3
STANDARDS
There are several standards, which apply to substation cyber-security. The standards currently applicable to
Alstom Grid IEDs are NERC and IEEE1686.
Standard
Country
Description
NERC CIP (North American Electric Reliability
Corporation)
USA
Framework for the protection of the grid critical Cyber Assets
BDEW (German Association of Energy and Water
Industries)
Germany
Requirements for Secure Control and Telecommunication Systems
ANSI ISA 99
USA
ICS oriented then Relevant for EPU completing existing standard
and identifying new topics such as patch management
IEEE 1686
International
International Standard for substation IED cyber-security capabilities
IEC 62351
International
Power system data and Comm. protocol
ISO/IEC 27002
International
Framework for the protection of the grid critical Cyber Assets
NIST SP800-53 (National Institute of Standards and
Technology)
USA
Complete framework for SCADA SP800-82and ICS cyber-security
CPNI Guidelines (Centre for the Protection of National
Infrastructure)
UK
Clear and valuable good practices for Process Control and SCADA
security
3.1
NERC COMPLIANCE
The North American Electric Reliability Corporation (NERC) created a set of standards for the protection of
critical infrastructure. These are known as the CIP standards (Critical Infrastructure Protection). These were
introduced to ensure the protection of 'Critical Cyber Assets', which control or have an influence on the
reliability of North America’s electricity generation and distribution systems.
These standards have been compulsory in the USA for several years now. Compliance auditing started in
June 2007, and utilities face extremely heavy fines for non-compliance.
NERC CIP standards
CIP standard
Description
CIP-002-1 Critical Cyber Assets
Define and document the Critical Assets and the Critical Cyber Assets
CIP-003-1 Security Management Controls
Define and document the Security Management Controls required to protect the Critical
Cyber Assets
CIP-004-1 Personnel and Training
Define and Document Personnel handling and training required protecting Critical Cyber
Assets
CIP-005-1 Electronic Security
Define and document logical security perimeters where Critical Cyber Assets reside.
Define and document measures to control access points and monitor electronic access
CIP-006-1 Physical Security
Define and document Physical Security Perimeters within which Critical Cyber Assets
reside
CIP-007-1 Systems Security Management
Define and document system test procedures, account and password management,
security patch management, system vulnerability, system logging, change control and
configuration required for all Critical Cyber Assets
CIP-008-1 Incident Reporting and Response Planning
Define and document procedures necessary when Cyber-security Incidents relating to
Critical Cyber Assets are identified
CIP-009-1 Recovery Plans
Define and document Recovery plans for Critical Cyber Assets
MiCOM P747
Chapter 9 - Cyber-Security
P747-TM-EN-1
277
P747-TM-EN-1.1
Summary of Contents for MiCOM P747 Agile
Page 2: ......
Page 16: ...Contents MiCOM P747 xiv P747 TM EN 1 P747 TM EN 1 1...
Page 20: ...Table of Figures MiCOM P747 xviii P747 TM EN 1 P747 TM EN 1 1...
Page 21: ...INTRODUCTION CHAPTER 1...
Page 22: ...Chapter 1 Introduction MiCOM P747 2 P747 TM EN 1 P747 TM EN 1 1...
Page 31: ...SAFETY INFORMATION CHAPTER 2...
Page 32: ...Chapter 2 Safety Information MiCOM P747 12 P747 TM EN 1 P747 TM EN 1 1...
Page 42: ...Chapter 2 Safety Information MiCOM P747 22 P747 TM EN 1 P747 TM EN 1 1...
Page 43: ...HARDWARE DESIGN CHAPTER 3...
Page 44: ...Chapter 3 Hardware Design MiCOM P747 24 P747 TM EN 1 P747 TM EN 1 1...
Page 74: ...Chapter 3 Hardware Design MiCOM P747 54 P747 TM EN 1 P747 TM EN 1 1...
Page 75: ...CONFIGURATION CHAPTER 4...
Page 76: ...Chapter 4 Configuration MiCOM P747 56 P747 TM EN 1 P747 TM EN 1 1...
Page 117: ...PROTECTION FUNCTIONS CHAPTER 5...
Page 118: ...Chapter 5 Protection Functions MiCOM P747 98 P747 TM EN 1 P747 TM EN 1 1...
Page 160: ...Chapter 5 Protection Functions MiCOM P747 140 P747 TM EN 1 P747 TM EN 1 1...
Page 161: ...MONITORING AND CONTROL CHAPTER 6...
Page 162: ...Chapter 6 Monitoring and Control MiCOM P747 142 P747 TM EN 1 P747 TM EN 1 1...
Page 211: ...SCADA COMMUNICATIONS CHAPTER 7...
Page 212: ...Chapter 7 SCADA Communications MiCOM P747 192 P747 TM EN 1 P747 TM EN 1 1...
Page 259: ...REDUNDANT ETHERNET CHAPTER 8...
Page 260: ...Chapter 8 Redundant Ethernet MiCOM P747 240 P747 TM EN 1 P747 TM EN 1 1...
Page 293: ...CYBER SECURITY CHAPTER 9...
Page 294: ...Chapter 9 Cyber Security MiCOM P747 274 P747 TM EN 1 P747 TM EN 1 1...
Page 313: ...SETTINGS APPLICATION SOFTWARE CHAPTER 10...
Page 314: ...Chapter 10 Settings Application Software MiCOM P747 294 P747 TM EN 1 P747 TM EN 1 1...
Page 322: ...Chapter 10 Settings Application Software MiCOM P747 302 P747 TM EN 1 P747 TM EN 1 1...
Page 323: ...BUSBAR COMMISSIONING TOOL CHAPTER 11...
Page 324: ...Chapter 11 Busbar Commissioning Tool MiCOM P747 304 P747 TM EN 1 P747 TM EN 1 1...
Page 330: ...Chapter 11 Busbar Commissioning Tool MiCOM P747 310 P747 TM EN 1 P747 TM EN 1 1...
Page 331: ...SCHEME LOGIC CHAPTER 12...
Page 332: ...Chapter 12 Scheme Logic MiCOM P747 312 P747 TM EN 1 P747 TM EN 1 1...
Page 348: ...Chapter 12 Scheme Logic MiCOM P747 328 P747 TM EN 1 P747 TM EN 1 1...
Page 349: ...INSTALLATION CHAPTER 13...
Page 350: ...Chapter 13 Installation MiCOM P747 330 P747 TM EN 1 P747 TM EN 1 1...
Page 361: ...COMMISSIONING INSTRUCTIONS CHAPTER 14...
Page 362: ...Chapter 14 Commissioning Instructions MiCOM P747 342 P747 TM EN 1 P747 TM EN 1 1...
Page 387: ...MAINTENANCE AND TROUBLESHOOTING CHAPTER 15...
Page 388: ...Chapter 15 Maintenance and Troubleshooting MiCOM P747 368 P747 TM EN 1 P747 TM EN 1 1...
Page 403: ...TECHNICAL SPECIFICATIONS CHAPTER 16...
Page 404: ...Chapter 16 Technical Specifications MiCOM P747 384 P747 TM EN 1 P747 TM EN 1 1...
Page 425: ...SYMBOLS AND GLOSSARY APPENDIX A...
Page 426: ...Appendix A Symbols and Glossary MiCOM P747 406 P747 TM EN 1 P747 TM EN 1 1...
Page 443: ...COMMISSIONING RECORD APPENDIX B...
Page 444: ...Appendix B Commissioning Record MiCOM P747 424 P747 TM EN 1 P747 TM EN 1 1...
Page 449: ...WIRING DIAGRAMS APPENDIX C...
Page 450: ...Appendix C Wiring Diagrams MiCOM P747 430 P747 TM EN 1 P747 TM EN 1 1...
Page 456: ...Appendix C Wiring Diagrams MiCOM P747 436 P747 TM EN 1 P747 TM EN 1 1...
Page 457: ......