Government Technology

    Digital Communities
    Industry Members

  • Click sponsor logos for whitepapers, case studies, and best practices.
  • AT&T Logo
  • McAfee
  • Net App

Smart Grid Security: No Hype Allowed



August 17, 2010 By

This article -- courtesy of Muniwireless -- is an edited conversation with Mike Ahmadi, cyber security consultant and conference chairman of the two-day Cyber Security Conference and Expo that took place last week in San Jose, Calif. Ahmadi offered his insight and reflected on panelists' presentations regarding where we are and where we need to be in smart-grid security.

Security Costs vs. Economic Impact

Ahmadi:  Security is a very dynamic environment, and keeping current with what is going on in the world of security is no small task. First of all, despite what anyone may tell you, security is about economics. Ultimately the biggest driver for any organization to secure anything is to prevent getting hit in the pocketbook.

Karisny:  Scott Borg, director and chief economist, U.S. Cyber Consequences Unit addressed calculating the value of smart-grid security compared to the expense of a power-grid security breach. What points did you find most important?

The most striking point? The economic models he and his associates created showed that 3-4 days without power is essentially inconsequential from an economic standpoint.  Any organization can recover from this relatively short plunge into the "Dark Ages." As you approach the fifth day, however, things change quickly. There is a precipitous drop in economic activity, and by the seventh day the economy is at 30 percent capacity. This was quite startling to many in the crowd, and emphasized the importance of not underestimating the consequences of a prolonged failure in the grid. 

I would strongly suggest those who are interested in a comprehensive look at how the Smart Grid will shape the security market to purchase Pike Research's excellent report. According to their research, there will be opportunities for security component manufacturers, security software vendors, identity and authentication management solutions, and consulting services (just to name a few).

Media Scare Stories

The media has bombarded the public with articles warning of cyber-security threats.  How would you assess hype from reality, and what points did your best practices panel make for threat scenarios we should really expect in the next few years?

The news media is indeed driven by sensationalist and entertaining stories, and this can, at times, lead to those who a story targets being a bit upset, which can create a cascading effect.  Elinor Mills of CNET stated that when she hears information about AMI security flaws, she tries to get information from the vendors, but they either do not respond at all or deliver somewhat canned responses.  Robert Former of Itron stated that his employers have instructed him to not share information without prior approval from his organization in order to avoid bad press.  What was suggested (and well received) was for vendors and other stakeholders to build a relationship with members of the media in order for them to better understand each other, and that this would perhaps lead to less sensationalism.  Hopefully this will pan out, but only time will tell.

Matt Carpenter of Inguardians asserted that the biggest threat will probably come from organized crime syndicates who will use the threat of exploits as a means of extortion. While the panelists acknowledged that random hackers may cause some trouble, they will probably not be as troublesome as some have postulated.

I find it interesting that the conference ended focusing on the concern of potential of bad press or worse press sensationalism.  With the importance of moving forward in addressing real smart grid cyber security issues, we need to get beyond government and business political properness and start addressing the real task at hand: 


| More

Comments


Add Your Comment

You are solely responsible for the content of your comments. We reserve the right to remove comments that are considered profane, vulgar, obscene, factually inaccurate, off-topic, or considered a personal attack.

In Our Library

White Papers | Exclusives Reports | Webinar Archives | Best Practices and Case Studies
Identity and Access Management Considerations
Gain insight into enterprise identity and access management (IAM) trends and a unified approach that can simplify identity and access management before, during, and after your organization implements cloud-based services.
Using Wireless Technology to Manage and Optimize Government Fleets: Saving Money, Generating Revenues, and Increasing Safety
Using Wireless Technology to Manage and Optimize Government Fleets: Saving Money, Generating Revenues, and Increasing Safety. The paper discusses the challenges federal, state and local government agencies currently face with their government fleets; how mobile technology can help; considerations when selecting a mobile solutions partner; and the benefits of choosing Sprint. Specifically, Frost & Sullivan highlights Sprint’s fleet expertise, its powerful networks, and advanced partnerships that work in concert to provide government fleets with the ability to: Save money, Generate new revenues, Enhance safety, Help the environment, Increase the availability and transparency of information to the public
The New Reality of Stealth Crimeware White Paper
Take the stealth, creativity, and patience of Stuxnet. Add the commercialism, wide distribution, and easy-to-use tool kits of Zeus. Consider that despite more than years of activity, as of May 2011, neither of these cyber criminal teams has been exposed. You now understand the recipe—and potency—of today’s malware. Start planning now. It will take more than signatures and operating system-level protections to protect your intellectual property and other assets against criminals wielding these weapons.
View All

RSS

Digital Communities members get access to our collaboration task forces

427 Members

77 Discussions

84 Files

Latest members Become a member

Digital Communities members get access to our collaboration task forces

669 Members

145 Discussions

150 Files

Latest members Become a member

 


Featured White Papers & Reports

CIOs Redefine Local Government and Industry Relations

Based off of discussions of the Digital Communities Large Jurisdiction Chief Information Officer (CIO) Working Group, this white paper aims to answer the question, "In today's economic, political and business environment, what constitutes a successful relationship between government and industry?" Cause for Optimism identifies and clarifies the issues that separate government and industry, and begins to find an answer to the question necessary for both to enjoy a successful and prosperous future.


View Full Library

Events

GTC East

Don't miss this opportunity to see the latest in digital government solutions, keep abreast of current policy issues and network with key government executives, technologists and industry specialists.

View All Events