IEC 62443 Standard for Hydro Power Plants
Author:
Heluany Jessica B.1, Galvão Ricardo2
Affiliation:
1. Department of Information Security and Communication Technology, Norwegian University of Science and Technology, 2815 Gjøvik, Norway 2. PECE—Industrial Automation, University of São Paulo, São Paulo 2373, Brazil
Abstract
This study approaches cyber security in industrial environments focusing on hydro power plants, since they are part of the critical infrastructure and are the main source of renewable energy in some countries. The theoretical study case follows the standard IEC 62443-2-1 to implement a cyber security management system (CSMS) in a hydro power plant with two generation units. The CSMS is composed of six steps: (1) initiate CSMS, (2) high level risk assessment, (3) detailed risk assessment, (4) establish policies, procedures, and awareness, (5) select and implement countermeasures, and (6) maintain the CSMS. To perform the high-level risk assessment, an overview of the most common activities and vulnerabilities in hydro power plants systems is presented. After defining the priorities, the detailed risk assessment is performed based on a HAZOP risk analysis methodology focusing on hackable digital assets (cyber-HAZOP). The analysis of the cyber-HAZOP assessment leads to mitigations of the cyber risks that are addressed proposing modifications in the automation architecture, and this also involves checking lists to be used by the stakeholders during the implementation of the solution, emphasizing security configurations in digital assets groups.
Subject
Energy (miscellaneous),Energy Engineering and Power Technology,Renewable Energy, Sustainability and the Environment,Electrical and Electronic Engineering,Control and Optimization,Engineering (miscellaneous),Building and Construction
Reference17 articles.
1. Gopstein, A., Nguyen, C., O’Fallon, C., Hastings, N., and Wollman, D.A. (2022, December 27). NIST Framework and Roadmap for Smart Grid Interoperability Standards, Release 4.0, Special Publication (NIST SP), Available online: chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.1900-206.pdf. 2. Jahil, A.A.A., and Giarratano, D. (2017). Improvement of Cyber-Security Measures in National Grid SA Substation Process Control, Institute of Electrical and Electronics Engineers Inc. 3. Faquir, D., Chouliaras, N., Sofia, V., Olga, K., and Maglaras, L. (2019). Cyber Security in Smart Grid: Challenges and Solutions, Institute of Electrical and Electronics Engineers Inc. 4. Alsuwian, T., Shahid Butt, A., and Amin, A.A. (2022). Smart Grid Cyber Security Enhancement: Challenges and Solution—A Review. Sustainability, 14. 5. Backes, M., Keefe, K., and Valdes, A. (2017). A Microgrid Ontology for the Analysis of Cyber-Physical Security, Institute of Electrical and Electronics Engineers Inc.
Cited by
4 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献
|
|