lessons learned in smart grid cybersecurity
play

Lessons Learned In Smart Grid Cybersecurity Chris Blask Chair - PowerPoint PPT Presentation

Lessons Learned In Smart Grid Cybersecurity Chris Blask Chair ICS-ISAC TCIPG Workshop, October 30, 2012 Cyberwar Hits Energy Firms Escalating from Interruption to Destruction Iranian nuclear program: Stuxnet destroys 1,000+


  1. Lessons Learned In Smart Grid Cybersecurity Chris Blask Chair ICS-ISAC TCIPG Workshop, October 30, 2012

  2. Cyberwar Hits Energy Firms • Escalating from Interruption to Destruction – Iranian nuclear program: Stuxnet destroys 1,000+ centrifuges – Saudi Aramco: 30,000 systems destroyed; Qatar RasGas similar impact – State-sponsored hacking attacks against energy sector rising * Chart: Paolo Passeri, July 13 2012 http://hackmageddon.com/2012/07/13/june-2012-cyber-attacks-statistics/

  3. Knowledge is Power • Knowledge of: – What you have – What it is doing – What is happening around you – What the threats are – What the risks are – What the costs are – What others are doing

  4. Knowledge Sharing Works • REN-ISAC saving universities “100s of $M” • Five indicators • Active protection

  5. We Cannot Remediate to Security • These are all Good: • These are all Good: • Vulnerability Assessments • Vulnerability Assessments • Patch Management • Patch Management • Vendor Security Improvements • Vendor Security Improvements • NERC CIP • NERC CIP • But do not lead to secure systems

  6. Working Together Works • Researcher with one computer finds 500,000+ control systems connected to Internet • Beyond the scope of public sector to address • Private sector working group forming to work on this and similar datasets

  7. Knowledge Sharing Networks Work Private Public Centers Centers Private/ Public Centers Knowledge Service Data & Providers Information

  8. Real Time Knowledge Sharing Works Integrators Vendor/ Knowledge Researcher Centers ICS-ISAC MSSPs Vendor Offices CERTs

  9. Data, Information and Knowledge • Data: Items Specific to Devices and Sites • Information: Data Aggregated to Provide Facilities Operational Visibility and Defense • Knowledge: Actionable Sharable Intelligence – Anonymized to address utility and legislative needs

  10. Nothing Succeeds Like Success SSEB Cyber Threat Initiative • One Year Multi-State Cyberwar-Network Pilot – Volunteering utilities from 16 Southern States and 2 territories – Passive network for visibility, threat analysis, and knowledge sharing across the region • From Knowledge Sharing to Intelligence – Among state and interstate stakeholders – Benchmark and pattern-match emerging threats to architect self- learning cyber infrastructures • Upgrade Real-time Monitoring Cyberwar Network – Within two quarters of operations – Built-in Cyber-Immune Infrastructure – Goal: Energy security and economic stability 10

  11. Lessons Learned: The Future is Shared • Knowledge Sharing Key to Active Defense • Share Skills Between IT and OT • Private Sector Needs to Share in Leadership • Action Leads to Solutions

  12. Thank You Chris Blask Chair chris@ics-isac.org

Download Presentation
Download Policy: The content available on the website is offered to you 'AS IS' for your personal information and use only. It cannot be commercialized, licensed, or distributed on other websites without prior consent from the author. To download a presentation, simply click this link. If you encounter any difficulties during the download process, it's possible that the publisher has removed the file from their server.

Recommend


More recommend