Smart Metering industry approach for aligning standardization requirements and national security demands

Similar documents
Name of presenter Title. Date

ESMIG WE MAKE METERING SMART

SG-CG/SGIS SG-CG/SGIS. ETSI Cyber Security Workshop Sophia Antipolis, France, January the 16th, 2013 Jean-Pierre Mennella, Alstom Grid

Status of activities Joint Working Group on standards for Smart Grids in Europe

New ETSI-CEN-CENELEC approach for rapid SG deployments. Jean-Pierre Mennella CIM User Group, Oslo 18 June, 2014

First Set of Standards for the grid. ISGF Webinar : 11th July 2013 Dinesh Chand Sharma Director Standardization, Policy and Regulation

European Technology Platform for the Electricity Networks of the Future ETP SmartGrids

EU policy and the way forward for smart meters and smart grids

The German IT Security Certification Scheme. Joachim Weber

Panel Session: Experiences from Installations and Pilots. Communication Technologies for Smart Grid

Digital Platforms for 'Interoperable and smart homes and grids'

Regulatory challenges for the deployment of smart grids

Policy drivers and regulatory framework to roll out the Smart Grid deployment. Dr. Manuel Sánchez European Commission, DG ENERGY

CEN and CENELEC Position Paper on the draft regulation ''Cybersecurity Act''

Progress Report National Information Assurance Partnership

Kick-off Meeting DPIA Test phase

EUROPEAN ORGANISATION FOR SECURITY SUPPLY CHAIN SECURITY WHITE PAPER

Third public workshop of the Amsterdam Group and CODECS C-ITS Deployment in Europe: Common Security and Certificate Policy

ENISA S WORK ON ICS AND SMART GRID SECURITY

United4Health session Regulatory Framework Trends & Updates. Nicole Denjoy COCIR Secretary General Wed. 7 May 2014, Berlin (Germany)

EUROPEAN TECHNOLOGY AND INNOVATION PLATFORM SMART NETWORKS FOR ENERGY TRANSITION

EU Technology Platform SmartGrids WG2 Network Operations

DIGITIZING INDUSTRY, ICT STANDARDS TO

The Africa-EU Energy Partnership (AEEP) The Role of Civil Society and the Private Sector. 12 February, Brussels. Hein Winnubst

WG1: RELIABLE, ECONOMIC AND EFFICIENT SMART GRID SYSTEM

ERCI cybersecurity seminar Guildford ERCI cybersecurity seminar Guildford

Smart Gas Grids. Manuel Sánchez, Ph.D. Team Leader Smart Grids Directorate General for Energy European Commission

Cooperative Mobility and the importance of harmonised international standards

Work Package 2.4. (Public) Procurement Expert Group on the security and resilience of communication networks and information systems for Smart Grids

European Cybersecurity PPP European Cyber Security Organisation - ECSO November 2016

This document is a preview generated by EVS

4th India EU Smart Grid Workshop. New Delhi European benchmarking on Smart Metering rollout European benchmarking on the roll out of smart metering

HEALTH IN ECSO (European Cyber Security Organisation) 18 October 2017

Update on Smart Grid Deployment in the EU. Dr.-Ing. Manuel Sánchez Jiménez Team Leader Smart Grids Directorate General for Energy European Commission

IPv6 Task Force - Phase II. Welcome

European Transport Policy: ITS in action ITS Action Plan Directive 2010/40/EU

STANDARDIZATION WORK ON SMART GRIDS BY ESO S Laurent Guise, Chairman of the CEN-CLC-ETSI Smart Energy Grid Coordination Group Dinesh Chand Sharma,

Security and resilience in Information Society: the European approach

Deployment is underway!

Cyber Security in Europe

Challenges and framework for Smart Grids deployment

Smart Grid Projects UK Policy and Experience

New CEPIS Mission

How can the Future Internet

Digital Platforms for 'Interoperable and Smart Homes and Grids' DT-ICT Introduction IoT Week Bilbao 05 June 2018

Securing Europe's Information Society

Smart Grid Task Force

cybersecurity in Europe Rossella Mattioli Secure Infrastructures and Services

EU energy policy and the role of smart grids Mark van Stiphout DG Energy

Lecture 14. Course wrap up & Smartgrid Architectures. Professor Lars Nordström Dept of Industrial Information & Control systems, KTH

Cloud Computing. Rainer Zimmermann

Beyond Status and plans

Standardization in the area of Cooperative systems in the MENA region

The emerging EU certification framework: A role for ENISA Dr. Andreas Mitrakas Head of Unit EU Certification Framework Conference Brussels 01/03/18

Smart Metering and Smart Grids: the Enel

Roll-out of Smart Metering the key for success

CGM and Energy Data Architecture a TSO Perspective

European Cybersecurity cppp and ECSO. org.eu

The role of interoperability in the digital energy vision

Third public workshop of the Amsterdam Group and CODECS European Framework for C-ITS Deployment

SAREF ONTOLOGY & ROADMAP

European Commission SGTF Expert Group Findings on Interoperability

H2020 & THE FRENCH SECURITY RESEARCH

EU Cloud Computing Policy. Luis C. Busquets Pérez 26 September 2017

T&D EUROPE. The European Association for Transmission and Distribution Equipment and Services Industry. FEDET, 9 November 2016

WORLD TELECOMMUNICATION STANDARDIZATION ASSEMBLY Hammamet, 25 October 3 November 2016

Drivers and regulatory framework to roll out the Smart Grid deployment in Europe

Package of initiatives on Cybersecurity

CEF e-invoicing. Presentation to the European Multi- Stakeholder Forum on e-invoicing. DIGIT Directorate-General for Informatics.

GREEN DEFENCE FRAMEWORK

EU policy on Network and Information Security & Critical Information Infrastructures Protection

ETSI Workshop ICT Energy Efficiency and Environmental Sustainability Latest projects and upcoming developments. Chiara Venturini Director, GeSI

EUROPEAN PLATFORMS AND INITIATIVES FOR C-ITS DEPLOYMENT

U.S. Japan Internet Economy Industry Forum Joint Statement October 2013 Keidanren The American Chamber of Commerce in Japan

Regional and subregional approaches to the Digital Economy: Lessons from Asia-Pacific and Latin America

VdTÜV Statement on the Communication from the EU Commission A Digital Single Market Strategy for Europe

13543/17 PhL/at 1 DG G 3 B

Agenda. 1. The LoU between EC-CEF and OpenPEPPOL about transition and migration to AS4 - Niels

cybersecurity in Europe Rossella Mattioli Secure Infrastructures and Services

Policy and regulatory framework: what are the next challenges to tackle?

SMART METERING EQUIPMENT READINESS UPDATE JUNE Dr Howard Porter Chief Executive Officer, BEAMA

Panel Session #1 Standards for Smart Grids

Information Technology (CCHIT): Report on Activities and Progress

Who we are T&D Europe aims at promoting the common technical, industrial, economic and environmental point of view of

NIST Smart Grid Interoperability Framework

European Cybersecurity PPP European Cyber Security Organisation - ECSO

Coordination Meeting of Standardisation Activities for assessing the Environmental Impact of ICT

NIS Standardisation ENISA view

DG CONNECT (Unit H5) Update on Data Centre Activities

Proposition to participate in the International non-for-profit Industry Association: Energy Efficient Buildings

National Information Assurance Partnership (NIAP) 2017 Report. PPs Completed in CY2017

Standards for Smart Grids

Workshop on Smart Sustainable Cities Samarkand, Uzbekistan, 1-2 June 2017 ITU-T Focus Group on Data Processing and Management

European Activities towards Cooperative Mobility

FINAL DRAFT TECHNICAL REPORT CEN/CLC/ETSI/FprTR RAPPORT TECHNIQUE TECHNISCHER BERICHT July 2011

Standards to support digital transformation

The Future of Solid State Lighting in Europe

Holistic view on security as foundation for trust and innovation in new energy markets

European Union Agency for Network and Information Security

Horizontal / cross-sectoral standardization activities

Transcription:

Smart Metering industry approach for aligning standardization requirements and national security demands Thomas Weisshaupt Chair Privacy & Security group 24 October, Mandelieu

About ESMIG the members

The Challenge: Security initiatives across Europe Current national and EU-driven activities: BSI (DE) TFSG EG2 CESG/DECC (UK) ERNCIP NL Government/DSO M490 SGIS... M441 Reason for action: Fragmented multiple requirements / certification schemes different SPD/TOE??? Uncertainty slow adoption & investment security governance and liabilities Cost increase upfront cost rise per country delay in roll-outs National Interest variety of market designs integration if existing results

M441 and M490 M441 mandate Smart Metering SM-CG Interoperability, reference architecture, standards 1st report 2010, 2nd 2011, last 2012 M490 mandate Smart Grids SG-CG Interoperability, reference architecture, standards Sustainable standardisation process Privacy & Security (toolbox) 1st report 2010 (JWG), new drafts 2011, last 2012

The SMCG reference architecture Metering End Device ( E / G W H ) MID requirements Metrology Display Additional functions Simple external consumer di splay Home Automation End Device H ome automation functions Meter communication functions H1 H A communication functions G 1 C M WAN NN LN L H 2 H 3 Local Network Access Point ( LNAP ) C C N Neigbourhood Network Access Point ( NNAP ) G 1 G 2 AMI Head End System

Detailed SG-CG structure Mandate Scope Smart Grid Coordination Group (former JWG) EC Reference Group EC Level SG-CG Level M/441 M/468 coordination First Set of Standards Team New joint WGs Existing WGs Process Team New joint WGs Existing WGs Steering Committee Architecture Team New joint WGs Existing WGs Security Team New joint WGs Existing WGs Further Tasks TC Level Report 2.0 Liaisons Promotion NIST JISC China Etc.

Smart Grid Architecture Model Business Objectives Polit. / Regulat.. Framework Business Layer Function Layer Interoperability Dimension Information Layer Outline of Usecase Subfunctions Data Model Data Model Communication Layer Protocol Protocol Market Enterprise Component Layer Operation Generation Transmission Distribution Domains DER Customer Premise Process Field Station Zones

ESMIG Statement on privacy and security needs (work in progress) We intend to reach a multi-stakeholder, European wide approach for identifying (technological and economic) security and privacy risks coming with the deployment and operations of a smart metering system in order to be able to derive appropriate requirements and countermeasures based in smart meter/grid use cases This contributes to ensure interoperability and a commonly implemented certification scheme for Products and Systems in Smart metering as initial Smart Grid deployments A harmonized approach also facilitates lifting economies of scale and shall support any potential market models and facilitates notification of legislation on EU-Level

ESMIG facilitation approach SGIS Toolbox ---------- MS Risk Assesments Goal of the initiative 1. AMI Use Cases (ESMIG development) 2. Information, Assets, Actors, Interests, steps (Standards, M441) 3. Mapping of Risks with Domains and Zones per use case step (ongoing activity of SGIS and ESMIG) 4. Determine Risk impact levels/likelihoods 5. Derive appropriate set of privacy and security requirements for system components and crosscheck with national security problem definition/security requirements 6. Roadmap to European certifcation scheme/needs for all components of a smart metering system 7. Pilot the certifcation approach in selected member states 8. Mutual recognition within EU and beyond

New Common Criteria Mission statement* 1. The general security level of general ICT COTS certified products needs to be raised without severely impacting price and timely availability of these products. 2. To support that goal, the level of standardization has to be increased by building Technical Communities (TC) developing collaborative Protection Profiles ( cpps ) and supporting documents, in order to reach reasonable, comparable, reproducible and cost-effective evaluation results. 3. Mutual recognition should be based on the achievable common level of the cpps. 4. TCs should be defined and cpps should be developed for all product classes where multiple manufacturers provide individual STs for similar products. 5. Whenever applicable, cpps should be applied instead of individual STs. The application of STs should be reserved for cases where cpps do not exist or are not applicable and CCRA mutual recognition should be limited to EAL 2. 6. The CC will be maintained as the toolbox used by the TCs to develop the cpps. * Excerpt published Sept 20 2012

CC/CCRA STATEMENT OF WORK (TOE) COLLABORATIVE PROTECTION PROFILE Common Criteria Organisation New Vision statement opens door ESMIG proposes to facilitate the foundation of a steady working group (TC) to define the statement of work with the goal to facilitate certification pilot in national certification schemes Evaluators Certification Bodies Targeted Industry Technichal Community (TC) Input CC as toolbox Security Industry Offer National Governments DECC UK MEAAI NL BMI DE.....

CC/CCRA STATEMENT OF WORK (TOE) COLLABORATIVE PROTECTION PROFILE Common Criteria Organisation New Vision statement opens door ESMIG project proposal: Alignment to create a TC with support of min 1 Certification Body and as many stakeholders as possible 4 1 Evaluators Certification body Industry 1 Technichal Community (TC) Input CC as toolbox Security Industry 2 Offer National Governments DECC UK MEAAI NL 3 3

Next steps Perform exercise with Network Operators on grid operation Use Cases (3,4 July) Discuss SGIS approach for SM-CG Smart Metering Use Cases and certification(11 October) Improve the SGIS toolbox based on results from workshops Define a European reference set of P&S Requirements for Smart Metering (Q1 2013) Define certification approach (Q1 2013) Perform certification pilots (Q3+Q4 2013)

Thank you for your attention For more information Willem Strabbing, Managing Director Howard Porter, International Alliances Director Zoi Mylona, Marketing and Operations Officer Nicolle Raven, Policy Officer European Smart Metering Industry Group Boulevard A. Reyers 80, B-1030 Brussels, Belgium DDI: +32 2 706 8271 Email: secretariat@esmig.eu www.esmig.eu