

and

Res

ilien

ce 1

(4)

Faci

litat

e, e

ncou

rage

, or m

anda

te th

at s

ecur

e se

nsin

g, “d

efen

se in

dep

th,”

fast

reco

nfig

urat

ion

and

self-

heal

ing

be b

uilt

into

the

infr

astr

uctu

re.

Con

tinue

dev

elop

ing

regi

onal

pla

nnin

g of

a m

ore

redu

ndan

t and

less

vul

nera

ble

tran

smis

sion

grid

Con

tinue

dev

elop

ing

oper

atio

nal t

ools

to m

ore

accu

rate

ly fo

reca

st th

e av

aila

bilit

y of

nat

ural

gas

su

pply

for g

ener

ator

s an

d im

prov

e un

it co

mm

itmen

t de

cisi

ons

Rec

omm

enda

tions

–Se

curit

y, P

rivac

y,

and

Res

ilien

ce 2

(4)

Man

date

con

sum

er d

ata

priv

acy

and

secu

rity

for A

MI

syst

ems

to p

rovi

de p

rote

ctio

n ag

ains

t per

sona

l pro

filin

g,

real

-tim

e re

mot

e su

rvei

llanc

e, id

entit

y th

eft a

nd h

ome

inva

sion

s, a

ctiv

ity c

enso

rshi

p an

d de

cisi

ons

base

d on

in

accu

rate

dat

a

Supp

ort a

ltern

ativ

es fo

r Util

ities

that

wis

h to

elim

inat

eth

e us

e of

wire

less

tele

com

net

wor

ks a

nd th

e pu

blic

In

tern

etto

dec

reas

e gr

id v

ulne

rabi

litie

s–

Incl

ude

optio

ns fo

r util

ities

to o

btai

n pr

ivat

e sp

ectru

m a

t a

reas

onab

le c

osts

Page 12: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Rec

omm

enda

tions

–Se

curit

y, P

rivac

y, a

nd

Res

ilien

ce 3

(4)

Impr

ove

the

shar

ing

of in

telli

genc

e an

d th

reat

in

form

atio

nan

d an

alys

is to

dev

elop

pro

activ

e pr

otec

tion

stra

tegi

es,

–In

clud

es d

evel

opm

ent o

f coo

rdin

ated

hie

rarc

hica

l thr

eat

coor

dina

tion

cent

ers

–at

loca

l, re

gion

al a

nd n

atio

nal l

evel

s–

May

requ

ire e

ither

mor

e se

curit

y cl

eara

nces

issu

ed to

el

ectri

c se

ctor

indi

vidu

als

or tr

eatm

ent o

f som

e in

tellig

ence

an

d th

reat

info

rmat

ion

and

anal

ysis

as

sens

itive

bus

ines

s in

form

atio

n, ra

ther

than

as

clas

sifie

d in

form

atio

n

Rec

omm

enda

tions

–Se

curit

y, P

rivac

y,

and

Res

ilien

ce 4

(4)

Spee

d up

the

deve

lopm

ent a

nd e

nfor

cem

ent o

f cyb

er

secu

rity

stan

dard

s, c

ompl

ianc

e re

quire

men

ts a

nd

thei

r ado

ptio

n. F

acilit

ate

and

enco

urag

e de

sign

of

secu

rity

from

the

star

t and

incl

ude

it in

sta

ndar

dsD

esig

n co

mm

unic

atio

ns a

nd c

ontr

ols

syst

ems

for

mor

e lim

ited

failu

res

incl

udin

g be

tter E

MP

with

stan

d ca

pabi

litie

sIn

crea

se in

vest

men

t in

the

grid

and

in R

&D a

reas

that

as

sure

the

secu

rity

of th

e cy

ber i

nfra

stru

ctur

e (a

lgor

ithm

s, p

roto

cols

, chi

p-le

vel &

appl

icat

ion-

leve

l)

Rec

omm

enda

tions

–M

arke

ts a

nd P

olic

y 1

(2)

Use

the

Nat

iona

l Ins

titut

e of

Sta

ndar

ds a

nd T

echn

olog

y Sm

art G

rid C

olla

bora

tion

or th

e N

ARU

C S

mar

t Grid

C

olla

bora

tive

as m

odel

s to

brid

ge th

e ju

risdi

ctio

nal g

apbe

twee

n th

e fe

dera

l and

the

stat

e re

gula

tory

org

aniz

atio

ns

on is

sues

suc

h as

tech

nolo

gy u

pgra

des

and

syst

em s

ecur

ity

Mor

e tra

nspa

rent

, par

ticip

ator

y an

d co

llabo

rativ

e di

scus

sion

amon

g fe

dera

l and

sta

te a

genc

ies,

tran

smis

sion

an

d di

strib

utio

n as

set o

wne

rs, r

egio

nal t

rans

mis

sion

op

erat

ors

and

inde

pend

ent s

yste

m o

pera

tors

and

thei

r m

embe

rs a

nd s

uppo

rting

rese

arch

to im

prov

e un

ders

tand

ing

of m

utua

l im

pact

s, in

tera

ctio

ns a

nd b

enef

its

Rec

omm

enda

tions

–M

arke

ts a

nd P

olic

y 2

(2)

Con

tinue

wor

king

at a

fede

ral l

evel

on

bette

r co

ordi

natio

n of

ele

ctric

ity a

nd g

as m

arke

tsto

m

itiga

te p

oten

tial n

ew re

liabi

lity

issu

es d

ue to

incr

easi

ng

relia

nce

on g

as g

ener

atio

nU

pdat

e th

e w

hole

sale

mar

ket d

esig

n to

refle

ct th

e sp

eed

at

whi

ch a

gen

erat

or c

an in

crea

se o

r dec

reas

e th

e am

ount

of

gene

ratio

n ne

eded

to c

ompl

emen

t var

iabl

e re

sour

ces

Page 13: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Rec

omm

enda

tions

1.Fa

cilit

ate,

enc

oura

ge, o

r man

date

that

sec

ure

sens

ing,

“def

ense

in d

epth

,” fa

st re

conf

igur

atio

n an

d se

lf-he

alin

g be

bui

lt in

to th

e in

frast

ruct

ure

2.M

anda

te s

ecur

ity fo

r the

Adv

ance

d M

eter

ing

Infra

stru

ctur

e, p

rovi

ding

pro

tect

ion

agai

nst

Pers

onal

Pro

filin

g, g

uara

ntee

con

sum

er D

ata

Priv

acy,

Rea

l-tim

e R

emot

e Su

rvei

llanc

e, Id

entit

y Th

eft a

nd H

ome

Inva

sion

s, A

ctiv

ity C

enso

rshi

p, a

nd D

ecis

ions

Bas

ed o

n In

accu

rate

Dat

a3.

Wire

less

and

the

publ

ic In

tern

et in

crea

se v

ulne

rabi

lity

and

thus

sho

uld

be a

void

ed4.

Brid

ge th

e ju

risdi

ctio

nal g

ap b

etw

een

Fede

ral/N

ERC

and

the

stat

e co

mm

issi

ons

on c

yber

se

curit

y 5.

Elec

tric

gene

ratio

n, tr

ansm

issi

on, d

istri

butio

n, a

nd c

onsu

mpt

ion

need

to b

e sa

fe, r

elia

ble,

and

ec

onom

ical

in th

eir o

wn

right

. As

set o

wne

rs s

houl

d be

requ

ired

to p

ract

ice

due

dilig

ence

in

secu

ring

thei

r inf

rast

ruct

ure

as a

cos

t of d

oing

bus

ines

s 6.

Dev

elop

coo

rdin

ated

hie

rarc

hica

l thr

eat c

oord

inat

ion

cent

ers

–at

loca

l, re

gion

al, a

nd n

atio

nal

leve

ls –

that

pro

activ

ely

asse

ss p

recu

rsor

s an

d co

unte

r cyb

er a

ttack

s7.

Spee

d up

the

deve

lopm

ent a

nd e

nfor

cem

ent o

f cyb

er s

ecur

ity s

tand

ards

, com

plia

nce

requ

irem

ents

and

thei

r ado

ptio

n. F

acilit

ate

and

enco

urag

e de

sign

of s

ecur

ity in

from

the

star

t an

d in

clud

e it

in s

tand

ards

8.In

crea

se in

vest

men

t in

the

grid

and

in R

&D a

reas

that

ass

ure

the

secu

rity

of th

e cy

ber

infra

stru

ctur

e (a

lgor

ithm

s, p

roto

cols

, chi

p-le

vel a

nd a

pplic

atio

n-le

vel s

ecur

ity)

9.D

evel

op m

etho

ds, s

uch

as s

elf-o

rgan

izin

g m

icro

-grid

s, to

faci

litat

e gr

id s

egm

enta

tion

that

lim

its

the

effe

cts

of c

yber

and

phy

sica

l atta

cks

IEEE

Sm

art G

rid h

ttp://

smar

tgrid

.ieee

.org

Page 14: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Antic

ipat

e

Plan

Impl

emen

t

Enab

ling

secu

re, r

elia

ble

and

resi

lient

syst

ems

requ

ires

peop

le a

nd o

rgan

izat

ions

that

can

Adap

tand

improvise

Ris

k-m

anag

ed A

rchi

tect

ures

and

Lay

ered

Def

ense

resi

lienc

e:

abilit

y to

reco

ver q

uick

ly

robu

stne

ss:

failu

re-re

sist

ant t

hrou

gh d

esig

n an

d/or

con

stru

ctio

n

redu

ndan

cy:

dupl

icat

ive

capa

city

for s

ervi

ce d

eliv

ery

Sum

mar

y R

ecom

men

datio

nsSu

ppor

t hol

istic

, int

egra

ted

appr

oach

in

sim

ulta

neou

sly

man

agin

g fle

et o

f ass

ets

to b

est

achi

eve

optim

al c

ost-e

ffect

ive

solu

tions

add

ress

ing

the

follo

win

g:

–A

ging

infr

astr

uctu

re–

Grid

har

deni

ng (i

nclu

ding

wea

ther

-rel

ated

eve

nts,

ph

ysic

al v

ulne

rabi

lity,

and

cyb

er-p

hysi

cal s

ecur

ity)

–Sy

stem

relia

bilit

yU

rgen

tly a

ddre

ss m

anag

ing

new

Sm

art G

rid a

sset

ssu

ch a

s ad

vanc

ed m

eter

ing

infra

stru

ctur

e (A

MI)

and

inte

lligen

t ele

ctro

nic

devi

ces

Appe

ndix

Page 15: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

The

Smar

t Grid

: 22.

5 Ye

ars

in th

e M

akin

gSelfHe

alingGrid(M

ay19

98De

c.20

02)

–19

982002:EPR

I/DO

DCo

mplex

InteractiveNe

tworks/SystemsInitia

tive

(CIN/SI)

cofund

edun

dera

Congressionally

approved

GICU

Rprogram

(58%

from

mybu

dget

atEPRI,and

42%fro

mDD

R&EthroughAR

O)

–10

8professorsandover

240graduate

stud

entsin28

U.S.

universitiesfun

ded,inclu

ding

CarnegieMellon,Minne

sota,Illino

is,Arizo

naSt.,IowaSt.,Pu

rdue

,Harvard,M

IT,Corne

ll,UC

Berkeley,

Wisc

onsin

,RPI,U

TAM,CalTech,U

CLA,

andStanford.

–52

utilitie

sand

ISO(in

cluding

TVA,

ComEd/Exelon,CA

ISO,ISO

NE,

etc..)provided

feed

back;24resulta

nttechno

logies

extracted.

Intelligrid(200

1presen

t):EPRI

tradem

arked

SmartG

rid:Finalnameadop

tedat

EPRI

andDO

E

Adap

tive

Infra

stru

ctur

es

•W

hat i

s a

Smar

t Sel

f-hea

ling

grid

?Th

e te

rm “s

mar

t grid

” ref

ers

to th

e us

e of

com

pute

r, co

mm

unic

atio

n,

sens

ing

and

cont

rol t

echn

olog

y w

hich

ope

rate

s in

par

alle

l with

an

elec

tric

pow

er g

rid fo

r the

pur

pose

of e

nhan

cing

the

relia

bilit

y of

ele

ctric

pow

er

deliv

ery,

min

imiz

ing

the

cost

of e

lect

ric e

nerg

y to

con

sum

ers,

and

fa

cilit

atin

g th

e in

terc

onne

ctio

n of

new

gen

erat

ing

sour

ces

to th

e gr

id.

•W

hat a

re th

e po

wer

grid

’s e

mer

ging

issu

es?

They

incl

ude

1) in

tegr

atio

n an

d m

anag

emen

t of D

ER, r

enew

able

reso

urce

s, a

nd

“mic

rogr

ids”

; 2)

use

and

man

agem

ent o

f the

inte

grat

ed in

frast

ruct

ure

with

an

over

laid

se

nsor

net

wor

k, s

ecur

e co

mm

unic

atio

ns a

nd in

tellig

ent s

oftw

are

agen

ts;

3) a

ctiv

e-co

ntro

l of h

igh-

volta

ge d

evic

es;

4) d

evel

opin

g ne

w b

usin

ess

stra

tegi

es fo

r a d

ereg

ulat

ed e

nerg

y m

arke

t; an

d 5)

ens

urin

g sy

stem

sta

bilit

y, re

liabi

lity,

robu

stne

ss, s

ecur

ity a

nd e

ffici

ency

in a

co

mpe

titiv

e m

arke

tpla

ce a

nd c

arbo

n co

nstra

ined

wor

ld.

Def

initi

on: S

mar

t Sel

f-Hea

ling

Grid

Sour

ce: M

asso

ud A

min

, “To

war

d a

Secu

re a

nd S

mar

t Sel

f-Hea

ling

Grid

,"pr

esen

tatio

n to

the

Stra

tegi

c Sc

ienc

e &

Tec

hnol

ogy

EPR

I Res

earc

h A

dvis

ory

Com

mitt

ee (R

AC

), Tu

esda

y, J

anua

ry 2

7, 1

998

page

5 a

t http

://m

asso

ud-a

min

.um

n.ed

u/pr

esen

tatio

ns/C

INSI

_01-

27-1

998_

RA

C.p

df

Adap

tive

Infra

stru

ctur

es

•W

hat i

s “s

elf h

ealin

g”?

–A

syst

em th

at u

ses

info

rmat

ion,

sen

sing

, con

trol a

nd

com

mun

icat

ion

tech

nolo

gies

to a

llow

it to

dea

l with

un

fore

seen

eve

nts

and

min

imiz

e th

eir a

dver

se im

pact

•W

hy is

sel

f hea

ling

conc

ept i

mpo

rtant

to th

e El

ectri

c Po

wer

G

rid a

nd E

nerg

y In

frast

ruct

ure?

–A

secu

re “a

rchi

tect

ed” s

ensi

ng, c

omm

unic

atio

ns,

auto

mat

ion

(con

trol),

and

ene

rgy

over

laid

infra

stru

ctur

e as

an

inte

grat

ed, r

econ

figur

able

, and

ele

ctro

nica

lly

cont

rolle

d sy

stem

that

will

offe

r unp

rece

dent

ed fl

exib

ility

and

func

tiona

lity,

and

impr

ove

syst

em a

vaila

bilit

y,

secu

rity,

qua

lity,

resi

lienc

e an

d ro

bust

ness

.

Def

initi

on: S

mar

t Sel

f-Hea

ling

Grid

Sour

ce: M

asso

ud A

min

, “To

war

d a

Secu

re a

nd S

mar

t Sel

f-Hea

ling

Grid

,"pr

esen

tatio

n to

the

Stra

tegi

c Sc

ienc

e &

Tec

hnol

ogy

EPR

I Res

earc

h A

dvis

ory

Com

mitt

ee (R

AC

), Tu

esda

y, J

anua

ry 2

7, 1

998

page

6 a

t http

://m

asso

ud-a

min

.um

n.ed

u/pr

esen

tatio

ns/C

INSI

_01-

27-1

998_

RA

C.p

df

“Pre

vent

ing

Bla

ckou

ts,”

Sci

entif

ic A

mer

ican

, May

200

7

Sm

art

Sel

f-H

ealin

g G

rid

Source:M

.AminandP.Sche

we,“PreventingBlackouts,”

ScientificAm

erica

n,May

2007

Page 16: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Smar

t Grid

Pro

tect

ion

Sche

mes

& C

omm

unic

atio

n R

equi

rem

ents

Type

of r

elay

Dat

a Vo

lum

e (k

b/s)

Late

ncy

Pres

ent

Futu

rePr

imar

y (m

s)

Seco

ndar

y (s

)O

ver c

urre

nt p

rote

ctio

n16

025

004-

80.

3-1

Diff

eren

tial p

rote

ctio

n70

1100

4-8

0.3-

1

Dis

tanc

e pr

otec

tion

140

2200

4-8

0.3-

1

Load

she

ddin

g37

044

000.

06-0

.1 (s

)

Adap

tive

mul

ti te

rmin

al20

033

004-

80.

3-1

Adap

tive

out o

f ste

p11

0013

000

Dep

ends

on

the

dist

urba

nce

Smar

t Grid

: Tsu

nam

i of D

ata

Dev

elop

ing

Newde

vicesintheho

me

enab

ledby

thesm

artm

eter

Youarehe

re.

AMIDe

ploymen

t

Programmab

leCo

mmun

icatingTh

ermostat

ComeOnlin

e

Distrib

utionMan

agem

ent

Rollo

ut

Mob

ileDa

taGo

esLive

RTUUp

grad

e

GISSystem

Deploymen

t

OMSUp

grad

e

Distrib

utionAu

tomation

Substatio

nAu

tomationSystem

Workforce

Man

agem

entP

roject

Time

AnnualRateofDataIntake

200TB

400TB

600TB

800TB

Trem

endo

usam

ount

ofda

tacomingfro

mthefie

ldinthene

arfuture

paradigm

shift

forh

owutilitie

sope

rate

andmaintainthegrid

Smar

t Grid

: Int

egra

te D

ispe

rsed

Ene

rgy

Sour

ces

into

a

Mod

ern

Grid

to P

rovi

de E

nerg

y to

Cen

ters

of D

eman

dEm

ergi

ng S

uppl

y an

d D

eman

d Pa

ttern

s

A M

ulti-

laye

r Grid

Sys

tem

in n

eed

of S

tren

gthe

ning

and

Pro

tect

ion

Rec

omm

enda

tions

for m

ovin

g to

ene

rgy

syst

ems

to m

eet d

eman

d of

tom

orro

w•

Bui

ld a

str

onge

r and

sm

arte

r ele

ctric

al

ener

gy in

fras

truc

ture

–Tr

ansf

orm

the

Net

wor

k in

to a

Sm

art G

rid–

Dev

elop

an

Expa

nded

Tra

nsm

issi

on S

yste

m–

Dev

elop

Mas

sive

Ele

ctric

ity S

tora

ge S

yste

ms

•B

reak

our

add

ictio

n to

oil

by tr

ansf

orm

ing

tran

spor

tatio

n–

Elec

trify

Tra

nspo

rtatio

n: P

HEV

s an

d EV

s–

Dev

elop

and

Use

Alte

rnat

ive

Tran

spor

tatio

n Fu

els

•G

reen

the

elec

tric

pow

er s

uppl

y–

Expa

nd th

e U

se o

f Ren

ewab

le E

lect

ric G

ener

atio

n–

Expa

nd N

ucle

ar P

ower

Gen

erat

ion

–C

aptu

re C

arbo

n Em

issi

ons

from

Fos

sil P

ower

Pla

nts

•In

crea

se e

nerg

y ef

ficie

ncy

•W

ith fu

ll cy

ber a

nd p

hysi

cal s

ecur

ityso

urce

: McA

fee

64Perc

enta

ge o

f crit

ical

infr

astr

uctu

re e

nter

pris

e ex

ecut

ives

re

port

ing

larg

e-sc

ale

DD

oS a

ttack

s an

d th

eir f

requ

ency

Page 17: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

sour

ce: J

ourn

al o

f Ene

rgy

Sec

urity

65

Elec

tric

Ter

roris

m: G

rid C

ompo

nent

Tar

gets

1994

–200

4En

ergy

Sec

tor V

ulne

rabi

lity

•41

% o

f rep

orte

d cy

ber s

ecur

ity

inci

dent

s be

twee

n O

ct 2

011

and

Sept

201

2 w

ere

in th

e en

ergy

se

ctor

(DH

S re

port)

•An

atta

ck o

n a

Saud

i Ara

bian

oil

com

pany

last

sum

mer

wip

ed

data

from

30,

000

com

pute

rs.

•Tw

o ge

nera

tors

rece

ntly

re

porte

d to

hav

e su

ffere

d cy

ber

atta

cks;

one

kno

cked

the

plan

t ou

t for

thre

e w

eeks

. •

DO

D e

ngag

ing

in 5

-fold

ex

pans

ion

of c

yber

sec

urity

•O

ffens

ive

and

defe

nsiv

e po

stur

es•

Can

adia

n G

over

nmen

t dou

blin

g cy

ber e

xpen

ditu

res

Wor

king

Pre

mis

e #1

Th

is is

ugl

y!

Crit

ical

Infr

astr

uctu

re P

rote

ctio

n:N

ew a

ppro

ache

s fo

r evo

lvin

g th

reat

sW

orki

ng P

rem

ise

#2

…B

ut th

is is

ugl

ier!

Istanbu

l,20

03Mozdo

k,20

03

Tanzania,199

8Oklahom

aCity,199

5Sa

udi A

rabi

a, 1

996

Baghdad,20

03

Crit

ical

Infr

astr

uctu

re P

rote

ctio

n:N

ew a

ppro

ache

s fo

r evo

lvin

g th

reat

s

Page 18: FININT Electric Power Infrastructure: Interdependencies ...energycentral.fileburst.com/EC/Massoud_Amin... · • System integration, increased complexity: call for new approaches

Challeng

e

Canwehave

this?

With

outthis?

Crit

ical

Infr

astr

uctu

re P

rote

ctio

n:N

ew a

ppro

ache

s fo

r evo

lvin

g th

reat

sC

an w

e bu

ild n

on-in

trus

ive

yet h

igh

conf

iden

ce to

ols,

sy

stem

s, p

roce

sses

that

incr

ease

our

sec

urity

AN

D

pres

erve

/ext

end

our c

ivil

right

s?Sy

nerg

y B

etw

een

Secu

rity

Tech

nolo

gies

& P

olic

y

•E.

G. t

rade

offs

bet

wee

n lib

erty

&

se

curit

y?

•N

on/lo

w-in

trusi

ve b

ut h

igh

c

onfid

ence

te

chno

logi

es a

nalo

gous

to

MR

I•

Plot

the

spac

e

•In

corp

orat

e se

curit

y an

d pr

ivac

y ea

rly a

s de

sign

crit

eria

•Pr

ovid

e po

licy

impa

ct s

tate

men

t

Impl

icat

ions

for n

ew te

chno

logi

es -

som

eof

fer m

ore

Lor

m

ore

S•W

hat i

f we

offe

r bot

h?•C

an th

is b

e a

desi

gn c

riter

ia?

E.g.

rem

ote

mon

itorin

g; a

nom

aly

dete

ctio

n; w

ide-

area

tam

per d

etec

tion

Whe

re is

a g

iven

pol

icy

w.r.

t. -a

theo

retic

ally

op

timal

fron

tier?