130 likes | 217 Views
D2-02_12 Comprehensive Cybersecurity strategy for Smartgrid equipment manufacturers. SC D2 2013 Colloquium in Mysore, Karnataka, India. GAP of knowledge. SMARTGRID. Energy knowledge. Communication knowledge. Security knowledge. What is cybersecurity. Standards for cybersecurity.
E N D
D2-02_12Comprehensive Cybersecurity strategy for Smartgrid equipment manufacturers SC D2 2013 Colloquium in Mysore, Karnataka, India
GAP of knowledge SMARTGRID Energyknowledge Communicationknowledge Security knowledge
Use cases & SGIS • Use cases: • Split the whole problem into more affordable issues Vs. maximalist approaches • At leasttakeintoaccount information assets, owners and actors
Other aspects • Informationsecurityisnotonlyprevention • Bottomdownapproach: Penetrationtesting • Awareness
Conclusions • Day todaytask • Notdealingwithsecuritiesbutprobabilities • Needtoincorporatethebody of knowledge of cybersecurityexperts • Risks Vs. Performance • Efforts in differentstandardizationgroups • Cybersecuritymust be part of thedesignprocess
Special report Q2_10: questions • What are the recommendations of the authors for integrated operations of end-consumers/ devices with utility systems – given the current state of cyber security maturity in the domain? • Can a security breach occur from a consumer appliance or by consumer?
S.R. Q2_10: contribution (I) • Q: What are the recommendations of the authors for integrated operations of end-consumers/ devices with utility systems – given the current state of cyber security maturity in the domain? • A: Recommendations: • No security through obscurity or proprietary solutions • Incorporatesecuritybody of knowledge • Use common sense = risk analysis • Security in depth Vs. panic
S.R. Q2_10: contribution (II) • Q: Can a security breach occur from a consumer appliance or by consumer? • A: What is a security breach? To which scale? • Availability: Easy to some extent. Vital? • Confidentiality: Privacy & duration • Integrity: Perhaps the most risky? • Take control of other devices: Early detection