NERC Overview and Compliance Update

Size: px
Start display at page:

Download "NERC Overview and Compliance Update"

Transcription

1 NERC Overview and Compliance Update Eric Ruskamp Manager, Regulatory Compliance August 17,

2 Agenda NERC Overview History Regulatory Hierarchy Reliability Standards Compliance Enforcement Compliance Update Noteworthy Changes Standards Activity 2

3 NERC History How long has NERC been around? a) 5 years b) 14 years c) 22 years d) 32 years e) 50 years 3

4 NERC History How long has NERC been around? a) 5 years b) 14 years c) 22 years d) 32 years e) 50 years 4

5 NERC History The Event Nov 9, 1965 A single wrongly set relay in Ontario caused a key 345kV transmission line to open Escalating line overloads Within 5 minutes, islanding across much of the Northeast 25 Million people (80,000 square miles) were without electricity lasting up to 12 hours Reason: varying operating standards developed somewhat independently 5

6 NERC History The Result North American Electric Reliability Council (NERC) formed on June 1, 1968 under the Electric Power Reliability Act of 1967 Began developing Operating Policies Adopted Planning Standards in

7 NERC History Major Outages 1969 Florida, 2m people 1977 New York, 9m people 1981 Utah, 1.5m people 1982 California, 5m people 1985 Florida, 4.5m people 1996 Western US and Canada, 7.5m people 7

8 NERC History August 14, 2003 Largest Blackout in North American history Originated in Akron, OH Affected 50 million people Financial loses estimated at $6 Billion Trees! Line Overloads Lost 21 power plants in 3 min 8

9 NERC History

10 NERC History Enforcement Needed EPACT 2005 signed by President Bush on August 8, 2005 Authorized the creation of the Electric Reliability Organization (ERO) to span North America with FERC oversight in the US... North American Electric Reliability Corporation (NERC) June 18, 2007 Mandatory Enforcement began 10

11 NERC Reliability Standards generation-load balance contingency reserves communication protocols cyber security physical security system restoration emergency operations interconnection requirements vegetation management facility ratings operating limits transmission loading relief outage coordination real-time assessments model development system operator training system protection underfrequency load shedding generator capability coordination operations planning transmission planning voltage control 11

12 NERC Reliability Standards Functional Entity Registration Balancing Authority Distribution Provider Generation Owner Generation Operator Planning Coordinator Reliability Coordinator Transmission Owner Transmission Operator Transmission Planner Transmission Service Provider Resource Planner Reserve Sharing Group 12

13 NERC Reliability Standards Functional Entity Registration Balancing Authority Distribution Provider Generation Owner Generation Operator Planning Coordinator Reliability Coordinator Transmission Owner Transmission Operator Transmission Planner Transmission Service Provider Resource Planner Reserve Sharing Group 13

14 NERC Reliability Standards 14

15 NERC Reliability Standards 15

16 NERC Reliability Standards 16

17 NERC Reliability Standards FAC Facility Ratings Purpose - To ensure that Facility Ratings used in the reliable planning and operation of the Bulk Electric System (BES) are determined based on technically sound principles. Applies to Transmission and Generation 8 Requirements, 27 sub Requirements - Development and implementation of methodology 1,632 Transmission Elements 95 Generation Elements 17

18 NERC Reliability Standards NERC Reliability Standards 101 enforceable 79 applicable to LES 500+ Requirements 300+ applicable to LES An additional 1,100 sub Requirements within the standards (not counting bullet points and attachments) 18

19 NERC Regulatory Hierarchy FERC Provides oversight & direction NERC SERC FRCC RFC MRO TRE WECC NPCC 19

20 NERC Regulatory Hierarchy FERC NERC Develops & Enforces Reliability Standards SERC FRCC RFC MRO TRE WECC NPCC 20

21 NERC Regulatory Hierarchy FERC NERC SERC FRCC RFC MRO TRE WECC NPCC Audits the NERC Reliability Standards 21

22 NERC Regulatory Hierarchy NERC Regional Entities 22

23 NERC Regulatory Hierarchy MRO - Regional Entity Compliance & Enforcement Registration & Certification Seasonal and Long-term Assessments Data Submittals 23

24 NERC Enforcement The MRO monitors, assesses, and enforces compliance with Reliability Standards using eight monitoring processes: Compliance Audits Self-Certifications Spot Checking Compliance Violation Investigations Self-Reporting Periodic Data Submittals Exception Reporting Complaints 24

25 NERC Enforcement The MRO monitors, assesses, and enforces compliance with Reliability Standards using eight monitoring processes: Compliance Audits Self-Certifications Spot Checking Compliance Violation Investigations Self-Reporting Periodic Data Submittals Exception Reporting Complaints 25

26 NERC Enforcement Compliance Oversight Plans (COPs) Performed by MRO 26

27 NERC Enforcement Compliance Audits May 2017 onsite audit (every 3 years) Preceded by offsite compliance review 21 NERC Standards 2,238 evidentiary files provided May 2019 offsite audit (every 2 years) 2020 onsite audit Audits typically led by MRO 2 Teams Ops & Planning Audit CIP Audit 27

28 NERC Enforcement Guided Self Certifications 1. List all facilities 2. Perform random sample 3. Create population 4. Documentation for identified Requirements Reqs Reqs Reqs 28

29 NERC Enforcement Self Reporting Expectation to self identify and Self Report matters of potential noncompliance 1. Issues reported to internal RC Dept. 2. RC Dept. investigates 3. Formal report and presentation provided to LES Compliance Committee LES Board and MRO notified 29

30 Annual Internal Review 450 Tracking Records Compliance narrative Supporting evidence 40 SMEs 12 Group Managers Regulatory Compliance 30

31 Compliance Update Compliance Reviews Performance of LES Inherent Risk Assessment in 2019 Offsite audit in May 2019 Onsite audit in guided Self Certs in

32 Compliance Update SPP RE Dissolution 32

33 Compliance Update NERC and MRO Dues $180,000 $160,000 $140,000 $120,000 $100,000 $80,000 $60,000 MRO NERC Total $40,000 $20,000 $ MRO dues to reduce 14.6% NERC dues to increase 10.3% 33

34 Compliance Update Leadership changes Jim Robb President & CEO of NERC, April 2018 Sara Patrick President & CEO of MRO, June 2018 Peak Reliability dissolution Ending Reliability Coordinator services end of 2019 SPP and Cal ISO are exploring RC certification 34

35 Compliance Update Large Financial Penalty An unidentified entity received a $2.7 million penalty for the violation of 2 NERC requirements. A third-party contractor exceeded its authorized access by improperly copying data from the entity to its own server. Though trained, the contractor failed to properly protect the data which included 30,000 asset records, including IP addresses, server host names, cryptographic information for usernames and passwords (which could aid a malicious attacker in decoding passwords). The data was accessible online without user ID or password for 70 days. A white hat security researcher notified the entity of the exposure. Logs indicate that only the white hat researcher downloaded the data. 35

36 Compliance Update New/Revised Standards FERC directives Reliability needs Clarifications/improvements Drafting teams comprised of industry volunteers Develop and provide comments and voting recommendations o 66.66% approval needed Implement new standards before enforcement date 36

37 Compliance Update Standards Under Development 13 Projects o Establishing System Operating Limits o Single Points of Failure o Supply Chain Management o Training Standards Efficiency review Standards being implemented 7 implementation plans o Generator Modeling and Testing o Communications Testing 37

38 Compliance Update NERC 2018 Summer Assessment Texas has a generation shortfall due in part to 5,000 MW of generation retirements since last summer. The projected reserve margin is 11%, 3% below their recommended level. California is facing a limit on natural gas output due to Aliso Canyon storage facility constraints. Anticipated below normal hydro generation and the need for fast-ramping generation based on high penetration of renewables will also challenge California. SPP footprint does not have any emerging reliability issues that are considered unique. 38

39 Compliance Update NERC 2018 State of Reliability Report The report looks back over the previous year with a view toward solving future problems. In 2017, the bulk power system was able to maintain reliable operations during two Category 5 events (hurricanes Harvey and Irma) and the areas affected from storm-related damage recovered in record time. The bulk power system experienced no loss-of-load due to cyber or physical security events despite continually evolving threats. Transmission outages caused by failed protection system equipment, substation equipment, or human error all show a decreasing trend for the last five years. 39

40 NERC Overview and Compliance Update Eric Ruskamp Manager, Regulatory Compliance 40

NERC CIP Information Protection

NERC CIP Information Protection NERC CIP Information Protection Eric Ruskamp Manager, Regulatory Compliance September 13, 2017 1 Agenda NERC History NERC Compliance Overview of Reliability Standards Compliance with Reliability Standards

More information

NORTH AMERICAN ELECTRIC RELIABILITY CORPORATION

NORTH AMERICAN ELECTRIC RELIABILITY CORPORATION NORTH AMERICAN ELECTRIC RELIABILITY CORPORATION NARUC Energy Regulatory Partnership Program The Public Services Regulatory Commission of Armenia and The Iowa Utilities Board Janet Amick Senior Utility

More information

Grid Security & NERC

Grid Security & NERC Grid Security & NERC Janet Sena, Senior Vice President, Policy and External Affairs Southern States Energy Board 2017 Associate Members Winter Meeting February 27, 2017 Recent NERC History Energy Policy

More information

Electric Transmission Reliability

Electric Transmission Reliability 1965 Northeast Blackout #1 History of NERC 1968 North American Electric Reliability Council (NERC) formed Voluntary compliance with reliability standards 2003 Northeast Blackout #2 2006 NERC accepted at

More information

Essential Reliability Services NERC Staff Report

Essential Reliability Services NERC Staff Report Essential Reliability Services NERC Staff Report Mark Lauby, Senior Vice President and Chief Reliability Officer Annual Meeting of the National Conference of State Legislators August 20, 2014 About NERC

More information

Compliance Enforcement Initiative

Compliance Enforcement Initiative Compliance Enforcement Initiative Filing and Status Update November 2, 2011 Rebecca Michael Status of the Filings NERC filed several components of the Compliance Enforcement Initiative on September 30,

More information

Low Impact Generation CIP Compliance. Ryan Walter

Low Impact Generation CIP Compliance. Ryan Walter Low Impact Generation CIP Compliance Ryan Walter Agenda Entity Overview NERC CIP Introduction CIP-002-5.1, Asset Classification What Should Already be Done CIP-003-7, Low Impact Requirements Tri-State

More information

Grid Security & NERC. Council of State Governments. Janet Sena, Senior Vice President, Policy and External Affairs September 22, 2016

Grid Security & NERC. Council of State Governments. Janet Sena, Senior Vice President, Policy and External Affairs September 22, 2016 Grid Security & NERC Council of State Governments The Future of American Electricity Policy Academy Janet Sena, Senior Vice President, Policy and External Affairs September 22, 2016 1965 Northeast blackout

More information

New Brunswick 2018 Annual Implementation Plan Version 1

New Brunswick 2018 Annual Implementation Plan Version 1 New Brunswick Energy and Utilities Board Reliability Standards, Compliance and Enforcement Program New Brunswick 2018 Annual Implementation Plan Version 1 December 28, 2017 Table of Contents Version History...

More information

Standards Authorization Request Form

Standards Authorization Request Form Standards Authorization Request Form When completed, email this form to: sarcomm@nerc.com NERC welcomes suggestions to improve the reliability of the bulk power system through improved reliability standards.

More information

Misoperations Information Data Analysis System (MIDAS)

Misoperations Information Data Analysis System (MIDAS) Misoperations Information Data Analysis System (MIDAS) End User Guide June 2016 NERC Report Title Report Date I Table of Contents Preface... iii Chapter 1 Reporting Obligations...1 Entities Obligated to

More information

History of NERC January 2018

History of NERC January 2018 History of NERC January 2018 Date 1962 1963 The electricity industry created an informal, voluntary organization of operating personnel to facilitate coordination of the bulk power system in the United

More information

Standards Authorization Request Justification

Standards Authorization Request Justification Standards Authorization Request Justification Project 2009-02 Real-time Monitoring and Analysis Capabilities NERC Report Title Report Date 1 of 30 3353 Peachtree Road NE Suite 600, North Tower Atlanta,

More information

BPA and NERC, WECC, ERO

BPA and NERC, WECC, ERO BPA and NERC, WECC, ERO March 2006 1 Reliability Organizations BPA has relationship with two reliability organizations: 1. North American Electric Reliability Council (NERC) 2. Western Electric Coordinating

More information

Standard CIP Cyber Security Critical Cyber As s et Identification

Standard CIP Cyber Security Critical Cyber As s et Identification A. Introduction 1. Title: Cyber Security Critical Cyber Asset Identification 2. Number: CIP-002-4 3. Purpose: NERC Standards CIP-002-4 through CIP-009-4 provide a cyber security framework for the identification

More information

Standard CIP Cyber Security Critical Cyber As s et Identification

Standard CIP Cyber Security Critical Cyber As s et Identification A. Introduction 1. Title: Cyber Security Critical Cyber Asset Identification 2. Number: CIP-002-4 3. Purpose: NERC Standards CIP-002-4 through CIP-009-4 provide a cyber security framework for the identification

More information

RELIABILITY COMPLIANCE ENFORCEMENT IN ONTARIO

RELIABILITY COMPLIANCE ENFORCEMENT IN ONTARIO RELIABILITY COMPLIANCE ENFORCEMENT IN ONTARIO June 27, 2016 Training provided for Ontario market participants by the Market Assessment and Compliance Division of the IESO Module 1 A MACD training presentation

More information

History of NERC December 2012

History of NERC December 2012 History of NERC December 2012 Timeline Date 1962-1963 November 9, 1965 1967 1967-1968 June 1, 1968 July 13-14, 1977 1979 1980 Description Industry creates an informal, voluntary organization of operating

More information

History of NERC August 2013

History of NERC August 2013 History of NERC August 2013 Timeline Date 1962 1963 November 9, 1965 1967 1967 1968 June 1, 1968 July 13 14, 1977 1979 Description The electricity industry creates an informal, voluntary organization of

More information

RELIABILITY OF THE BULK POWER SYSTEM

RELIABILITY OF THE BULK POWER SYSTEM RELIABILITY OF THE BULK POWER SYSTEM Jim Burley, VP of Compliance, Mitigation and Standards October 26, 2011 Promoting RELIABILITY and Mitigating RISKS to the Bulk Power System Context In the Beginning-2003

More information

Regulatory Impacts on Research Topics. Jennifer T. Sterling Director, Exelon NERC Compliance Program

Regulatory Impacts on Research Topics. Jennifer T. Sterling Director, Exelon NERC Compliance Program Regulatory Impacts on Research Topics Jennifer T. Sterling Director, Exelon NERC Compliance Program The 2003 Blackout On August 14, 2003, an electric power blackout affected large portions of the Northeast

More information

5. Effective Date: The first day of the first calendar quarter after applicable regulatory approval.

5. Effective Date: The first day of the first calendar quarter after applicable regulatory approval. Introduction 1. Title: IROL and SOL Mitigation in the ERCOT Region 2. Number: IRO-006-TRE-1 3. Purpose: To provide and execute transmission loading relief procedures that can be used to mitigate SOL or

More information

Misoperation Information Data Analysis System

Misoperation Information Data Analysis System Misoperation Information Data Analysis System User Guide October, 2017 NERC Report Title Report Date I Table of Contents Preface... iv Overview... v Chapter 1: User Setup... 1-1 Creating an Account...

More information

Standard Authorization Request Form

Standard Authorization Request Form Standard Authorization Request Form Title of Proposed Standard: Project 2009-02: Real-time Reliability Monitoring and Analysis Capabilities Original Request Date: June 4, 2009 Revised Date: January 15,

More information

CIP Version 5 Evidence Request User Guide

CIP Version 5 Evidence Request User Guide CIP Version 5 Evidence Request User Guide Version 1.0 December 15, 2015 NERC Report Title Report Date I Table of Contents Preface... iv Introduction... v Purpose... v Evidence Request Flow... v Sampling...

More information

Multi-Region Registered Entity Coordinated Oversight Program

Multi-Region Registered Entity Coordinated Oversight Program Multi-Region Registered Entity Coordinated Oversight Program Ken McIntyre, Vice President and Director of Standards and Compliance Compliance Committee Open Meeting February 7, 2018 Coordinated Oversight

More information

Board of Trustees Compliance Committee

Board of Trustees Compliance Committee Board of Trustees Compliance Committee August 13, 2014 10:00 a.m. 11:00 a.m. Pacific The Westin Bayshore 1601 Bayshore Drive Vancouver, BC V6G 2V4 Reliability Assurance Initiative (RAI) Progress Report

More information

Standard Development Timeline

Standard Development Timeline Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard is adopted by the NERC Board of Trustees (Board).

More information

Québec Reliability Standards Compliance Monitoring and Enforcement Program Implementation Plan Annual Implementation Plan

Québec Reliability Standards Compliance Monitoring and Enforcement Program Implementation Plan Annual Implementation Plan Québec Reliability Standards Compliance Monitoring and Enforcement Program Implementation Plan 2017 Annual Implementation Plan Effective Date: January 1, 2017 Approved by the Régie: December 1, 2016 Table

More information

Analysis of System Protection Misoperations

Analysis of System Protection Misoperations Analysis of System Protection Misoperations December 2015 Table of Contents Preface... ii Executive Summary...1 Introduction...2 Chapter 1 Misoperation Data Analysis...4 Misoperation Data Reported...4

More information

2017 ERO Enterprise Compliance Monitoring and Enforcement Implementation Plan

2017 ERO Enterprise Compliance Monitoring and Enforcement Implementation Plan 2017 ERO Enterprise Compliance Monitoring and Enforcement Implementation Plan Version 2.4 March 2017 NERC Report Title Report Date I Table of Contents Revision History... iv Preface... v Introduction...1

More information

NERC Request for Data or Information: Protection System Misoperation Data Collection August 14, 2014

NERC Request for Data or Information: Protection System Misoperation Data Collection August 14, 2014 Request for Data or Information Protection System Misoperation Data Collection August 14, 2014 3353 Peachtree Road NE Suite 600, North Tower Atlanta, GA 30326 404-446-2560 www.nerc.com 1 of 15 Table of

More information

DRAFT. Cyber Security Communications between Control Centers. March May Technical Rationale and Justification for Reliability Standard CIP-012-1

DRAFT. Cyber Security Communications between Control Centers. March May Technical Rationale and Justification for Reliability Standard CIP-012-1 DRAFT Cyber Security Communications between Control Centers Technical Rationale and Justification for Reliability Standard CIP-012-1 March May 2018 NERC Report Title Report Date I Table of Contents Preface...

More information

Critical Asset Identification Methodology. William E. McEvoy Northeast Utilities

Critical Asset Identification Methodology. William E. McEvoy Northeast Utilities Critical Asset Identification Methodology William E. McEvoy Northeast Utilities Disclaimer This NPCC TFIST workshop provides a forum for the presentation and discussion of member experience in the implementation

More information

Standards Authorization Request Form

Standards Authorization Request Form Standards Authorization Request Form When completed, email this form to: sarcomm@nerc.com NERC welcomes suggestions to improve the reliability of the bulk power system through improved reliability standards.

More information

ERO Reliability Risk Priorities Report. Peter Brandien, RISC Chair Member Representatives Committee Meeting November 1, 2016

ERO Reliability Risk Priorities Report. Peter Brandien, RISC Chair Member Representatives Committee Meeting November 1, 2016 ERO Reliability Risk Priorities Report Peter Brandien, RISC Chair Member Representatives Committee Meeting November 1, 2016 RISC s Proposed 2016 Risk Profiles Changing Resource Mix Bulk Power System Planning

More information

Blackout 2003 Reliability Recommendations

Blackout 2003 Reliability Recommendations Blackout 2003 Reliability Recommendations 2005 NPCC General Meeting The Cranwell Resort Lenox, MA September 29, 2005 Philip A. Fedora Director, Market Reliability Interface Northeast Power Coordinating

More information

Chief Executive Officer. Pacific Northwest Utilities Conference Committee Portland, Oregon March 8, 2013

Chief Executive Officer. Pacific Northwest Utilities Conference Committee Portland, Oregon March 8, 2013 Mark W. Maher Chief Executive Officer Pacific Northwest Utilities Conference Committee Portland, Oregon March 8, 2013 Agenda WECC Overview WECC Strategic Planning Initiative Western Interconnection Synchrophasor

More information

NERC History, Mission and Current Issues Southern States Energy Board. October 16, 2011

NERC History, Mission and Current Issues Southern States Energy Board. October 16, 2011 NERC History, Mission and Current Issues Southern States Energy Board October 16, 2011 Electricity Vital to America 2 RELIABILITY ACCOUNTABILITY Risk Curve with Actual Events Severity ( Log Base 10) 2003

More information

Analysis of CIP-006 and CIP-007 Violations

Analysis of CIP-006 and CIP-007 Violations Electric Reliability Organization (ERO) Compliance Analysis Report Reliability Standard CIP-006 Physical Security of Critical Cyber Assets Reliability Standard CIP-007 Systems Security Management December

More information

State of Reliability Report 2013

State of Reliability Report 2013 State of Reliability Report 2013 Jessica Bian, Director of Performance Analysis Reliability Assessment and Performance Analysis (RAPA), NERC Risk Issues Steering Committee Meeting, July 11-12, 2013 State

More information

SPP RTO Compliance Forum Western Area Power Administration March 11, 2015

SPP RTO Compliance Forum Western Area Power Administration March 11, 2015 SPP RTO Compliance Forum Western Area Power Administration March 11, 2015 Mark Buchholz WAPA Upper Great Plains Region Compliance Manager What is Western? One of four Power Marketing Administration within

More information

Introduction to the NYISO

Introduction to the NYISO Introduction to the NYISO Power Control Center Guilderland, NY July 21, 2011 1 Today s Topics NYISO History NYISO Roles & Governance NYISO Markets Building Reliability Emerging Trends 2 Evolution of the

More information

This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective.

This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Description of Current Draft

More information

Reliability Standard Audit Worksheet 1

Reliability Standard Audit Worksheet 1 Reliability Standard Audit Worksheet 1 CIP-012-1 Cyber Security Communications between Control Centers This section to be completed by the Compliance Enforcement Authority. Audit ID: Registered Entity:

More information

British Columbia Utilities Commission Reliability Standards with Effective Dates adopted in British Columbia

British Columbia Utilities Commission Reliability Standards with Effective Dates adopted in British Columbia Page 1 of 15 British Columbia Utilities Reliability Standards with s adopted in British Columbia BAL-001-2 Standard Real Power Balancing Control Performance R-14-16 July 1, 2016 BAL-002-1 1 Disturbance

More information

Meeting- Overview of. Development

Meeting- Overview of. Development NPCC 2008 General Meeting- Standards Program Area- Overview of Regional Standards Development Guy V. Zito Assistant Vice President Standards September 25, 2008 September 25, 2008 1 Standards Program Area

More information

Standard CIP 007 3a Cyber Security Systems Security Management

Standard CIP 007 3a Cyber Security Systems Security Management A. Introduction 1. Title: Cyber Security Systems Security Management 2. Number: CIP-007-3a 3. Purpose: Standard CIP-007-3 requires Responsible Entities to define methods, processes, and procedures for

More information

Standard CIP 007 4a Cyber Security Systems Security Management

Standard CIP 007 4a Cyber Security Systems Security Management A. Introduction 1. Title: Cyber Security Systems Security Management 2. Number: CIP-007-4a 3. Purpose: Standard CIP-007-4 requires Responsible Entities to define methods, processes, and procedures for

More information

Critical Infrastructure Protection Version 5

Critical Infrastructure Protection Version 5 Critical Infrastructure Protection Version 5 Tobias Whitney, Senior CIP Manager, Grid Assurance, NERC Compliance Committee Open Meeting August 9, 2017 Agenda Critical Infrastructure Protection (CIP) Standards

More information

Standard CIP Cyber Security Incident Reporting and Response Planning

Standard CIP Cyber Security Incident Reporting and Response Planning A. Introduction 1. Title: Cyber Security Incident Reporting and Response Planning 2. Number: CIP-008-4 3. Purpose: Standard CIP-008-4 ensures the identification, classification, response, and reporting

More information

A. Introduction. B. Requirements and Measures

A. Introduction. B. Requirements and Measures A. Introduction 1. Title: Communications 2. Number: COM-001-3 3. Purpose: To establish Communication capabilities necessary to maintain reliability. 4. Applicability: 4.1. Functional Entities: 4.1.1. Transmission

More information

CCC Compliance Guidance Task Force. Patti Metro, Manager, Transmission & Reliability Standards, NRECA Compliance Committee May 4, 2016

CCC Compliance Guidance Task Force. Patti Metro, Manager, Transmission & Reliability Standards, NRECA Compliance Committee May 4, 2016 CCC Compliance Guidance Task Force Patti Metro, Manager, Transmission & Reliability Standards, NRECA Compliance Committee May 4, 2016 Key CCC Compliance Guidance Task Force Deliverables Developed procedure

More information

Disclaimer Executive Summary Introduction Overall Application of Attachment Generation Transmission...

Disclaimer Executive Summary Introduction Overall Application of Attachment Generation Transmission... CIP-002-4 Cyber Security Critical Cyber Asset Identification Rationale and Implementation Reference Document September, 2010 Table of Contents TABLE OF CONTENts Disclaimer... 3 Executive Summary... 4 Introduction...

More information

Standard EOP Disturbance Reporting

Standard EOP Disturbance Reporting A. Introduction 1. Title: Disturbance Reporting 2. Number: EOP-004-1 3. Purpose: Disturbances or unusual occurrences that jeopardize the operation of the Bulk Electric System, or result in system equipment

More information

Cyber Security Incident Report

Cyber Security Incident Report Cyber Security Incident Report Technical Rationale and Justification for Reliability Standard CIP-008-6 January 2019 NERC Report Title Report Date I Table of Contents Preface... iii Introduction... 1 New

More information

Standard CIP Cyber Security Systems Security Management

Standard CIP Cyber Security Systems Security Management A. Introduction 1. Title: Cyber Security Systems Security Management 2. Number: CIP-007-4 3. Purpose: Standard CIP-007-4 requires Responsible Entities to define methods, processes, and procedures for securing

More information

Standard CIP Cyber Security Security Management Controls

Standard CIP Cyber Security Security Management Controls A. Introduction 1. Title: Cyber Security Security Management Controls 2. Number: CIP-003-4 3. Purpose: Standard CIP-003-4 requires that Responsible Entities have minimum security management controls in

More information

NERC Management Response to the Questions of the NERC Board of Trustees on Reliability Standard COM September 6, 2013

NERC Management Response to the Questions of the NERC Board of Trustees on Reliability Standard COM September 6, 2013 NERC Management Response to the Questions of the NERC Board of Trustees on Reliability Standard COM-003-1 September 6, 2013 At the August 14-15, 2013 meeting of the Board of Trustees ( Board ) of the North

More information

Comments by the Northeast Power Coordinating Council FERC Reactive Power Technical Conference

Comments by the Northeast Power Coordinating Council FERC Reactive Power Technical Conference Introduction The Northeast Power Coordinating Council 1 (NPCC) is an international electric regional reliability council formed shortly after the 1965 Northeast Blackout to promote the reliability and

More information

Reliability Standard Audit Worksheet 1

Reliability Standard Audit Worksheet 1 Reliability Standard Audit Worksheet 1 FAC-003-4 Transmission Vegetation Management. Registered Entity Name: Applicable Function(s): Applicable only for TO and GO Compliance Monitoring Method: RSAW Version:

More information

Compliance Exception and Self-Logging Report Q4 2014

Compliance Exception and Self-Logging Report Q4 2014 Agenda Item 5 Board of Trustees Compliance Committee Open Session February 11, 2015 Compliance Exception and Self-Logging Report Q4 2014 Action Information Introduction Beginning in November 2013, NERC

More information

Peter J. Buerling Director, Records & Information Compliance. ReliabilityFirst Workshop April 15, 2016

Peter J. Buerling Director, Records & Information Compliance. ReliabilityFirst Workshop April 15, 2016 Peter J. Buerling Director, Records & Information Compliance April 15, 2016 Opening Comments Presentation Topic Disclaimer Presentation Support Introductions Mark Koziel Consultant, CIP Compliance Don

More information

WECC Criterion MOD-(11 and 13)-WECC-CRT-1.1

WECC Criterion MOD-(11 and 13)-WECC-CRT-1.1 WECC Criterion MOD-(11 and 13)-WECC-CRT-1.1 A. Introduction 1. Title: Steady State and Dynamic Data Requirements 2. Number: MOD-(11 and 13)-WECC-CRT-1.1 3. Purpose: To establish the consistent data requirements

More information

CIP Cyber Security Recovery Plans for BES Cyber Systems

CIP Cyber Security Recovery Plans for BES Cyber Systems Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Development Steps Completed

More information

Standard CIP 004 3a Cyber Security Personnel and Training

Standard CIP 004 3a Cyber Security Personnel and Training A. Introduction 1. Title: Cyber Security Personnel & Training 2. Number: CIP-004-3a 3. Purpose: Standard CIP-004-3 requires that personnel having authorized cyber or authorized unescorted physical access

More information

Violation Risk Factor and Violation Severity Level Justifications Project Modifications to CIP Standards

Violation Risk Factor and Violation Severity Level Justifications Project Modifications to CIP Standards Violation Risk Factor and Violation Severity Level Justifications Project 2016-02 Modifications to CIP Standards This document provides the standard drafting team s (SDT s) justification for assignment

More information

Cyber Security Reliability Standards CIP V5 Transition Guidance:

Cyber Security Reliability Standards CIP V5 Transition Guidance: Cyber Security Reliability Standards CIP V5 Transition Guidance: ERO Compliance and Enforcement Activities during the Transition to the CIP Version 5 Reliability Standards To: Regional Entities and Responsible

More information

GridEx IV Initial Lessons Learned and Resilience Initiatives

GridEx IV Initial Lessons Learned and Resilience Initiatives GridEx IV Initial Lessons Learned and Resilience Initiatives LeRoy T. Bunyon, MBA, CBCP Sr. Lead Analyst, Business Continuity 2017 GridEx IV GridEx is a NERC-sponsored, North American grid resilience exercise

More information

Standard Development Timeline

Standard Development Timeline Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard is adopted by the NERC Board of Trustees (Board).

More information

Registered Entity Self-Report and Mitigation Plan User Guide

Registered Entity Self-Report and Mitigation Plan User Guide Registered Entity Self-Report and Mitigation Plan User Guide June 2018 NERC Report Title Report Date I Table of Contents Preface...1 Disclaimer...2 Document Revisions...3 Introduction...4 Chapter 1: Description

More information

NERC Staff Organization Chart Budget

NERC Staff Organization Chart Budget NERC Staff Organization Chart 2013 2014 President and CEO (Dept. 2100) Executive Assistant (Dept. 2100) Senior Vice President and Chief Operating Officer (Dept. 2100) Senior Vice President General Counsel

More information

Procedure For NPCC Bulk Electric System Asset Database

Procedure For NPCC Bulk Electric System Asset Database Procedure For NPCC Bulk Electric System Asset Database Compliance Procedure 09 (CP-09) Revision 2 Table of Contents 1. Introduction and Purpose... 3 2. Responsibilities... 3 3. Overview... 3 4. Asset Database...

More information

CIP Cyber Security Configuration Change Management and Vulnerability Assessments

CIP Cyber Security Configuration Change Management and Vulnerability Assessments Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Development Steps Completed

More information

Standard CIP 005 4a Cyber Security Electronic Security Perimeter(s)

Standard CIP 005 4a Cyber Security Electronic Security Perimeter(s) A. Introduction 1. Title: Cyber Security Electronic Security Perimeter(s) 2. Number: CIP-005-4a 3. Purpose: Standard CIP-005-4a requires the identification and protection of the Electronic Security Perimeter(s)

More information

Texas Reliability Entity, Inc. Strategic Plan for 2017 TEXAS RE STRATEGIC PLAN FOR 2017 PAGE 1 OF 13

Texas Reliability Entity, Inc. Strategic Plan for 2017 TEXAS RE STRATEGIC PLAN FOR 2017 PAGE 1 OF 13 Texas Reliability Entity, Inc. Strategic Plan for 2017 TEXAS RE STRATEGIC PLAN FOR 2017 PAGE 1 OF 13 I. Vision A highly reliable and secure bulk power system in the Electric Reliability Council of Texas

More information

Internal Controls Evaluation (ICE) Tony Eddleman, P.E. NERC Compliance Manager Nebraska Public Power District

Internal Controls Evaluation (ICE) Tony Eddleman, P.E. NERC Compliance Manager Nebraska Public Power District Internal Controls Evaluation (ICE) Tony Eddleman, P.E. NERC Compliance Manager Nebraska Public Power District 2 Topics NPPD Overview Reliability Controls NPPD Internal Control Evaluation (ICE) Sample Controls

More information

Standard Development Timeline

Standard Development Timeline CIP-002-6 Cyber Security BES Cyber System Categorization Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the

More information

October 2, CIP-014 Report Physical Security Protection for High Impact Control Centers Docket No. RM15-14-

October 2, CIP-014 Report Physical Security Protection for High Impact Control Centers Docket No. RM15-14- October 2, 2017 Ms. Kimberly D. Bose Secretary Federal Energy Regulatory Commission 888 First Street, NE Washington, D.C. 20426 Re: CIP-014 Report Physical Security Protection for High Impact Control Centers

More information

Project Retirement of Reliability Standard Requirements

Project Retirement of Reliability Standard Requirements Project 2013-02 Retirement of Reliability Standard Requirements Unofficial Comment Form for Paragraph 81 (P81) Project Retirement of Reliability Standard Requirements This form is provided in a Word format

More information

EEI Fall 2008 Legal Conference Boston, Massachusetts Stephen M. Spina November 1,

EEI Fall 2008 Legal Conference Boston, Massachusetts Stephen M. Spina November 1, EEI Fall 2008 Legal Conference Boston, Massachusetts Stephen M. Spina November 1, 2008 www.morganlewis.com Overview Reliability Standards Enforcement Framework Critical Infrastructure Protection (CIP)

More information

ERO Enterprise IT Projects Update

ERO Enterprise IT Projects Update ERO Enterprise IT Projects Update Stan Hoptroff, Vice President, Chief Technology Officer and Director of Information Technology Technology and Security Committee Meeting November 6, 2018 Agenda ERO IT

More information

CIP Cyber Security Critical Cyber Asset Identification. Rationale and Implementation Reference Document

CIP Cyber Security Critical Cyber Asset Identification. Rationale and Implementation Reference Document CIP-002-4 Cyber Security Critical Cyber Asset Identification Rationale and Implementation Reference Document NERC Cyber Security Standards Drafting Team for Order 706 December 2010 This document provides

More information

This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective.

This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Development Steps Completed

More information

Cyber Security Standards Drafting Team Update

Cyber Security Standards Drafting Team Update Cyber Security Standards Drafting Team Update Michael Assante, VP & Chief Security Officer North American Electric Reliability Corp. February 3, 2008 Overview About NERC Project Background Proposed Modifications

More information

Reliability Standard Audit Worksheet 1

Reliability Standard Audit Worksheet 1 Reliability Standard Audit Worksheet 1 CIP-002-5.1 Cyber Security BES Cyber System Categorization This section to be completed by the Compliance Enforcement Authority. Audit ID: Registered Entity: NCR

More information

Standard Development Timeline

Standard Development Timeline CIP-008-6 Incident Reporting and Response Planning Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard

More information

Proposed Convention for Numbering of NERC Reliability Standards Draft September 9, 2004

Proposed Convention for Numbering of NERC Reliability Standards Draft September 9, 2004 Proposed Convention for ing of NERC Reliability s Draft September 9, 2004 Introduction The Version 0 Drafting Team proposes to initiate a new convention for numbering NERC reliability standards concurrent

More information

Project Cyber Security - Order No. 791 Identify, Assess, and Correct; Low Impact; Transient Devices; and Communication Networks Directives

Project Cyber Security - Order No. 791 Identify, Assess, and Correct; Low Impact; Transient Devices; and Communication Networks Directives Project 2014-02 - Cyber Security - Order No. 791 Identify, Assess, and Correct; Low Impact; Transient Devices; and Communication Networks Directives Violation Risk Factor and Justifications The tables

More information

Physical Security Reliability Standard Implementation

Physical Security Reliability Standard Implementation Physical Security Reliability Standard Implementation Attachment 4b Action Information Background On March 7, 2014, the Commission issued an order directing NERC to submit for approval, within 90 days,

More information

This draft standard is being posted for an initial comment and ballot. The draft includes modifications to meet the directives of FERC Order No. 791.

This draft standard is being posted for an initial comment and ballot. The draft includes modifications to meet the directives of FERC Order No. 791. Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Development Steps Completed

More information

CIP Cyber Security Systems Security Management

CIP Cyber Security Systems Security Management A. Introduction 1. Title: Cyber Security System Security Management 2. Number: CIP-007-5 3. Purpose: To manage system security by specifying select technical, operational, and procedural requirements in

More information

Lee County Electric Cooperative, Inc.

Lee County Electric Cooperative, Inc. Lee County Electric Cooperative, Inc. BUILDING A Compliance Program Background A Not-For-Profit Florida Corporation Providing electric service in Southwest Florida since 1940 Five Counties (Lee, Collier,

More information

Standards Development Update

Standards Development Update Standards Development Update Steven Noess, Director of Standards Development FRCC Reliability Performance Industry Outreach Workshop September 20, 2017 Supply Chain Risk Management 1 Cyber Security Supply

More information

This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective.

This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Standard Development Timeline This section is maintained by the drafting team during the development of the standard and will be removed when the standard becomes effective. Development Steps Completed

More information

NERC Notice of Penalty regarding Upper Peninsula Power Company, FERC Docket No. NP09-_-000

NERC Notice of Penalty regarding Upper Peninsula Power Company, FERC Docket No. NP09-_-000 May 7, 2009 Ms. Kimberly Bose Secretary Federal Energy Regulatory Commission 888 First Street, N.E. Washington, D.C. 20426 Re: NERC Notice of Penalty regarding, FERC Docket No. NP09-_-000 Dear Ms. Bose:

More information

Cyber Attacks on Energy Infrastructure Continue

Cyber Attacks on Energy Infrastructure Continue NERC Cybersecurity Compliance Stephen M. Spina February 26, 2013 www.morganlewis.com Cyber Attacks on Energy Infrastructure Continue According to DHS, the energy sector was the focus of 40% of the reported

More information

Reliability Standards Development Plan

Reliability Standards Development Plan Reliability Standards Development Plan 2012-2014 October 13, 2011 For SC Approval 3353 Peachtree Road NE Suite 600, North Tower Atlanta, GA 30326 404-446-2560 www.nerc.com Table of Contents Table of Contents...ii

More information

Member Representatives Committee Meeting

Member Representatives Committee Meeting Member Representatives Committee Meeting August 13, 2014 1:15 p.m. 5:15 p.m. Pacific The Westin Bayshore, Vancouver 1601 Bayshore Drive Vancouver, BC V6G 2V4 Canada Opening Remarks by MRC Chair Consent

More information

Critical Infrastructure Protection Committee Strategic Plan

Critical Infrastructure Protection Committee Strategic Plan Critical Infrastructure Protection Committee Strategic Plan 2015-2018 CIPC Executive Committee Updated: December 13, 2016 NERC Report Title Report Date I Table of Contents Preface... iv Executive Summary...

More information