Critical Utility Infrastructure

Size: px
Start display at page:

Download "Critical Utility Infrastructure"

Transcription

1 GSX Global Security Exchange Critical Utility Infrastructure Prepare, Respond, Restore and Recover (Shown as Overcoming Threats to a Utility's Critical Infrastructure) Anthony Hurley, CPP, PCI, MEP Monday, September 24 th, 2018 Las Vegas, NV

2 Anthony Hurley Speakers Bio Thirty-seven (37) years in the electric utility industry (retired VP of Operations / Fortune 20) Joined Witt O Brien s, a crisis management firm, in January 2017 Member, and former Chair of the ASIS International Utilities Security Council (USC) Certified Protection Professional (CPP ) Professional Certified Investigator (PCI ) Former Vice-Chair, and Energy Sector Chair, New Jersey Homeland Security and Preparedness, Infrastructure Advisory Committee (IAC) Adjunct Instructor, NYU, School of Professional Studies Infrastructure Security and Resilience Adjunct Instructor, FEMA Emergency Management Institute (EMI) Master Exercise Practitioner (MEP) Member, Infragard (FBI Alliance), Austin, Texas Chapter Member, NEMA, Information Sharing Committee Member, All Hazards Consortium, Fleet Movement Group Graduate FBI Citizen s Academy (Cleveland Field Office)

3 Abstract / Objectives The critical nature of a utility's infrastructure is underscored each time it is damaged or rendered inoperable by a weather, man-made, or terrorist event. The absence of electric, communications, water, wastewater, or gas assets cripples communities, homes, and businesses. Experts from the ASIS International Utility Security Council highlight the preparedness, response, restoration, and recovery processes that must be in place when utility assets are compromised. Learn the need for strong privatepublic partnerships, which are essential components in the recovery of a utility's infrastructure.

4 What is Critical Infrastructure (CI)? There are 16 critical infrastructure sectors whose assets, systems, and networks, whether physical or virtual, are considered so vital to the United States that their incapacitation or destruction would have a debilitating effect on security, national economic security, national public health or safety, or any combination thereof.

5 Utility Critical Infrastructure Critical Infrastructure Security and Resilience Of these sixteen (16) critical infrastructure sectors, utilities have assets in five (5) of the sectors. These are, Energy, which is electric and natural gas; Dams, those that have hydroelectric capabilities; Nuclear reactors, materials and waste; the Water and Wastewater systems, which may operate under the same company or Public Works organization, or may operate as a separate entity; and Communications, which includes telecommunications, and related backbone infrastructure.

6 Critical Infrastructure Sectors (Utilities) Utility sectors highlighted

7 Critical Infrastructure Sectors (Utilities) Utility sectors highlighted

8 Prepare, Response, Restore and Recover Note: Applicable for weather, manmade of terrorist events.

9 Prepare Maintain Emergency Operating Plans (EOP) Exercise and drill to test your teams preparedness (EOP as platform) Conduct with others (agencies and other utilities) Follow the Homeland Security Exercise and Evaluation Program (HSEEP) Be active with industry associations Best practices Mutual Aid agreements Material sharing / Manufacturer coordination Embrace Public Private Partnerships Know your local FBI coordinator and Protective Security Advisor (PSA) Information Sharing is accomplished through trust and credentials Develop strong relationships with regulators Develop a working relationship with your state Fusion Center Work with all applicable federal, state, county and municipal agencies FBI, PSA, EPA, DOE, USACE, USDA, the list goes on. Be willing to deploy staff to state or county Emergency Operations Centers Communicate your EOP Maintain a prioritization list of assets to restore in order Have a robust pre-event preparedness checklist in place Be prepared to provide support and receive support

10 Prepare (continued) Pre-Events Checklists should consider: Place key staff on alert, and notify all staff Prepare EOC, test onsite generation, test all systems and computers Test / fuel (top off) generators and fuel tanks Postpone all IT maintenance projects Restore any temporary configured infrastructure (if possible) Replenish and stockpile material Notify vendors Identify pre-designed staging sites (if applicable) Notify mutual aid partners and public-private partners Reinforce the need to follow the restoration list in order Decide on pre-activation of EOC Pre-deployment of personnel / equipment is warranted

11 Response Information is King!!! Conduct damage assessment Get access to damage assessments from others Mine social media for damage information Engage Public-Private Partnerships Remember your employees If a weather event, their homes and their families may have been impacted. If manmade or terrorism, they will want to know so that they can assist their families, and you. Remember, Information is King!!! Regulators want information Partners need information for the situational awareness Customers and the public demand information Once extent of damage is determined; Determine what can be done with internal resources Determine what external resources will be needed As a utility: Timely response is essential for the community to recover! Your regulators, partners and customers need to know you are engaged

12 Restore Execute the prioritization list Remain versatile if circumstances require a reprioritization of order Implement Project Management processes Track assignments and material Track productivity and material use Identify where additional personnel and resources are needed Identify your material burn rates and forecast availability If any material will be exhausted, engage supply chain to resupply Communicate your progress (be honest) Provide regulator, partners and customer with the same information Restoration is about recovering the community.

13 Recover As the lights come back on, the water and gas flows into homes and business, and communications is restored, the communities that we serve recover. As utilities complete restoration, they need to release mutual aid personnel so that they can return to their communities. Documentation processes need to be in place to retain information related to the event for insurance and reimbursement purposes. Regulatory and Public-Private partners will be conducting After-Action Reports (AAR), so that we can all improve on future events. If weather-related or manmade, the focus will be on continued improvement. If terrorist-related, there will be a criminal investigation component to the AAR.

14 Any questions?

15 Speakers Contact Information Anthony Hurley, CPP, PCI, MEP Managing Director, Utility Practice Witt O Brien s, a SEACOR Company (216) alhurley@wittobriens.com LinkedIn:

16 Overcoming Threats to a Utility's Critical Infrastructure ASIS Global Security Exchange (GSX) Nicholas W. Santillo Jr. VP, Chief Digital Infrastructure & Security Officer

17 WHO WE ARE We are the largest and most geographically diverse publicly traded water and wastewater service provider in the Unites States. We serve a broad national footprint and a strong local presence. We provide services to approximately 14 million people in 45 states and Ontario, Canada. We employ 7,100 dedicated and active employees and support ongoing community support and corporate responsibility. We treat and deliver more than one billion gallons of water daily. 17

18 Nicholas Santillo Jr. Speaker Bio 20 years in water utility industry (Physical & Cyber Security, Business Continuity & Incident Response) Current Chair ASIS Utilities Security Council (USC) Current Vice Chair of the Water Sector Coordinating Council Board Member Water Information Sharing and Analysis Center (Water ISAC) Board Member Rutgers Cybersecurity Advisory Board Incident Command System (ICS) Instructor

19 Emergency Preparedness Practices (G440) Explicit Commitment to Emergency Preparedness Preparedness Culture Defined Preparedness Roles and Employee Expectations Risk Assessment Preparedness Plans Internal and External Communications Training & Exercises Partnerships Prepare for the effect, do not attempt to manage the cause

20 Superstorm Sandy Impacts USAGE DECLINE POST SANDY (May-Oct In 1,000 Gallons) Reconstruction of over 20,000 feet of water main ranging in size 8 to 16 Utilized GPS and GIS to locate buried infrastructure Usage declines of 100% in some areas (2012 to 2013) 20

21 Challenges and Solutions Fuel Availability Partner with municipalities to share fuel services, Emergency Fuel contracts Backup Generation Permanent vs. Portable, ongoing maintenance, understand duty requirements Transportation / Blocked Roads Partner with Emergency Management Communications FirstNet, GETS/WPS, Satellite Phones Essential Skills Availability Pre-staged resources, Shared resources

22 Resources ANSI/AWWA G430-14: Security Practices for Operation & Management ANSI/AWWA J100-10: Risk & Resilience Management of Water & Wastewater Systems ANSI/AWWA G440-17: Emergency Preparedness Practices M19 Emergency Planning for Water and Wastewater Utilities Business Continuity Plans for Water Utilities Emergency Power Source Planning for Water Utilities

23 Speakers Contact Information Nicholas Santillo Jr. CPP, PCI, PSP VP, Chief Digital Infrastructure & Security Officer LinkedIn: THANK YOU

24 ASIS PRESENTATION: GSX CONFERENCE Mitigation, Preparedness, Response and Recovery September 24, 2018

25 THE REGULATORS PERSPECTIVE Mitigation and Preparedness Develop relationships Educate private sector partners on public sector disaster operations Participate in state planning process Train with state regulators and emergency management agencies 25 HILLARD HEINTZE 2018 Protecting What Matters

26 THE REGULATORS PERSPECTIVE Response Have the capability to be responsive in regards to outage information Understand what resources are available from public sector partners Be aware that regulators are interested in outage information to assist planning for entire response and recovery Communicate, communicate, communicate 26 HILLARD HEINTZE 2018 Protecting What Matters

27 THE REGULATORS PERSPECTIVE Recovery Continue to communicate restoration information Work with public sector partners to ensure there is unity of message Work with public sector partners with special circumstances Be prepared to present a cumulative presentation about your organizations restoration efforts and lessons learned 27 HILLARD HEINTZE 2018 Protecting What Matters

28 THE REGULATORS PERSPECTIVE Threat-Specific Issues Challenges with security-sensitive information State regulators comfort level with what they do not know Experienced security/emergency management staff and cost Level of integration with fusion centers and state-level emergency management 28 HILLARD HEINTZE 2018 Protecting What Matters

29 QUESTIONS AND DISCUSSION Cody Mulla, MS CPP, AEM, CHPA, CHPP Director, Security Risk Management South Wacker Drive, Suite 1400, Chicago, Illinois HILLARD HEINTZE 2018 Protecting What Matters

Understanding Operations Center Implementation and Incident Command System Considerations

Understanding Operations Center Implementation and Incident Command System Considerations Webinar, October 17th, 2018 Presented by Matthew Dimmick, PSP, CPD STV Inc. Security & Resilience Services Anthony Hurley, MEP, CPP, PCI Witt O Brien s, a SEACOR Company Managing Director, Utility Practice

More information

Member of the County or municipal emergency management organization

Member of the County or municipal emergency management organization EMERGENCY OPERATIONS PLAN SUUPPORT ANNEX B PRIVATE-SECTOR COORDINATION Coordinating Agency: Cooperating Agencies: Chatham Emergency Management Agency All Introduction Purpose This annex describes the policies,

More information

End-to-End Trust, Segmentation and Segregation in the IIoT

End-to-End Trust, Segmentation and Segregation in the IIoT End-to-End Trust, Segmentation and Segregation in the IIoT www.blackridge.us Michael Murray - SVP & GM Cyber Physical Systems www.blackridge.us Company Origin BlackRidge technology originated from a Department

More information

South East Region THIRA

South East Region THIRA South East Region THIRA The THIRA follows a four-step process, as described in Comprehensive Preparedness Guide 201, Second Edition: 1. Identify the Threats and Hazards of Concern. Based on a combination

More information

Cybersecurity Overview

Cybersecurity Overview Cybersecurity Overview DLA Energy Worldwide Energy Conference April 12, 2017 1 Enterprise Risk Management Risk Based: o Use of a risk-based approach for cyber threats with a focus on critical systems where

More information

The Office of Infrastructure Protection

The Office of Infrastructure Protection The Office of Infrastructure Protection National Protection and Programs Directorate Department of Homeland Security Protective Security Coordination Division Overview ND Safety Council Annual Conference

More information

Cybersecurity Presidential Policy Directive Frequently Asked Questions. kpmg.com

Cybersecurity Presidential Policy Directive Frequently Asked Questions. kpmg.com Cybersecurity Presidential Policy Directive Frequently Asked Questions kpmg.com Introduction On February 12, 2013, the White House released the official version of the Presidential Policy Directive regarding

More information

Business Continuity: How to Keep City Departments in Business after a Disaster

Business Continuity: How to Keep City Departments in Business after a Disaster Business Continuity: How to Keep City Departments in Business after a Disaster Shannon Spence, PE Red Oak Consulting, an ARCADIS group Agenda Security, Resilience and All Hazards The Hazards Cycle and

More information

EMERGENCY SUPPORT FUNCTION (ESF) 13 PUBLIC SAFETY AND SECURITY

EMERGENCY SUPPORT FUNCTION (ESF) 13 PUBLIC SAFETY AND SECURITY EMERGENCY SUPPORT FUNCTION (ESF) 13 PUBLIC SAFETY AND SECURITY PRIMARY AGENCY: SUPPORT AGENCIES: Savannah-Chatham Metropolitan Police Department Armstrong-Atlantic Campus Police Department Bloomingdale

More information

Critical Infrastructure Partnership

Critical Infrastructure Partnership Critical Infrastructure Partnership Overview Chris Boyer AVP Global Public Policy December 11, 2017 2016 AT&T Intellectual Property. All rights reserved. AT&T, Globe logo, Mobilizing Your World and DIRECTV

More information

DHS Cybersecurity: Services for State and Local Officials. February 2017

DHS Cybersecurity: Services for State and Local Officials. February 2017 DHS Cybersecurity: Services for State and Local Officials February 2017 Department of Established in March of 2003 and combined 22 different Federal departments and agencies into a unified, integrated

More information

STRATEGIC PLAN. USF Emergency Management

STRATEGIC PLAN. USF Emergency Management 2016-2020 STRATEGIC PLAN USF Emergency Management This page intentionally left blank. Organization Overview The Department of Emergency Management (EM) is a USF System-wide function based out of the Tampa

More information

Emergency Support Function #12 Energy Annex. ESF Coordinator: Support Agencies:

Emergency Support Function #12 Energy Annex. ESF Coordinator: Support Agencies: Emergency Support Function #12 Energy Annex ESF Coordinator: Department of Energy Primary Agency: Department of Energy Support Agencies: Department of Agriculture Department of Commerce Department of Defense

More information

Office of Infrastructure Protection Overview

Office of Infrastructure Protection Overview Office of Infrastructure Protection Overview Harvey Perriott Protective Security Advisor North Texas District U.S. Department of Homeland Security Vision and Mission Vision A safe, secure, and resilient

More information

Appendix 3 Disaster Recovery Plan

Appendix 3 Disaster Recovery Plan Appendix 3 Disaster Recovery Plan DRAFT March 5, 2007 Revision XX Qwest Government Services, Inc. 4250 North Fairfax Drive Arlington, VA 22203 A3-i RFP: TQC-JTB-05-0002 March 5, 2007 REVISION HISTORY Revision

More information

CYBERSECURITY TRAINING EXERCISE KMU TRAINING CENTER NOVEMBER 7, 2017

CYBERSECURITY TRAINING EXERCISE KMU TRAINING CENTER NOVEMBER 7, 2017 CYBERSECURITY TRAINING EXERCISE KMU TRAINING CENTER NOVEMBER 7, 2017 Sponsored by: Kansas Municipal Utilities Kansas Municipal Energy Agency Kansas Power Pool CYBERSECURITY TRAINING EXERCISE DATE November

More information

Technical Conference on Critical Infrastructure Protection Supply Chain Risk Management

Technical Conference on Critical Infrastructure Protection Supply Chain Risk Management Technical Conference on Critical Infrastructure Protection Supply Chain Risk Management Remarks of Marcus Sachs, Senior Vice President and the Chief Security Officer North American Electric Reliability

More information

All-Hazards Approach to Water Sector Security & Preparedness ANSI-HSSP Arlington, VA November 9, 2011

All-Hazards Approach to Water Sector Security & Preparedness ANSI-HSSP Arlington, VA November 9, 2011 All-Hazards Approach to Water Sector Security & Preparedness ANSI-HSSP Arlington, VA November 9, 2011 Copyright 2009 American Water Works Association Copyright 2011 American Water Works Association Security

More information

PIPELINE SECURITY An Overview of TSA Programs

PIPELINE SECURITY An Overview of TSA Programs PIPELINE SECURITY An Overview of TSA Programs Jack Fox Pipeline Industry Engagement Manager Surface Division Office of Security Policy & Industry Engagement May 5, 2014 TSA and Pipeline Security As the

More information

Region Snapshot Regions I and II

Region Snapshot Regions I and II STATE, LOCAL, TRIBAL, AND TERRITORIAL GOVERNMENT COORDINATING COUNCIL REGIONAL CONSORTIUM COORDINATING COUNCIL Regional Overview of Critical Infrastructure Programs Region Snapshot Regions I and II The

More information

Alternative Fuel Vehicles in State Energy Assurance Planning

Alternative Fuel Vehicles in State Energy Assurance Planning + Alternative Fuel Vehicles in State Energy Assurance Planning July 17, 2014 Webinar hosted by the National Association of State Energy Officials (NASEO), with support from the U.S. Department of Energy

More information

NATIONAL CAPITAL REGION HOMELAND SECURITY STRATEGIC PLAN SEPTEMBER 2010 WASHINGTON, DC

NATIONAL CAPITAL REGION HOMELAND SECURITY STRATEGIC PLAN SEPTEMBER 2010 WASHINGTON, DC NATIONAL CAPITAL REGION HOMELAND SECURITY STRATEGIC PLAN SEPTEMBER 2010 WASHINGTON, DC Draft Version incorporating Management Review [MR] Edits and Comments Document Date: July 2013 Goal One: Ensure Interoperable

More information

Critical Infrastructure Resilience

Critical Infrastructure Resilience Critical Infrastructure Resilience Climate Resilience Webinar Series U.S. Department of Housing and Urban Development Disclaimer This presentation is intended to provide communities and states with the

More information

Business Continuity Planning

Business Continuity Planning Business Continuity Planning The Unexpected Happens Be Ready Copyright -Business Survival Partners, llc. 2011 - All Rights Reserved www.survivalpartners.biz RISK 2 Risks to National Security A secure and

More information

Emergency Support Function #2 Communications Annex INTRODUCTION. Purpose. Scope. ESF Coordinator: Support Agencies: Primary Agencies:

Emergency Support Function #2 Communications Annex INTRODUCTION. Purpose. Scope. ESF Coordinator: Support Agencies: Primary Agencies: ESF Coordinator: Homeland Security/National Protection and Programs/Cybersecurity and Communications Primary Agencies: Homeland Security/National Protection and Programs/Cybersecurity and Communications

More information

THE WHITE HOUSE. Office of the Press Secretary. EMBARGOED UNTIL DELIVERY OF THE PRESIDENT'S February 12, 2013 STATE OF THE UNION ADDRESS

THE WHITE HOUSE. Office of the Press Secretary. EMBARGOED UNTIL DELIVERY OF THE PRESIDENT'S February 12, 2013 STATE OF THE UNION ADDRESS THE WHITE HOUSE Office of the Press Secretary EMBARGOED UNTIL DELIVERY OF THE PRESIDENT'S February 12, 2013 STATE OF THE UNION ADDRESS February 12, 2013 PRESIDENTIAL POLICY DIRECTIVE/PPD-21 SUBJECT: Critical

More information

June 5, 2018 Independence, Ohio

June 5, 2018 Independence, Ohio June 5, 2018 Independence, Ohio The Office of Infrastructure Protection National Protection and Programs Directorate Department of Homeland Security Securing the Nation at the Community Level 2018 Cuyahoga

More information

Why you should adopt the NIST Cybersecurity Framework

Why you should adopt the NIST Cybersecurity Framework Why you should adopt the NIST Cybersecurity Framework It s important to note that the Framework casts the discussion of cybersecurity in the vocabulary of risk management Stating it in terms Executive

More information

DHS Cybersecurity. Election Infrastructure as Critical Infrastructure. June 2017

DHS Cybersecurity. Election Infrastructure as Critical Infrastructure. June 2017 DHS Cybersecurity Election Infrastructure as Critical Infrastructure June 2017 Department of Homeland Security Safeguard the American People, Our Homeland, and Our Values Homeland Security Missions 1.

More information

TSA/FTA Security and Emergency Management Action Items for Transit Agencies

TSA/FTA Security and Emergency Management Action Items for Transit Agencies TSA/FTA Security and Emergency Management Action Items for Transit Agencies AACTION ITEM LIST Management and Accountability 1. Establish Written System Security Programs and Emergency Management Plans:

More information

The Office of Infrastructure Protection

The Office of Infrastructure Protection The Office of Infrastructure Protection National Protection and Programs Directorate Department of Homeland Security Protective Security Coordination Division Overview MTIA St Louis 03 MAY 2016 Role of

More information

National Preparedness System (NPS) Kathleen Fox, Acting Assistant Administrator National Preparedness Directorate, FEMA April 27, 2015

National Preparedness System (NPS) Kathleen Fox, Acting Assistant Administrator National Preparedness Directorate, FEMA April 27, 2015 National Preparedness System (NPS) Kathleen Fox, Acting Assistant Administrator National Preparedness Directorate, FEMA April 27, 2015 The Post Katrina Emergency Management Reform Act (2006) Required the

More information

ASSEMBLY, No STATE OF NEW JERSEY. 217th LEGISLATURE INTRODUCED FEBRUARY 4, 2016

ASSEMBLY, No STATE OF NEW JERSEY. 217th LEGISLATURE INTRODUCED FEBRUARY 4, 2016 ASSEMBLY, No. STATE OF NEW JERSEY th LEGISLATURE INTRODUCED FEBRUARY, 0 Sponsored by: Assemblywoman VALERIE VAINIERI HUTTLE District (Bergen) Assemblyman DANIEL R. BENSON District (Mercer and Middlesex)

More information

Integration of Business Continuity, Emergency Preparedness, and Emergency Response

Integration of Business Continuity, Emergency Preparedness, and Emergency Response Integration of Business Continuity, Emergency Preparedness, and Emergency Response Continuity Insights Conference 2014 Julia Halsne Manager of Business Continuity East Bay Municipal Utility District Contents

More information

MULTI-YEAR TRAINING AND EXERCISE PLAN. Boone County Office of Emergency Management

MULTI-YEAR TRAINING AND EXERCISE PLAN. Boone County Office of Emergency Management 2017-2019 MULTI-YEAR TRAINING AND EXERCISE PLAN Boone County Office of February 2017 PREFACE The utilizes a coordinated preparedness strategy that combines enhanced planning, resource acquisition, innovative

More information

South Dakota Utah Wyoming Needs and Challenges Funding assistance Training Federal program enhancements Exercises

South Dakota Utah Wyoming Needs and Challenges Funding assistance Training Federal program enhancements Exercises STATE, LOCAL, TRIBAL, AND TERRITORIAL GOVERNMENT COORDINATING COUNCIL REGIONAL CONSORTIUM COORDINATING COUNCIL Regional Overview of Critical Infrastructure Programs Region Snapshot Region VIII The State,

More information

Mississippi Emergency Support Function #12 Energy Annex

Mississippi Emergency Support Function #12 Energy Annex ESF #12 Coordinator Mississippi Public Utilities Staff Primary Agencies Mississippi Public Utilities Staff Support Agencies Mississippi Emergency Management Agency Mississippi Public Service Commission

More information

NATIONAL DEFENSE INDUSTRIAL ASSOCIATION Homeland Security Symposium

NATIONAL DEFENSE INDUSTRIAL ASSOCIATION Homeland Security Symposium NATIONAL DEFENSE INDUSTRIAL ASSOCIATION Homeland Security Symposium Securing Cyber Space & America s Cyber Assets: Threats, Strategies & Opportunities September 10, 2009, Crystal Gateway Marriott, Arlington,

More information

Public and Private Interdependencies Filling a Gap in Most Continuity Plans

Public and Private Interdependencies Filling a Gap in Most Continuity Plans Public and Private Interdependencies Filling a Gap in Most Continuity Plans John A Jackson Executive Vice President Fusion Risk Management, Inc. The evolution of the continuity industrytechnology advancement

More information

Table of Contents. Sample

Table of Contents. Sample TABLE OF CONTENTS... 1 CHAPTER 1 INTRODUCTION... 4 1.1 GOALS AND OBJECTIVES... 5 1.2 REQUIRED REVIEW... 5 1.3 APPLICABILITY... 5 1.4 ROLES AND RESPONSIBILITIES SENIOR MANAGEMENT AND BOARD OF DIRECTORS...

More information

FEMA Update. Tim Greten Technological Hazards Division Deputy Director. NREP April 2017

FEMA Update. Tim Greten Technological Hazards Division Deputy Director. NREP April 2017 FEMA Update Tim Greten Technological Hazards Division Deputy Director NREP April 2017 FEMA Strategic Priorities Priority 1: Be survivor-centric in mission and program delivery. Priority 2: Become an expeditionary

More information

BUSINESS CONTINUITY MANAGEMENT PROGRAM OVERVIEW

BUSINESS CONTINUITY MANAGEMENT PROGRAM OVERVIEW BUSINESS CONTINUITY MANAGEMENT PROGRAM OVERVIEW EXECUTIVE SUMMARY CenturyLink is committed to ensuring business resiliency and survivability during an incident or business disruption. Our Corporate Business

More information

The J100 RAMCAP Method

The J100 RAMCAP Method The J100 RAMCAP Method 2012 ORWARN Conference Kevin M. Morley, PhD Security & Preparedness Program Manager AWWA--Washington, DC Water is Key to Daily Life Potable drinking water Sanitation Public Health

More information

Long-Term Power Outage Response and Recovery Tabletop Exercise

Long-Term Power Outage Response and Recovery Tabletop Exercise 1 Long-Term Power Outage Response and Recovery Tabletop Exercise After Action Report [Template] The After-Action Report/Improvement Plan (AAR/IP) aligns exercise objectives with preparedness doctrine to

More information

Greg Garcia President, Garcia Cyber Partners Former Assistant Secretary for Cyber Security and Communications, U.S. Department of Homeland Security

Greg Garcia President, Garcia Cyber Partners Former Assistant Secretary for Cyber Security and Communications, U.S. Department of Homeland Security 1 Greg Garcia President, Garcia Cyber Partners Former Assistant Secretary for Cyber Security and Communications, U.S. Department of Homeland Security 2 Government Services 3 Business Education Social CYBERSPACE

More information

2 ESF 2 Communications

2 ESF 2 Communications 2 ESF 2 Communications THIS PAGE LEFT BLANK INTENTIONALLY Table of Contents 1 Introduction... 1 1.1 Purpose and Scope... 1 1.2 Relationship to Other ESF Annexes... 1 1.3 Policies and Agreements... 1 2

More information

Panel 1 National CSIRT Experience

Panel 1 National CSIRT Experience Panel 1 National CSIRT Experience 2 nd Meeting of Government Cybersecurity Practitioners Sao Paulo, Brazil September 14-16, 2005 Andrew McAllister Senior Advisor, Cyber Security Public Safety and Emergency

More information

Emergency Operations Center Management Exercise Evaluation Guide

Emergency Operations Center Management Exercise Evaluation Guide Emergency Operations Center Management Exercise Evaluation Guide I respectfully submit the completed Exercise Evaluation Guide for the Canopy Oaks Tabletop Exercise conducted March 25 2010 for the Leon

More information

NW NATURAL CYBER SECURITY 2016.JUNE.16

NW NATURAL CYBER SECURITY 2016.JUNE.16 NW NATURAL CYBER SECURITY 2016.JUNE.16 ADOPTED CYBER SECURITY FRAMEWORKS CYBER SECURITY TESTING SCADA TRANSPORT SECURITY AID AGREEMENTS CONCLUSION QUESTIONS ADOPTED CYBER SECURITY FRAMEWORKS THE FOLLOWING

More information

Standing Together for Financial Industry Resilience Quantum Dawn 3 After-Action Report. November 19, 2015

Standing Together for Financial Industry Resilience Quantum Dawn 3 After-Action Report. November 19, 2015 Standing Together for Financial Industry Resilience Quantum Dawn 3 After-Action Report November 19, 2015 Table of contents Background Exercise objectives Quantum Dawn 3 (QD3) cyberattack scenario QD3 results

More information

EARTH Ex 2017 Middle Planning Conference

EARTH Ex 2017 Middle Planning Conference EARTH Ex 2017 Middle Planning Conference 20 April 2017 Emergency All-sector Response to Transnational Hazards Exercise 23 August 2017 1 EARTH Ex 2017 MPC Sector Objectives Review EARTH Ex Plan, Concepts

More information

Critical Infrastructure Sectors and DHS ICS CERT Overview

Critical Infrastructure Sectors and DHS ICS CERT Overview Critical Infrastructure Sectors and DHS ICS CERT Overview Presented by Darryl E. Peek II REGIONAL INTELLIGENCE SEMINAR AND NATIONAL SECURITY FORUM 2 2 Authorities and Related Legislation Homeland Security

More information

The Office of Infrastructure Protection

The Office of Infrastructure Protection The Office of Infrastructure Protection National Protection and Programs Directorate Department of Homeland Security Native American Risk Management Conference 20 July, 2018 Bridging the Gap: Delivering

More information

Best Practices for Campus Security. January 26, 2017

Best Practices for Campus Security. January 26, 2017 Best Practices for Campus Security January 26, 2017 Welcome to Safe University (Safe U ) Protecting People, Property, and Tradition: The Safe University (Safe U SM ) Program By G. Michael Verden, Owner

More information

Region Snapshot Region IV

Region Snapshot Region IV STATE, LOCAL, TRIBAL, AND TERRITORIAL GOVERNMENT COORDINATING COUNCIL REGIONAL CONSORTIUM COORDINATING COUNCIL Regional Overview of Critical Infrastructure Programs Region Snapshot Region IV The State,

More information

VirtualAgility solutions for. Smarter Public Safety. Michael V Kay VP European Operations VirtualAgility Inc.

VirtualAgility solutions for. Smarter Public Safety. Michael V Kay VP European Operations VirtualAgility Inc. IBM Smarter Cities, Dublin 29th September 2010 Smarter Public Safety VirtualAgility solutions for Smarter Public Safety Michael V Kay VP European Operations VirtualAgility Inc. IBM is working across the

More information

The Office of Infrastructure Protection

The Office of Infrastructure Protection The Office of Infrastructure Protection National Protection and Programs Directorate Department of Homeland Security Protective Security Advisors and Special Event Domestic Incident Tracker Overview Federal

More information

Statement for the Record

Statement for the Record Statement for the Record of Seán P. McGurk Director, Control Systems Security Program National Cyber Security Division National Protection and Programs Directorate Department of Homeland Security Before

More information

Hazard Management Cayman Islands

Hazard Management Cayman Islands Hazard Management Cayman Islands Strategic Plan 2012 2016 Executive Summary HMCI strategic plan outlines the agency s outlook in the next five years and illustrates the main strategies as goals that will

More information

Continuity of Business

Continuity of Business White Paper Continuity of Business SAS Continuity of Business initiative reflects our commitment to our employees, to our customers, and to all of the stakeholders in our global business community to be

More information

Bradford J. Willke. 19 September 2007

Bradford J. Willke. 19 September 2007 A Critical Information Infrastructure Protection Approach to Multinational Cyber Security Events Bradford J. Willke 19 September 2007 Overview A framework for national Critical Information Infrastructure

More information

Applying Mitigation. to Build Resilient Communities

Applying Mitigation. to Build Resilient Communities Applying Mitigation to Build Resilient Communities The Hazards Around Us Think about the natural hazard that... poses the greatest risk to where you live or work OR has had the greatest impact on you personally

More information

HAMILTON COUNTY EMERGENCY OPERATIONS PLAN ANNEX L - EMERGENCY SUPPORT FUNCTION #12 ENERGY

HAMILTON COUNTY EMERGENCY OPERATIONS PLAN ANNEX L - EMERGENCY SUPPORT FUNCTION #12 ENERGY HAMILTON COUNTY EMERGENCY OPERATIONS PLAN ANNEX L - EMERGENCY SUPPORT FUNCTION #12 ENERGY COORDINATING: SUPPORT: Hamilton County Engineer s Office Duke Energy/Local Public Utility Companies Hamilton County

More information

Security Program Design:

Security Program Design: Security Program Design: A Critical Infrastructure Protection Model Experience, Dedication, and Leadership July 17-18, 2013 Toronto, Ontario CAN in Security EDUCATION Earn up to 16 CPEs Are you confident

More information

PD 7: Homeland Security Presidential Directive 7: Critical Infrastructure Identification, Prioritization, and Protection

PD 7: Homeland Security Presidential Directive 7: Critical Infrastructure Identification, Prioritization, and Protection PD 7: Homeland Security Presidential Directive 7: Critical Infrastructure Identification, Prioritization, and Protection December 17, 2003 SUBJECT: Critical Infrastructure Identification, Prioritization,

More information

Energy Assurance Energy Assurance and Interdependency Workshop Fairmont Hotel, Washington D.C. December 2 3, 2013

Energy Assurance Energy Assurance and Interdependency Workshop Fairmont Hotel, Washington D.C. December 2 3, 2013 + Energy Assurance Energy Assurance and Interdependency Workshop Fairmont Hotel, Washington D.C. December 2 3, 2013 Jeffrey R. Pillon, Director, Energy Assurance Programs National Association of State

More information

GEORGIA CYBERSECURITY WORKFORCE ACADEMY. NASCIO 2018 State IT Recognition Awards

GEORGIA CYBERSECURITY WORKFORCE ACADEMY. NASCIO 2018 State IT Recognition Awards GEORGIA CYBERSECURITY WORKFORCE ACADEMY NASCIO 2018 State IT Recognition Awards Title: Georgia Cybersecurity Workforce Academy Category: Cybersecurity State: Georgia Contact: Stanton Gatewood Stan.Gatewood@gta.ga.gov

More information

BUSINESS DISASTER & TERRORISM PREPAREDNESS

BUSINESS DISASTER & TERRORISM PREPAREDNESS BUSINESS DISASTER & TERRORISM PREPAREDNESS MINORITY CHAMBER OF COMMERCE, CYBER SECURITY FORUM MIAMI-DADE PUBLIC-PRIVATE PARTNERSHIP The Public-Private Partnership program incorporates the public and private

More information

New York City Emergency Management Public/Private Collaboration and Support

New York City Emergency Management Public/Private Collaboration and Support New York City Emergency Management Public/Private Collaboration and Support Property of the City of New York and NYC Emergency Management. Redistribution of this material without prior written authorization

More information

EPRO. Electric Infrastructure Protection Initiative EPRO BLACK SKY SYSTEMS ENGINEERING PROCESS

EPRO. Electric Infrastructure Protection Initiative EPRO BLACK SKY SYSTEMS ENGINEERING PROCESS EPRO Electric Infrastructure Protection Initiative EPRO BLACK SKY SYSTEMS ENGINEERING PROCESS EPRO BLACK SKY SYSTEMS ENGINEERING PROCESS The Role of Systems Engineering in Addressing Black Sky Hazards

More information

Kansas City s Metropolitan Emergency Information System (MEIS)

Kansas City s Metropolitan Emergency Information System (MEIS) Information- Sharing Interagency Cooperation Resources Management Law Enforcement Fire Emergency Medical Services Public Health Private Sector Kansas City s Metropolitan Emergency Information System (MEIS)

More information

The Office of Infrastructure Protection

The Office of Infrastructure Protection The Office of Infrastructure Protection National Protection and Programs Directorate Department of Homeland Security Organisation for the Prohibition of Chemical Weapons September 13, 2011 Overall Landscape

More information

Election Infrastructure Security: The How and Why of It

Election Infrastructure Security: The How and Why of It Election Infrastructure Security: The How and Why of It Minnesota County Auditor Election Training Conference May 3, 2018 Contents Election Infrastructure Security Overview Cyber and Physical Security

More information

9/18/2017 PLANS STRATEGIES AND TOOLS. SAHRA: The 5 Ways to Improve Emergency Management and Business Continuity Plans 9/20/17 3 PRESENTATION AGENDA

9/18/2017 PLANS STRATEGIES AND TOOLS. SAHRA: The 5 Ways to Improve Emergency Management and Business Continuity Plans 9/20/17 3 PRESENTATION AGENDA PLANS The 5 Ways to Improve STRATEGIES AND TOOLS Emergency Management and Business Continuity Plans PRESENTATION AGENDA Ice Breaker What steps would you take after a flood? 5 Ways to improve emergency

More information

MassMutual Business Continuity Disclosure Statement

MassMutual Business Continuity Disclosure Statement MassMutual Business Continuity Disclosure Statement Overview Resiliency is a high priority at Massachusetts Mutual Life Insurance Company ( MassMutual or the Company ). To that end, significant investments

More information

IA2. Flood (Including Dam Failure)

IA2. Flood (Including Dam Failure) IA2 Flood (Including Dam Failure) This page left blank intentionally. Marion 2. IA2 - Flood Phase of Activity PRE-INCIDENT PHASE RESPONSE PHASE Flood Incident Checklist Action Items Arrange for personnel

More information

November 14, Emergency Management and Hurricane Irma. Florida Human Resources People and Strategy (FLHRPS)

November 14, Emergency Management and Hurricane Irma. Florida Human Resources People and Strategy (FLHRPS) November 14, 2017 Emergency Management and Hurricane Irma Florida Human Resources People and Strategy (FLHRPS) 1 Agenda Hurricane Irma recap Dianne Merrill Emergency Management Process Susan Mueller Lessons

More information

Texas Reliability Entity, Inc. Strategic Plan for 2017 TEXAS RE STRATEGIC PLAN FOR 2017 PAGE 1 OF 13

Texas Reliability Entity, Inc. Strategic Plan for 2017 TEXAS RE STRATEGIC PLAN FOR 2017 PAGE 1 OF 13 Texas Reliability Entity, Inc. Strategic Plan for 2017 TEXAS RE STRATEGIC PLAN FOR 2017 PAGE 1 OF 13 I. Vision A highly reliable and secure bulk power system in the Electric Reliability Council of Texas

More information

An Update on Security and Emergency Preparedness Standards for Utilities

An Update on Security and Emergency Preparedness Standards for Utilities An Update on Security and Emergency Preparedness Standards for Utilities Linda P. Warren, Launch! Consulting Safety and Security in the Workplace March 28, 2013 Overview 1 Review of AWWA Standards in Water

More information

Security and Emergency Response Issues for the Refining and Petrochemical Industry

Security and Emergency Response Issues for the Refining and Petrochemical Industry Security and Emergency Response Issues for the Refining and Petrochemical Industry Jeff Gunnulfsen Director-Security and Risk Management Issues Dan Strachan Director-Industrial Relations and Programs AFPM

More information

National Policy and Guiding Principles

National Policy and Guiding Principles National Policy and Guiding Principles National Policy, Principles, and Organization This section describes the national policy that shapes the National Strategy to Secure Cyberspace and the basic framework

More information

Special Action Plan on Countermeasures to Cyber-terrorism of Critical Infrastructure (Provisional Translation)

Special Action Plan on Countermeasures to Cyber-terrorism of Critical Infrastructure (Provisional Translation) Special Action Plan on Countermeasures to Cyber-terrorism of Critical Infrastructure (Provisional Translation) December 15, 2000 1. Goals of the Special Action Plan The goal of this action plan is to protect

More information

COUNTERING IMPROVISED EXPLOSIVE DEVICES

COUNTERING IMPROVISED EXPLOSIVE DEVICES COUNTERING IMPROVISED EXPLOSIVE DEVICES FEBRUARY 26, 2013 COUNTERING IMPROVISED EXPLOSIVE DEVICES Strengthening U.S. Policy Improvised explosive devices (IEDs) remain one of the most accessible weapons

More information

Today s cyber threat landscape is evolving at a rate that is extremely aggressive,

Today s cyber threat landscape is evolving at a rate that is extremely aggressive, Preparing for a Bad Day The importance of public-private partnerships in keeping our institutions safe and secure Thomas J. Harrington Today s cyber threat landscape is evolving at a rate that is extremely

More information

Chapter 1. Chapter 2. Chapter 3

Chapter 1. Chapter 2. Chapter 3 Contents Preface ix Chapter 1 Terrorism 1 Terrorism in General 2 Definition of Terrorism 3 Why Choose Terrorism 4 Goals of Terrorists 5 Selection of Targets and Timing of Attacks 6 Perpetrators 7 Weapons

More information

National Level Exercise 2018 After-Action Findings

National Level Exercise 2018 After-Action Findings National Level Exercise 2018 After-Action Findings National Level Exercise (NLE) 2018 examined the ability of all levels of government, private industry, and nongovernmental organizations to protect against,

More information

The Office of Infrastructure Protection

The Office of Infrastructure Protection The Office of Infrastructure Protection National Protection and Programs Directorate Department of Homeland Security Hometown Security Overview Minnesota Festivals and Events Association 5 November, 018

More information

December 10, Statement of the Securities Industry and Financial Markets Association. Senate Committee on Banking, Housing, and Urban Development

December 10, Statement of the Securities Industry and Financial Markets Association. Senate Committee on Banking, Housing, and Urban Development December 10, 2014 Statement of the Securities Industry and Financial Markets Association Senate Committee on Banking, Housing, and Urban Development Hearing Entitled Cybersecurity: Enhancing Coordination

More information

Walmart Resiliency NCEM ECU Hurricane Conference May 2016

Walmart Resiliency NCEM ECU Hurricane Conference May 2016 NCEM ECU Hurricane Conference May 2016 Emergency Management Guiding Principles Taking Care of Our Associates Taking Care of Our Operations Taking Care of Our Communities 2 Why Preparedness Matters to Walmart

More information

Emergency Management Response and Recovery. Mark Merritt, President September 2011

Emergency Management Response and Recovery. Mark Merritt, President September 2011 Emergency Management Response and Recovery Mark Merritt, President September 2011 Evolution of Response and Recovery Emergency Management Pendulum Hurricane Andrew August 24, 1992 9/11 Terrorist Attacks

More information

JSC THE JUSTICE & SAFETY CENTER. Snapshot 2014

JSC THE JUSTICE & SAFETY CENTER. Snapshot 2014 JSC THE JUSTICE & SAFETY CENTER Snapshot 2014 The Justice & Safety Center (JSC) is comprised of a team of faculty and staff professionals at Eastern Kentucky University (EKU) dedicated to strengthening

More information

2013 STRATEGIC PLANNING SCHEDULE

2013 STRATEGIC PLANNING SCHEDULE 2013 STRATEGIC PLANNING SCHEDULE Overall Agency Priorities 1. Prepare for the 2013 Hurricane Conference 2. Coordinate the Adoption and Implementation of the Employee State of Emergency Work Assignment

More information

Cybersecurity for the Electric Grid

Cybersecurity for the Electric Grid Cybersecurity for the Electric Grid Electric System Regulation, CIP and the Evolution of Transition to a Secure State A presentation for the National Association of Regulatory Utility Commissioners March

More information

2016 Nationwide Cyber Security Review: Summary Report. Nationwide Cyber Security Review: Summary Report

2016 Nationwide Cyber Security Review: Summary Report. Nationwide Cyber Security Review: Summary Report Nationwide Cyber Security Review: Summary Report Nationwide Cyber Security Review: Summary Report ii Nationwide Cyber Security Review: Summary Report Acknowledgments The Multi-State Information Sharing

More information

Panel II: Are We Prepared?

Panel II: Are We Prepared? Panel II: Are We Prepared? Light Light & Power Power A Northeast Utilities Company Emergency Preparedness & Response March 13, 2013 Energy, Environment and Economic Development Conference Douglas S. McCracken

More information

STANDARD OPERATING PROCEDURE Critical Infrastructure Credentialing/Access Program Hurricane Season

STANDARD OPERATING PROCEDURE Critical Infrastructure Credentialing/Access Program Hurricane Season STANDARD OPERATING PROCEDURE Critical Infrastructure Credentialing/Access Program Hurricane Season IBERIA PARISH STATE OF LOUISIANA STANDARD OPERATING PROCEDURE Critical Infrastructure Owners/Operators

More information

UNCLASSIFIED. National and Cyber Security Branch. Presentation for Gridseccon. Quebec City, October 18-21

UNCLASSIFIED. National and Cyber Security Branch. Presentation for Gridseccon. Quebec City, October 18-21 National and Cyber Security Branch Presentation for Gridseccon Quebec City, October 18-21 1 Public Safety Canada Departmental Structure 2 National and Cyber Security Branch National and Cyber Security

More information

Addressing Vulnerabilities By Integrating Your Incident Response Plans. Brian Coates Enaxis Consulting

Addressing Vulnerabilities By Integrating Your Incident Response Plans. Brian Coates Enaxis Consulting Addressing Vulnerabilities By Integrating Your Incident Response Plans Brian Coates Enaxis Consulting Contents Enaxis Introduction Presenter Bio: Brian Coates Incident Response / Incident Management in

More information

Executive Order on Coordinating National Resilience to Electromagnetic Pulses

Executive Order on Coordinating National Resilience to Electromagnetic Pulses Executive Order on Coordinating National Resilience to Electromagnetic Pulses The Wh... Page 1 of 11 EXECUTIVE ORDERS Executive Order on Coordinating National Resilience to Electromagnetic Pulses INFRASTRUCTURE

More information

Heavy Vehicle Cyber Security Bulletin

Heavy Vehicle Cyber Security Bulletin Heavy Vehicle Cyber Security Update National Motor Freight Traffic Association, Inc. 1001 North Fairfax Street, Suite 600 Alexandria, VA 22314 (703) 838-1810 Heavy Vehicle Cyber Security Bulletin Bulletin

More information