CIP Virtualization Project 2016-02 CIP Modifications CIP SDT - - PowerPoint PPT Presentation

cip virtualization
SMART_READER_LITE
LIVE PREVIEW

CIP Virtualization Project 2016-02 CIP Modifications CIP SDT - - PowerPoint PPT Presentation

CIP Virtualization Project 2016-02 CIP Modifications CIP SDT Members March, 2020 Agenda Virtualization Overview Clarification for Permitted Architectures Additional Capabilities Enabled CIP Standards Impact 2


slide-1
SLIDE 1

CIP Virtualization

Project 2016-02 – CIP Modifications

CIP SDT Members March, 2020

slide-2
SLIDE 2

RELIABILITY | ACCOUNTABILITY 2

  • Virtualization Overview
  • Clarification for Permitted Architectures
  • Additional Capabilities Enabled
  • CIP Standards Impact

Agenda

slide-3
SLIDE 3

RELIABILITY | ACCOUNTABILITY 3

  • What is Virtualization?
  • Comparison to the Interconnected BES
  • Reliability Benefits
  • Security Benefits

Virtualization Overview

slide-4
SLIDE 4

RELIABILITY | ACCOUNTABILITY 4

Clarification for permitted architectures

slide-5
SLIDE 5

RELIABILITY | ACCOUNTABILITY 5

Clarification – Hypervisors and Storage Systems

Hypervisors are the EMS of Virtualized infrastructure

  • What is a Hypervisor?
  • Benefits of Hypervisors
  • Challenges for CIP Compliance
  • Changes Made
slide-6
SLIDE 6

RELIABILITY | ACCOUNTABILITY 6

Virtual Machines are a now “Form” of computing

  • What is a Virtual Machine?
  • Benefits of Virtual Machines
  • Challenges for CIP Compliance
  • Changes Made

Clarification – Virtual Machines

slide-7
SLIDE 7

RELIABILITY | ACCOUNTABILITY 7

Containers are an even newer “Form” of computing

  • What is a Container?
  • Benefits of Container
  • Challenges for CIP Compliance
  • Changes Made

Clarification – Containers

slide-8
SLIDE 8

RELIABILITY | ACCOUNTABILITY 8

What do Super ESPs have to do with Virtualization?

  • What is a Super ESP?
  • Benefits of Super ESP
  • Challenges for CIP Compliance
  • Changes Made

Clarification – Super ESPs

slide-9
SLIDE 9

RELIABILITY | ACCOUNTABILITY 9

Management of the infrastructure, like Dispatch

  • What is a:
  • Management System?
  • Management Interface?
  • Management Module?
  • Benefits of Management Systems
  • Challenges for CIP Compliance
  • Changes Made

Clarification – Management

slide-10
SLIDE 10

RELIABILITY | ACCOUNTABILITY 10

Additional Capabilities Enabled

slide-11
SLIDE 11

RELIABILITY | ACCOUNTABILITY 11

Enhanced and Automated Access Control through Zero Trust

  • What is Zero Trust?
  • Benefits of Zero Trust
  • Challenges for CIP Compliance
  • Changes Made

Additional Capabilities – Zero Trust

slide-12
SLIDE 12

RELIABILITY | ACCOUNTABILITY 12

Hardware and Software Reduction through Logical Isolation and common trust levels

  • What can be reduced?
  • Benefits of Hardware and Software Reduction
  • Challenges for CIP Compliance
  • Changes Made

Additional Capabilities – Hardware and Software Reduction

slide-13
SLIDE 13

RELIABILITY | ACCOUNTABILITY 13

Automated control and compliance through Network Access Control

  • What is a Network Access Control?
  • Benefits of Network Access Control
  • Challenges for CIP Compliance
  • Changes Made

Additional Capabilities – Network Access Control

slide-14
SLIDE 14

RELIABILITY | ACCOUNTABILITY 14

  • Technical Standards impact:
  • CIP-005 – biggest impact
  • CIP-007 – minor impact
  • CIP-010 – moderate impact
  • Definitions
  • Conforming changes to other Standards

CIP Standards Impact

slide-15
SLIDE 15

RELIABILITY | ACCOUNTABILITY 15

  • Drafting Technical Rationale and

Implementation Guidance for each:

  • CIP-005
  • CIP-007
  • CIP-010
  • Virtualization and Future Technologies –

What’s in it for me V2 (soon to be released)

2016-02 SDT Virtualization Updates

slide-16
SLIDE 16

RELIABILITY | ACCOUNTABILITY 16

  • All meetings WebEx/phone until further notice
  • March 31–April 2, 2020
  • April 28–30, 2020
  • Times – Noon to 5 Eastern
  • Weekly Conference Calls – Thursdays at Noon (as

needed)

2016-02 SDT Meeting Schedule

slide-17
SLIDE 17

RELIABILITY | ACCOUNTABILITY 17

Jordan Mallory Jordan.Mallory@nerc.net