New cybersecurity standard a step closer


Substation Relay Protection Training

Our customized live online or in‑person group training can be delivered to your staff at your location.

  • Live Online
  • 12 hours Instructor-led
  • Group Training Available
Regular Price:
$699
Coupon Price:
$599
Reserve Your Seat Today

NERC CIP-002-4 defines criteria to identify critical assets for cyber security, strengthening electric grid reliability and compliance as NERC and FERC advance approvals, while DOE GMD and EMP mitigation efforts accelerate risk management.

 

Understanding the Story

A NERC cyber security standard defining criteria to identify grid-critical assets and strengthen reliability.

  • Establishes explicit criteria for critical asset identification
  • Foundation for CIP-003 through CIP-009 compliance scopes
  • Supports NERC Board and FERC approval processes
  • Addresses interconnection risks across utilities
  • Aligns with DOE GMD and EMP mitigation initiatives

 

The North American Electric Reliability Corporation NERC is one step closer to approving a new version of the cybersecurity standard, the Critical Cyber Asset Identification CIP-002-4.

 

The proposed changes provide significant improvements to the existing standard, as reflected in strengthened cyber security standards advanced by NERC, by including a specific list of criteria for entities to identify their critical assets.

“Confirmation by the registered entities of their critical assets was a key priority for my first year as president and CEO of NERC,” says Gerry Cauley, President and CEO of NERC. “Recognizing that protecting cyber assets is critical to the electric utility’s infrastructure, as well as national and international security, and addressing grid security concerns highlighted by NERC, the revisions to CIP-002-4 were advanced ahead of other cyber security standard improvements. This initial passage by the stakeholders represents a major progression in protecting the North American grid and ensuring reliability. I commend the stakeholders and the standard drafting team for the tremendous work they have done.”

CIP-002-4 is a foundational standard that underscores grid owner responsibilities for cyber security, with the remaining CIP standards CIP-002 through CIP-009 relying on a complete and accurate identification of assets critical to reliability. Because entities are so tightly interconnected, a vulnerability that seems insignificant to a single entity can place the entire grid in a state of vulnerability.

“While NERC’s ANSI-based standard process requires a final “recirculation” ballot to allow stakeholders to confirm or modify their previous ballots, this standard appears to be on a path for approval by the end of the year or shortly thereafter,” says Cauley. The standard then goes to the NERC Board of Trustees for approval and then the new standard is filed with the with the Federal Energy Regulatory Commission, where FERC reliability improvements for the power grid are proposed, for approval under provisions of the Federal Power Act section 215.

In addition to working on the implementation of the CIP-002-4 standard, NERC is expediting implementation of the NERC/Department of Energy High Impact, Low Frequency report’s geomagnetic and electromagnetic pulse recommendations. As part of this effort, NERC will establish independent validation and industry approaches informed by industry testimony on cybersecurity legislation to develop and deploy Geomagnetic Disturbance mitigation strategies and technologies to protect the power grid.

 

Related News

Related News

CT leads New England charge to overhaul electricity market structure

New England Grid Reform Initiative aligns governors with ISO New England to reshape market design,…
View more

Victims of California's mega-fire will sue electricity company

PG&E Wildfire Lawsuit alleges utility negligence, inadequate infrastructure maintenance, and faulty transmission lines, as victims…
View more

Notley announces plans to move Alberta's electricity grid to net-zero by 2035 if elected

Alberta NDP Net-Zero Electricity Plan targets a 2035 clean grid, expands renewable energy, cuts emissions,…
View more

Ontario utilities team up to warn customers about ongoing scams

Ontario Utility Scam Alert: protect against phishing, spoofed calls, texts, and emails, disconnection threats, and…
View more

Experts Advise Against Cutting Quebec's Energy Exports Amid U.S. Tariff War

Quebec Hydropower Export Retaliation examines using electricity exports to counter U.S. tariffs amid Canada-U.S. trade…
View more

Cooperation agreement for Rosatom and Russian Academy

Rosatom-RAS Cooperation drives joint R&D in nuclear energy, nuclear medicine, fusion, particle accelerators, laser technologies,…
View more

Sign Up for Electricity Forum’s Newsletter

Stay informed with our FREE Newsletter — get the latest news, breakthrough technologies, and expert insights, delivered straight to your inbox.

Electricity Today T&D Magazine Subscribe for FREE

Stay informed with the latest T&D policies and technologies.
  • Timely insights from industry experts
  • Practical solutions T&D engineers
  • Free access to every issue

Live Online & In-person Group Training

Advantages To Instructor-Led Training – Instructor-Led Course, Customized Training, Multiple Locations, Economical, CEU Credits, Course Discounts.

Request For Quotation

Whether you would prefer Live Online or In-Person instruction, our electrical training courses can be tailored to meet your company's specific requirements and delivered to your employees in one location or at various locations.