CIPC Executive Committee Update

Slides:



Advertisements
Similar presentations
2007 Goals. Introduction Western Electricity Coordinating Council (WECC) will be primarily defined throughout the 2007 year by Electric Reliability.
Advertisements

NERC Orientation Joint Guidance Committee WECC Leadership
Reliability Center Data Request Task Force Report WECC Board Meeting April 2009.
WebCast 5 May 2003 NERC Cyber Security Standard Overview of Proposed Cyber Security Standard.
Partnership for Critical Infrastructure Security PCIS Mission: The mission of the Partnership for Critical Infrastructure Security (PCIS) is to coordinate.
CIPC Executive Committee Update CIPC Meeting Washington DC June 9, 2005 Stuart Brindley CIPC Chair Public Release.
Physical Security CIP NERC Standing Committees December 9-10, 2014.
1 ERCOT/TRE Representation to NERC CIPC for TRE Members’ Representative Committee Jim Brenton CISSP, ISSAP, Vice Chair NERC CIP Committee David Grubbs,
Update: Physical Guideline UPDATE: Physical Security Guideline UPDATED Physical Response Security Guideline Public Release.
CIPC Executive Comittee Update CIPC Conference Call September 16, 2004 Stuart Brindley CIPC Chair CIPC Confidentiality - Public.
Overview of NIPP 2013: Partnering for Critical Infrastructure Security and Resilience October 2013 DRAFT.
Nuclear Power Plant/Electric Grid Regulatory Coordination and Cooperation - ERO Perspective David R. Nevius and Michael J. Assante 2009 NRC Regulatory.
Security Guidelines Working Group Update CIPC Meeting Phoenix, AZ Mar 16, 2006 Seiki Harada SGWG Chair CIPC Confidentiality: Public Release.
Implementing the New Reliability Standards Status of Draft Cyber Security Standards CIP through CIP Larry Bugh ECAR Standard Drafting Team.
CIPC Executive Committee Update CIPC Meeting Denver CO September 29, 2005 Stuart Brindley CIPC Chair Public Release.
CIP Program Highlights Member Representatives Committee October 28, 2008 Michael Assante, CSO
Actions Affecting ERCOT Resulting From The Northeast Blackout ERCOT Board Of Directors Meeting April 20, 2004 Sam Jones, COO.
Overview of WECC and Regulatory Structure
Status Report for Critical Infrastructure Protection Advisory Group
Mandatory Electric Reliability Standards and Transmission Expansion Suedeen G. Kelly Commissioner Federal Energy Regulatory Commission The Canadian Institute.
Role for Electric Sector in Critical Infrastructure Protection R&D Presented to NERC CIPC Washington D.C. June 9, 2005 Bill Muston Public Release.
Item 5d Texas RE 2011 Budget Assumptions April 19, Texas RE Preliminary Budget Assumptions Board of Directors and Advisory Committee April 19,
WebCast 5 May 2003 Proposed NERC Cyber Security Standard Presentation to IT Standing Committee Stuart Brindley, IMO May 26, 2003.
CIPC Executive Committee Update CIPC Meeting Mesa AZ March 16, 2006 Barry Lawson CIPC Vice-Chair CIPC Confidentiality: Public Release.
The Electric Reliability Organization: Getting from here to there. Gerry Cauley Director, Standards ERO Project Manager ERO Slippery Slope NERC Today Uphill.
Employee Privacy at Risk? APPA Business & Financial Conference Austin, TX September 25, 2007 Scott Mix, CISSP Manager of Situation Awareness and Infrastructure.
NERC and ESISAC Electricity Sector Information Sharing and Analysis Center Update March 2006 CIPC Confidentiality: Public Release.
November 2, 2006 LESSONS FROM CIPAG 1 Lessons from Critical Infrastructure Group Bill Bojorquez November 2, 2006.
CIPC Executive Committee Update-1 CIPC Meeting Long Beach CA March 17, 2005 Pat Laird Vice Chair Public Release.
1 Thoughts on ERCOT-Wide Critical Infrastructure Protection Committee Bill Muston October 31, 2006.
Electric Reliability Organization and Issues in Texas Technical Advisory Committee January 4, 2006 Jess Totten Director, Electric Industry Oversight Division.
Critical Infrastructure Protection Committee Report to NERC Standing Committees in Joint Session Long Beach, CA March 2005 Public Release.
CBP Biennial Strategy Review System
Natural Gas Infrastructure Assessment
ERCOT Technical Advisory Committee June 2, 2005
Compliance Performance Measure Proposals and Preliminary Trends
NERC Cyber Security Standards Pre-Ballot Review
IAASB-IESBA Coordination
CIPC Outreach WG Update March 2006
CIPC Executive Committee Update
Understanding Existing Standards:
CIPC Relationships & Roles
Critical Infrastructure Protection Committee Report to NERC Standing Committees in Joint Session Long Beach, CA March 2005 Public Release.
MMU Project Management Community of Practice
Role for Electric Sector in Critical Infrastructure Protection R&D
NERC Critical Infrastructure Protection Advisory Group (CIP AG)
CIPC Executive Committee Update-1
Security Guidelines Working Group Update
CIPC Executive Committee Update
Continuum of Care Metropolitan Homelessness Commission
CSSWG Status Report March 17-18, 2005 CIPC Meeting Long Beach, CA
NERC Cyber Security Standard
The Electric Reliability Organization: Getting from here to there.
NERC Critical Infrastructure Protection Committee (CIPC) Executive Committee Public Release 29 September 2005.
Reliability Standards Development Plan
Memorandum of Understanding
Critical Infrastructure Protection Committee
Resilience Framework Mark Lauby, Senior Vice President and Chief Reliability Officer WIRES Winter Meeting February 15, 2018.
Group Meeting Ming Hong Tsai Date :
NERC Reliability Standards Development Plan
Larry Bugh ECAR Standard Drafting Team Chair June 1, 2005
Strategic Planning Process
UPDATE: Physical Security Guideline
Strategic Planning Process
Crisis Response Task Force (CRTF) Proposal
Security Guidelines Working Group Update
CIPC Executive Committee Report-2
NERC Reliability Standards Development Plan
MAC Input on Section 4.9 Review
San Francisco Bay Water Board
Presentation transcript:

CIPC Executive Committee Update Public Release CIPC Executive Committee Update CIPC Meeting Denver CO September 29, 2005 Stuart Brindley CIPC Chair

CIPC Executive Committee Chair Stuart Brindley (IESO, CEA) Vice-Chair Larry Bugh (ECAR) Vice-Chair Pat Laird (Exelon) Cyber Jamey Sample (Cal-ISO) Physical Bob Canada (Southern Co.) Operations Roger Lampila (NY-ISO) Policy Barry Lawson (NRECA) Secretary Lou Leffler (NERC) Executive Committee 2-year terms end December 2005 Need to “refresh” commitments of all CIPC members - letter to NERC Regional Managers later this year opportunity for greater Owner/Operator involvement

CIPC Executive Committee Activities NERC Board Highlights – Aug 1 Stakeholder meeting and Aug 2 Board of Trustees meeting Electricity Sector Coordinating Council (ESCC) and the Government Coordinating Council (GCC) Sector-Specific NIPP, Electricity Sector goals Legal framework for providing advice to government CIPC membership review by Regional Managers and Associations

Board of Trustees August 2, 2005 NERC Board Highlights Board of Trustees August 2, 2005

NERC Board Highlights CIPC items: No formal CIPC items for approval CIPC Update: Significance of having established the Electricity Sector Coordinating Council with DOE and DHS Key issues: sharing lists of critical assets and vulnerabilities with government Also providing input to Canadian government regarding CIP strategy under development

Other NERC Business Energy Bill and establishing the ERO 2006 Business Plan approved (increase in CIP budget) Status – Aug-03 Blackout recommendations Extension of UA Standard approved Reliability compliance continues to be prominent

ESCC and GCC

DHS Plan for Sector Engagement Electricity

ESCC and GCC Met April 20, June 8, September 7 Topics: ESCC: CIPC Executive Committee GCC: De Alvarez, Friedman, Kenchington, Caverly, Carrier plus ~10 others (DOE is lead) Topics: Provided comments on the National Infrastructure Protection Plan - Energy Sector-Specific plan Developing Goals for the Electricity Sector Developing the legal framework for providing private sector advice to government (recognize Federal Advisory Committee Act) Suggestions to improve cleared briefings

ESCC Comments on the Sector-Specific NIPP July 22/05 letter from Mike Gent to Kevin Kolevar, DOE (ref. CIPC private files on web) Too detailed – needs to be strategic Too much focus on “protect/prevent”, not enough on “mitigate/respond/recover” Clarify government and private sector accountabilities Significant concern with providing lists of critical assets Need to understand government needs for info, how it will be used, shared, protected Concerns with usefulness of lists, adequacy of PCII VA assessments Do not support government performing VAs on private sector or specifying which methodology is best suited

ESCC Goals DHS sponsoring development of Goals, as part of Sector-Specific NIPP (useful for CIPC Business Plan). Some initial ideas: Partnership: Develop clear roles for government and industry Prevention: Secure physical and cyber assets in practical ways recognizing justifiable business case Awareness: Improve industry’s understanding of threats facing the industry Protection: Understand interdependencies with other sectors Response: Provide robust & coordinated response (eg. ESISA) Recovery: Develop restoration strategies under extreme scenarios

Sector Partnership Model WG Working Group under the National Infrastructure Advisory Council Task: Recommend formal, legal framework for how sector coordinating councils provide advice to government. Electricity reps: Stuart Brindley, Pat Laird, Bill Muston (NIAC), Lyman Shaffer (Dams) Should we be subject to Federal Advisory Committee Act? If so, should we seek a FACA exemption from DHS Secretary? Consensus amongst all sectors: “Yes” and “Yes” FOIA still a challenge; need to enhance PCII

Suggestions to Improve Cleared Briefings CIPC Exec Ctee provided input to DHS following June briefing: General threat assessment – physical and cyber Focus on energy and chemical sectors, but include lessons-learned from other sectors if applicable. Minimize information that is otherwise available from open source Greater focus on case studies Nature of incident (without compromising information sources or evidence) Describe actual impact, assessment or potential impact Assess impact on other sectors Describe communications flow - reporting by asset-owner to law enforcement, other government entities, ESISAC, etc Incident timeline Status of investigation Lessons-learned from the incident