Cyber Security Critical Infrastructure Protection Compliance

by | Jun 13, 2011 | Cybersecurity, Industry, Power Generation | 0 comments

Cyber security remains in the forefront of worries for most process manufacturers and electrical power producers. When I saw this news, NitroSecurity and Emerson Deliver Advanced Control System Security and Compliance Automation in my Twitter stream, I checked in with our Power & Water Solutions team to get some more background on what this means.

In the news item, it notes [hyperlinks added]:

The Ovation expert control system‘s existing security features and functionality, coupled with its tightly integrated Power & Water Cybersecurity Suite, are part of Emerson’s ongoing and comprehensive commitment to providing customers with solutions that address evolving cyber security challenges. Through this agreement with NitroSecurity, Emerson has further enhanced the security capabilities of its Ovation system while also helping customers reduce the costs associated with evolving North American Electric Reliability Corporation (NERC) Critical Infrastructure Protection (CIP) standards compliance.

For electrical power producers, the NERC website lists the CIP standards related to cyber security to “support reliable operation of the Bulk Electric System” include:

I caught up with Emerson’s Roger Pan, whom you may recall from an earlier cyber security-related post. He shared that this relationship adds Security Information & Event Management (SIEM), which provides continuous electronic access monitoring (CIP-005) and security status monitoring (CIP-007). It also adds an intrusion prevention system (IPS) (CIP-005) and log collection, storage, and management (CIP-005).

These capabilities add to the Power & Water Cybersecurity Suite’s user management, DMZ router/firewall, antivirus defense, vulnerability scan and patch management, malware prevention, security patch validation, virus signature validation, security advisories, security assessment, technical feasibility exception (TFE) support, and ports and services documents.

These OSC products and services together help electrical power producers’ compliance efforts in the Electronic Security Perimeter and Systems Security Management cyber security standards.

Author

Follow Us

We invite you to follow us on Facebook, LinkedIn, Twitter and YouTube to stay up to date on the latest news, events and innovations that will help you face and solve your toughest challenges.

Do you want to reuse or translate content?

Just post a link to the entry and send us a quick note so we can share your work. Thank you very much.

Our Global Community

Emerson Exchange 365

The opinions expressed here are the personal opinions of the authors. Content published here is not read or approved by Emerson before it is posted and does not necessarily represent the views and opinions of Emerson.

PHP Code Snippets Powered By : XYZScripts.com