Consider costs of mandating solar thermal energy

By Hawaii Reporter


NFPA 70e Training

Our customized live online or in‑person group training can be delivered to your staff at your location.

  • Live Online
  • 6 hours Instructor-led
  • Group Training Available
Regular Price:
$199
Coupon Price:
$149
Reserve Your Seat Today
One of the measures still under consideration at the Hawaii State Legislature mandates the installation of solar thermal devices in all residential construction undertaken after January 1, 2010.

Of course, all of the environmentalists think it is a great idea as it would lessen HawaiiÂ’s dependence on fossil fuels when it comes to heating water.

Sounds like it be plausible until one sits through a hearing where all interested parties come to the table and another picture begins to unfold.

From the environmentalists point of view, it seems like “motherhood and apple pie” that widespread use of such devices will insure that Hawaii residents will not need as much fossil fuel in the future since water heating will be done by solar heat.

They showed aerial pictures of some recent housing developments out on the West side of Oahu noting that they were built more than five years ago and not one of the units has a solar panel on the roof.

Well, darn, arenÂ’t those families concerned about their electric bills? With all of the tax incentives and rebates from the electric company, one would think that at least one of those families would have installed a solar thermal system by now.

However, as someone from the building industry pointed out, many of those homes were not built to accommodate solar thermal energy devices and to now retrofit them with the plumbing and the closet space needed for an 80 or 120-gallon tank and a roof strong enough to support the solar panels would be cost prohibitive even with the tax credits and the electric company rebates.

Building industry officials went on to point out that seven out of the 12 developers who provide 80 percent of the annual output of new homes have already made changes to their floor plans to accommodate a solar thermal device should the new homeowner want to install one. Other developers are offering such devices as an option.

While some critics have criticized developers and contractors for opposing a mandate, others including those in the solar industry, believe there may be unintended consequences as a result of the mandate.

For example, the measure would repeal the tax credit for those installations made under the mandate, thereby increasing the cost to the new homeowner.

And since the solar thermal device would be mandated, there would be no need for the electric company to offer a rebate as an incentive. Since the rebate from the electric company would be rescinded, there would be no one to determine whether or not the solar device meets the highest standard of efficiency and productivity.

They also pointed out that because the developer won

t know how large the family will be, the bare minimum will be installed to meet the mandate. Supposedly, the rule of thumb is that there should be 20 gallons of hot water per person, per day to meet the needs.

So suppose the assumption is that a family of four will occupy the new residence and an 80-gallon tank is installed. But on moving day one learns that grandpa and grandma will be living with the family.

That means there should be a 120-gallon tank to meet the needs of the six-person household. Since the tank is not large enough, the family will have to fall back on turning on the electrical heater to meet the familyÂ’s needs.

There is no doubt that Hawaii needs to seek other sources of energy than fossil fuels and solar thermal devices certainly make sense with all of the sunshine we enjoy; however, mandating the use of such devices without understanding the consequences can mean a waste of resources. Instead of requiring consumers to utilize a specific form of energy saving device, the state should do a better job of educating the consumer.

Like many of the other efforts that the legislature is undertaking to make the state “green,” it is a matter of changing habits and practices rather than trying to “buy” a greener Hawaii.

Until consumers make recycling and using alternate forms of energy a part of their daily lives, no number of mandates, advance disposal fees, or fees on containers will improve the environment of our state.

If consumers find it more convenient to toss their beverage containers in the trash or drive their gas guzzling SUVs, new taxes and additional fees will just punish those who are trying to survive in Hawaii.

Why punish the majority of citizens for the bad habits of a few? Why make snap decisions like this solar thermal mandate without getting the facts and understanding the consequences of this choice?

Related News

Company Becomes UK's Second-Largest Electricity Operator

Second-Largest UK Grid Operator advancing electricity networks modernization, smart grid deployment, renewable integration, and resilient distribution, leveraging acquisitions, data analytics, and infrastructure upgrades to boost reliability, efficiency, and service quality across regions and energy sector.

 

Key Points

A growing electricity networks operator advancing smart grids, renewable integration, and reliability.

✅ Expanded via acquisitions and regional growth

✅ Investing in smart grid, data analytics, automation

✅ Enhancing reliability, resilience, renewable integration

 

In a significant shift within the UK’s energy sector, a major company has recently ascended to become the second-largest electricity networks operator in the country. This milestone marks a pivotal moment in the industry, reflecting ongoing changes and competitive dynamics in the energy landscape, such as the shift toward an independent system operator in Great Britain. The company's ascent underscores its growing influence and its role in shaping the future of energy distribution across the UK.

The company, whose identity is a result of strategic acquisitions and operational expansions, now holds a substantial position within the electricity networks sector. This new ranking is the result of a series of investments and strategic moves aimed at strengthening its network capabilities and, amid efforts to fast-track grid connections across the UK, expanding its geographical reach. By achieving this status, the company is set to play a crucial role in managing and maintaining the electricity infrastructure that serves millions of households and businesses across the UK.

The rise to the second-largest position follows a period of significant growth and transformation for the company. Recent acquisitions have enabled it to enhance its network infrastructure, integrate advanced technologies, adopting a more digital grid approach, and improve service delivery. These developments come at a time when the UK is undergoing a significant transition in its energy sector, driven by the need for modernization, sustainability, and resilience in response to evolving energy demands.

One of the key factors contributing to the company's new status is its focus on upgrading and expanding its electricity networks. Investments in modernizing infrastructure, such as the commissioning of a 2GW substation to boost capacity, incorporating smart grid technologies, and enhancing operational efficiencies have been central to its strategy. By leveraging cutting-edge technology and data analytics, the company is able to optimize network performance, reduce outages, and improve overall reliability.

The company’s expansion into new regions has also played a crucial role in its growth. By extending its network coverage, including assets like the London electricity tunnel that enhance supply routes, the company has been able to provide electricity to a larger customer base, increasing its market share and influence in the sector. This expansion not only enhances its position as a major player in the industry but also supports the broader goal of ensuring reliable and efficient electricity distribution across the UK.

The shift to becoming the second-largest operator also reflects broader trends in the UK energy sector. The industry is experiencing a period of consolidation and transformation, driven by regulatory changes, technological advancements, and the push towards decarbonization, with similar momentum seen in British Columbia's clean energy shift that underscores global trends. The company’s ascent is indicative of these broader dynamics, as firms adapt to new challenges and opportunities in a rapidly evolving market.

In addition to operational and strategic advancements, the company’s rise is aligned with the UK’s broader energy goals. The government has set ambitious targets for reducing carbon emissions and increasing the use of renewable energy sources. As a major electricity networks operator, the company is positioned to support these goals by integrating renewable energy into the grid, including projects like the Scotland-to-England subsea link that carry remote generation, enhancing energy efficiency, and contributing to the transition towards a low-carbon energy system.

The company’s new status also brings with it a range of responsibilities and opportunities. As one of the largest operators in the sector, it will have a significant role in shaping the future of electricity distribution in the UK. This includes addressing challenges such as grid reliability, energy security, and the integration of emerging technologies. The company’s ability to manage these responsibilities effectively will be crucial in ensuring that it continues to deliver value to customers and stakeholders.

The transition to becoming the second-largest operator is not without its challenges. The company will need to navigate a complex regulatory environment, manage stakeholder expectations, and address any operational issues that may arise from its expanded network. Additionally, the competitive nature of the energy sector means that the company will need to continuously innovate and adapt to maintain its position and drive further growth.

In summary, the company’s achievement of becoming the second-largest electricity networks operator in the UK represents a significant milestone in the energy sector. Through strategic acquisitions, infrastructure investments, and operational enhancements, the company has strengthened its position and expanded its reach. This development highlights the evolving landscape of the UK energy sector and underscores the importance of modernization and innovation in meeting the country’s energy needs. As the company moves forward, it will play a key role in shaping the future of electricity distribution and supporting the UK’s energy transition goals.

 

Related News

View more

Senate Committee Advised by WIRES Counsel That Electric Transmission Still Faces Barriers to Development

U.S. Transmission Grid Modernization underscores FERC policy certainty, high-voltage infrastructure upgrades, renewables integration, electrification, and grid resilience to cut congestion and enable distributed energy resources, safeguarding against extreme weather, cyber threats, and market volatility.

 

Key Points

A plan to expand, upgrade, and secure high-voltage networks for renewables integration, electrification, reliability.

✅ Replace aging lines to cut congestion and customer costs

✅ Integrate renewables and distributed energy resources at scale

✅ Enhance resilience to weather, cyber, and physical threats

 

Today, in a high-visibility hearing on U.S. energy delivery infrastructure before the United States Senate Committee on Energy and Natural Resources, WIRES Executive Director and Former FERC Chairman Jim Hoecker addressed the challenges and opportunities that confront the modern high-voltage grid as the industry strives to upgrade and expand it to meet the demands of consumers and the economy.

In prepared testimony and responses to Senators' questions, Hoecker urged the Committee to support industry efforts to expand and upgrade the transmission network and to help regulators, especially the Federal Energy Regulatory Commission (FERC action on aggregated DERs), promote certainty and predictability in energy policy and regulation. 

 

His testimony stressed these points:

Significant transmission investment is needed now to replace aging infrastructure like the aging grid risks to clean energy, reduce congestion costs, and deliver widespread benefits to customers.

Increasingly, the role of the transmission grid is to integrate new distributed resources and renewable energy into the electric system and make them available to the market.

The changing electric generation mix, including needed nuclear innovation, and the coming electrification of transportation, heating, and other segments of the American economy in the next quarter century will depend on a strong and adaptable electric system. A robust transmission grid will be the linchpin that will enable us to meet those demands.

"Transmission is the common element that will support all future electricity needs and provide a hedge against uncertainties and potential costly outcomes. The time is now to be proactive in encouraging additional investments in our nation's most crucial infrastructure: the electric transmission system," Hoecker said. 

Hoecker's testimony also emphasized that transmission investment will contribute to the overall resilience of the electric system by bringing multiple resources and technologies to bear on threats to the power system, including extreme weather and proposals like a wildfire-resilient grid bill, cyber or physical attacks, or other events. Visit WIRES website for recently filed comments on the subject (supported by a Brattle Group study). 

"Transmission gives us the optionality to adapt to whatever the future holds, and a modern and resilient transmission system, informed by Texas reliability improvements, will be the most valuable energy asset we have," says Nina Plaushin, president of WIRES and vice president of federal affairs, regulatory and communications for ITC Holdings Corp. 

Hoecker closed his testimony by emphasizing that the "electrification" scenario that is being discussed across multiple industries demands action now in order to ensure policy and regulatory certainty that will support needed transmission investment. More studies need to be conducted to better understand and define how this delivery network must be configured and planned in anticipation of this potential transformation in how we use electrical energy. A full copy of the WIRES testimony can be found here.

 

Related News

View more

Trump Tariff Threat Delays Quebec's Green Energy Bill

Quebec Energy Bill Tariff Delay disrupts Canada-U.S. trade, renewable energy investment, hydroelectric expansion, and clean technology projects, as Trump tariffs on aluminum and steel raise costs, threatening climate targets and green infrastructure timelines.

 

Key Points

A policy pause in Quebec from U.S. tariff threats, disrupting clean investment, hydro expansion, and climate targets.

✅ Tariff risk inflates aluminum and steel project costs.

✅ Quebec delays clean energy legislation amid trade uncertainty.

✅ Hydroelectric reliance complicates emissions reduction timelines.

 

The Trump administration's tariff threat has had a significant impact on Quebec's energy sector, with tariff threats boosting support for projects even as the uncertainty resulted in the delay of a critical energy bill. Originally introduced to streamline energy development and tackle climate change, the bill was meant to help transition Quebec towards greener alternatives while fostering economic growth. However, the U.S. threat to impose tariffs on Canadian goods, including energy products, introduced a wave of uncertainty that led to a pause in the bill's legislative process.

Quebec’s energy bill had ambitious goals of transitioning to renewable sources like wind, solar, and hydroelectric power. It sought to support investments in clean technologies and the expansion of the province's clean energy infrastructure, as the U.S. demand for Canadian green power continues to grow across the border. Moreover, it emphasized the reduction of carbon emissions, an important step towards meeting Quebec's climate targets. At its core, the bill aimed to position the province as a leader in green energy development in Canada and globally.

The interruption caused by President Donald Trump's tariff rhetoric has, however, cast a shadow over the legislation. Tariffs, if enacted, would disproportionately affect Canada's energy exports, with electricity exports at risk under growing tensions, particularly in sectors like aluminum and steel, which are integral to energy infrastructure development. These tariffs could increase the cost of energy-related projects, thereby hindering Quebec's ability to achieve its renewable energy goals and reduce carbon emissions in a timely manner.

The tariff threat was seen as a part of the broader trade tensions between the U.S. and Canada, a continuation of the trade war that had escalated under Trump’s presidency. In this context, the Quebec government was forced to reconsider its legislative priorities, with policymakers citing concerns over the potential long-term consequences on the energy industry, as leaders elsewhere threatened to cut U.S.-bound electricity to exert leverage. With the uncertainty around tariffs and trade relations, the government opted to delay the bill until the geopolitical situation stabilized.

This delay underscores the vulnerability of Quebec’s energy agenda to external pressures. While the provincial government had set its sights on an ambitious green energy future, it now faces significant challenges in ensuring that its projects remain economically viable under the cloud of potential tariffs, even as experts warn against curbing Quebec's exports during the dispute. The delay in the energy bill also reflects broader challenges faced by the Canadian energy sector, which is highly integrated with the U.S. market.

The situation is further complicated by the province's reliance on hydroelectric power, a cornerstone of its energy strategy that supplies markets like New York, where tariffs could spike New York energy prices if cross-border flows are disrupted. While hydroelectric power is a clean and renewable source of energy, there are concerns about the environmental impact of large-scale dams, and these concerns have been growing in recent years. The tariff threat may prompt a reevaluation of Quebec’s energy mix and force the government to balance its environmental goals with economic realities.

The potential imposition of tariffs also raises questions about the future of North American energy cooperation. Historically, Canada and the U.S. have enjoyed a symbiotic energy relationship, with significant energy trade flowing across the border. The energy bill in Quebec was designed with the understanding that cross-border energy trade would continue to thrive. The Trump administration's tariff threat, however, casts doubt on this stability, forcing Quebec lawmakers to reconsider how they proceed with energy policy in a more uncertain trade environment.

Looking forward, Quebec's energy sector will likely need to adjust its strategies to account for the possibility of tariffs, while still pushing for a sustainable energy future, especially if Biden outlook for Canada's energy proves more favorable for the sector in the medium term. It may also open the door for deeper discussions about diversification, both in terms of energy sources and trade partnerships, as Quebec seeks to mitigate the impact of external threats. The delay in the energy bill, though unfortunate, may serve as a wake-up call for Canadian lawmakers to rethink how they balance environmental goals with global trade realities.

Ultimately, the Trump tariff threat highlights the delicate balance between regional energy ambitions and international trade dynamics. For Quebec, the delay in the energy bill could prove to be a pivotal moment in shaping the future of its energy policy.

 

Related News

View more

Tunisia moves ahead with smart electricity grid

Tunisia Smart Grid Project advances with an AFD loan as STEG deploys smart meters in Sfax, upgrades grid infrastructure, boosts energy efficiency, curbs losses, and integrates renewable energy through digitalization and advanced communication systems.

 

Key Points

A national program funded by an AFD $131.7M loan to modernize STEG, deploy smart meters, and integrate renewable energy.

✅ 430,000 smart meters in Sfax during phase one

✅ 20-year AFD loan with 7-year grace period

✅ Cuts losses, improves efficiency, enables renewables

 

The Tunisian parliament has approved taking a $131.7 million loan from the French Development Agency for the implementation of a smart grid project.

Parliament passed legislation regarding the 400 million dinar ($131.7 million) loan plus a grant of $1.1 million.

The loan, to be repaid over 20 years with a grace period of up to 7 years, is part of the Tunisian government’s efforts to establish a strategy of energy switching aimed at reducing costs and enhancing operational efficiency.

The move to the smart grid had been postponed after the Tunisian Company of Electricity and Gas (STEG) announced in March 2017 that implementation of the first phase of the project would begin in early 2018 and cover the entire country by 2023.

STEG was to have received funding some time ago. Last year at the Africa Smart Grid Summit in Tunis, the company said it would initiate an international tender during the first quarter of 2019 to start the project.

The French funding is to be allocated to implementation of the first phase only, which will involve development of control and communication stations and the improvement of infrastructure, where regulatory outcomes such as the Hydro One T&D rates decision can influence investment planning in comparable markets.

It includes installation of 430,000 “intelligent” metres over three years in Sfax governorate in southern Tunisia. The second phase of the project is planned to extend the programme to the rest of the country.

Smart metres to be installed in homes and businesses in Sfax account for about 10% of the total number of metres to be deployed in Tunisia.

At the beginning of 2017, the Industrial Company of Metallic Articles (SIAM), a Tunisian industrial electrical equipment and machinery company, signed an agreement with Huawei for the Chinese company to supply smart electricity metres. The value of the deal was not disclosed.

The smart grid is designed to reduce power waste, reduce the number of unpaid bills, prevent consumer fraud such as power theft in India across distribution networks, improve the ecosystem and increase competitiveness in the electricity sector.

Experts said the main difference between the traditional and smart grids is the adoption of advanced infrastructure for measuring electricity consumption and for communication between the power plant and consumers. The data exchange allows power plants to coordinate electricity production with actual demand.

STEG previously indicated that it had implemented measures to ensure the transition to the smart grid, especially since digitalisation is playing an important role in the energy sector.

The project, which translates Tunisia’s energy plans in the form of a partnership between the public and private sectors, aims at reaching 30% of the country’s electricity need from renewable sources by 2025, even as entities like the TVA face climate goals scrutiny that can affect electricity rates in other markets.

The development of the smart grid will allow STEG to monitor consumption patterns, detect abuses and remotely monitor the grid’s power supply, at a time when regulators have questioned UK network profits to spur efficiency, underscoring the value of transparency.

“The smart grid will change the face of the energy system towards the use of renewable energies,” said Tunisian Industry Minister Slim Feriani. At the forum on alternative energies, he pointed out that energy sector digitisation requires investments in technology and a change in the consumption mentality, as new entrants consider roles like Tesla electricity retailer plans in advanced markets.

Official data indicate that Tunisia’s energy deficit accounts for one-third of the country’s annual trade deficit, which reached record levels of more than $6 billion last year.

STEG, whose debts have reached $329 million over the past eight years, a situation resembling Manitoba Hydro debt pressures in Canada, has not disclosed when and how funding would be secured for the completion of the second phase. The company insists it is working to prevent further losses and to collect its unpaid bills.

STEG CEO Moncef Harrabi, earlier this year, said: “The current situation of the company has forced us to take immediate action to reduce the worsening of the crisis and stop the financial bleeding caused by losses.”

He said the company had repeatedly asked the government to pay subsidy instalments due to the company and to enact binding decisions to force government institutions and departments to pay electricity bills, while elsewhere measures like Thailand power bill cuts have been used to support consumers.

The Tunisian government has yet to disburse the subsidy instalments due STEG for 2018 and 2019, which amount to $658 million. STEG also imports natural gas from Algeria for its power plants at a cost of $1.1 billion a year.

 

Related News

View more

Russian hackers accessed US electric utilities' control rooms

Russian Utility Grid Cyberattacks reveal DHS findings on Dragonfly/Energetic Bear breaching control rooms and ICS/SCADA via vendor supply-chain spear-phishing, threatening blackouts and critical infrastructure across U.S. power utilities through stolen credentials and reconnaissance.

 

Key Points

State-backed ops breaching utilities via vendors to reach ICS/SCADA, risking grid disruption and control-room access.

✅ Spear-phishing and watering-hole attacks on vendor networks

✅ Stolen credentials used to reach isolated ICS/SCADA

✅ Potential to trigger localized blackouts and service disruptions

 

Hackers working for Russia were able to gain access to the control rooms of US electric utilities last year, allowing them to cause blackouts, federal officials tell the Wall Street Journal.

The hackers -- working for a state-sponsored group previously identified as Dragonfly or Energetic Bear -- broke into utilities' isolated networks by hacking networks belonging to third-party vendors that had relationships with the power companies, the Department of Homeland Security said in a press briefing on Monday.

Officials said the campaign had claimed hundreds of victims and is likely continuing, the Journal reported.

"They got to the point where they could have thrown switches" to disrupt the flow power, Jonathan Homer, chief of industrial-control-system analysis for DHS, told the Journal.

"While hundreds of energy and non-energy companies were targeted, the incident where they gained access to the industrial control system was a very small generation asset that would not have had any impact on the larger grid if taken offline," the DHS said in a statement Tuesday. "Over the course of the past year as we continued to investigate the activity, we learned additional information which would be helpful to industry in defending against this threat."

Organizations running the nation's energy, nuclear and other critical infrastructure have become frequent targets for cyberattacks in recent years due to their ability to cause immediate chaos, whether it's starting a blackout or blocking traffic signals. These systems are often vulnerable because of antiquated software and the high costs of upgrading infrastructure.

The report comes amid heightened tension between Russia and the US over cybersecurity, alongside US condemnation of power grid hacking in recent months. Earlier this month, US special counsel Robert Mueller filed charges against 12 Russian hackers tied to cyberattacks on the Democratic National Committee.

Hackers compromised US power utility companies' corporate networks with conventional approaches, such as spear-phishing emails and watering-hole attacks as seen in breaches at power plants across the US that target a specific group of users by infecting websites they're known to visit, the newspaper reported. After gaining access to vendor networks, hackers turned their attention to stealing credentials for access to the utility networks and familiarizing themselves with facility operations, officials said, according to the Journal.

Homeland Security didn't identify the victims, the newspaper reports, adding that some companies may not know they had been compromised because the attacks used legitimate credentials to gain access to the networks.

Cyberattacks on electrical systems aren't an academic matter. In 2016, Ukraine's grid was disrupted by cyberattacks attributed to Russia, which is engaged in territorial disputes with the country over eastern Ukraine and the Crimean peninsula. Russia has denied any involvement in targeting critical infrastructure.

President Donald Trump signed an executive order in May designed to bolster the United States' cybersecurity by protecting federal networks, critical infrastructure and the public online. One section of the order focuses on protecting the grid like electricity and water, as well as financial, health care and telecommunications systems.

The Department of Homeland Security didn't respond to a request for comment.

 

Related News

View more

Purdue: As Ransomware Attacks Increase, New Algorithm May Help Prevent Power Blackouts

Infrastructure Security Algorithm prioritizes cyber defense for power grids and critical infrastructure, mitigating ransomware, blackout risks, and cascading failures by guiding utilities, regulators, and cyber insurers on optimal security investment allocation.

 

Key Points

An algorithm that optimizes security spending to cut ransomware and blackout risks across critical infrastructure.

✅ Guides utilities on optimal security allocation

✅ Uses incentives to correct human risk biases

✅ Prioritizes assets to prevent cascading outages

 

Millions of people could suddenly lose electricity if a ransomware attack just slightly tweaked energy flow onto the U.S. power grid, as past US utility intrusions have shown.

No single power utility company has enough resources to protect the entire grid, but maybe all 3,000 of the grid's utilities could fill in the most crucial security gaps if there were a map showing where to prioritize their security investments.

Purdue University researchers have developed an algorithm to create that map. Using this tool, regulatory authorities or cyber insurance companies could establish a framework for protecting the U.S. power grid that guides the security investments of power utility companies to parts of the grid at greatest risk of causing a blackout if hacked.

Power grids are a type of critical infrastructure, which is any network - whether physical like water systems or virtual like health care record keeping - considered essential to a country's function and safety. The biggest ransomware attacks in history have happened in the past year, affecting most sectors of critical infrastructure in the U.S. such as grain distribution systems in the food and agriculture sector and the Colonial Pipeline, which carries fuel throughout the East Coast, prompting increased military preparation for grid hacks in the U.S.

With this trend in mind, Purdue researchers evaluated the algorithm in the context of various types of critical infrastructure in addition to the power sector, including electricity-sector IoT devices that interface with grid operations. The goal is that the algorithm would help secure any large and complex infrastructure system against cyberattacks.

"Multiple companies own different parts of infrastructure. When ransomware hits, it affects lots of different pieces of technology owned by different providers, so that's what makes ransomware a problem at the state, national and even global level," said Saurabh Bagchi, a professor in the Elmore Family School of Electrical and Computer Engineering and Center for Education and Research in Information Assurance and Security at Purdue. "When you are investing security money on large-scale infrastructures, bad investment decisions can mean your power grid goes out, or your telecommunications network goes out for a few days."

Protecting infrastructure from hacks by improving security investment decisions

The researchers tested the algorithm in simulations of previously reported hacks to four infrastructure systems: a smart grid, industrial control system, e-commerce platform and web-based telecommunications network. They found that use of this algorithm results in the most optimal allocation of security investments for reducing the impact of a cyberattack.

The team's findings appear in a paper presented at this year's IEEE Symposium on Security and Privacy, the premier conference in the area of computer security. The team comprises Purdue professors Shreyas Sundaram and Timothy Cason and former PhD students Mustafa Abdallah and Daniel Woods.

"No one has an infinite security budget. You must decide how much to invest in each of your assets so that you gain a bump in the security of the overall system," Bagchi said.

The power grid, for example, is so interconnected that the security decisions of one power utility company can greatly impact the operations of other electrical plants. If the computers controlling one area's generators don't have adequate security protection, as seen when Russian hackers accessed control rooms at U.S. utilities, then a hack to those computers would disrupt energy flow to another area's generators, forcing them to shut down.

Since not all of the grid's utilities have the same security budget, it can be hard to ensure that critical points of entry to the grid's controls get the most investment in security protection.

The algorithm that Purdue researchers developed would incentivize each security decision maker to allocate security investments in a way that limits the cumulative damage a ransomware attack could cause. An attack on a single generator, for instance, would have less impact than an attack on the controls for a network of generators, which sophisticated grid-disruption malware can target at scale, rather than for the protection of a single generator.

Building an algorithm that considers the effects of human behavior

Bagchi's research shows how to increase cybersecurity in ways that address the interconnected nature of critical infrastructure but don't require an overhaul of the entire infrastructure system to be implemented.

As director of Purdue's Center for Resilient Infrastructures, Systems, and Processes, Bagchi has worked with the U.S. Department of Defense, Northrop Grumman Corp., Intel Corp., Adobe Inc., Google LLC and IBM Corp. on adopting solutions from his research. Bagchi's work has revealed the advantages of establishing an automatic response to attacks, and analyses like Symantec's Dragonfly report highlight energy-sector risks, leading to key innovations against ransomware threats, such as more effective ways to make decisions about backing up data.

There's a compelling reason why incentivizing good security decisions would work, Bagchi said. He and his team designed the algorithm based on findings from the field of behavioral economics, which studies how people make decisions with money.

"Before our work, not much computer security research had been done on how behaviors and biases affect the best defense mechanisms in a system. That's partly because humans are terrible at evaluating risk and an algorithm doesn't have any human biases," Bagchi said. "But for any system of reasonable complexity, decisions about security investments are almost always made with humans in the loop. For our algorithm, we explicitly consider the fact that different participants in an infrastructure system have different biases."

To develop the algorithm, Bagchi's team started by playing a game. They ran a series of experiments analyzing how groups of students chose to protect fake assets with fake investments. As in past studies in behavioral economics, they found that most study participants guessed poorly which assets were the most valuable and should be protected from security attacks. Most study participants also tended to spread out their investments instead of allocating them to one asset even when they were told which asset is the most vulnerable to an attack.

Using these findings, the researchers designed an algorithm that could work two ways: Either security decision makers pay a tax or fine when they make decisions that are less than optimal for the overall security of the system, or security decision makers receive a payment for investing in the most optimal manner.

"Right now, fines are levied as a reactive measure if there is a security incident. Fines or taxes don't have any relationship to the security investments or data of the different operators in critical infrastructure," Bagchi said.

In the researchers' simulations of real-world infrastructure systems, the algorithm successfully minimized the likelihood of losing assets to an attack that would decrease the overall security of the infrastructure system.

Bagchi's research group is working to make the algorithm more scalable and able to adapt to an attacker who may make multiple attempts to hack into a system. The researchers' work on the algorithm is funded by the National Science Foundation, the Wabash Heartland Innovation Network and the Army Research Lab.

Cybersecurity is an area of focus through Purdue's Next Moves, a set of initiatives that works to address some of the greatest technology challenges facing the U.S. Purdue's cybersecurity experts offer insights and assistance to improve the protection of power plants, electrical grids and other critical infrastructure.

 

Related News

View more

Sign Up for Electricity Forum’s Newsletter

Stay informed with our FREE Newsletter — get the latest news, breakthrough technologies, and expert insights, delivered straight to your inbox.

Electricity Today T&D Magazine Subscribe for FREE

Stay informed with the latest T&D policies and technologies.
  • Timely insights from industry experts
  • Practical solutions T&D engineers
  • Free access to every issue

Live Online & In-person Group Training

Advantages To Instructor-Led Training – Instructor-Led Course, Customized Training, Multiple Locations, Economical, CEU Credits, Course Discounts.

Request For Quotation

Whether you would prefer Live Online or In-Person instruction, our electrical training courses can be tailored to meet your company's specific requirements and delivered to your employees in one location or at various locations.