Management of information security for an electric power utility -: On security domains and use of ISO/IEC17799 standard

被引:29
作者
Ericsson, GN [1 ]
Torkilseng, Å
机构
[1] Svenska Kraftnat, Swedish Natl Grid, S-16215 Vallingby, Sweden
[2] Salten Kraftsamband AS, N-8205 Fauske, Norway
关键词
communication systems; control systems; information security; IT security; power system communication; power system control; power systems; security domains; ISO/IEC17799; standard;
D O I
10.1109/TPWRD.2005.844318
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
The issue of information security has become a major concern for the electric power utilities. An increasing amount of money is being spent on the handling of information security. But the issue is delicate. Even though a utility may spend a fortune, it cannot be sure that it is doing the right thing at the right level of expenditures. Therefore, increasing efforts are being put into raising the awareness of information security. Here, the work in Cigre Joint Working Group D2/B3/C2-01 "Security for Information Systems and Intranets in Electric Power Systems" is presented. The paper focuses on: stressing the importance of handling information security within an electric utility, the dealing with various threats and vulnerabilities, the evolution of Power Utility Information Systems from isolated to fully integrated systems, the concept of using security domains for dealing with information security within an electric utility, and the use of the ISO/IEC 17799 standard.
引用
收藏
页码:683 / 690
页数:8
相关论文
共 12 条
[1]  
[Anonymous], 15408 ISOIEC
[2]  
*BS, 1999, 7799 BS
[3]  
*BS, 779922002 BS
[4]  
ERICSSON G, 2004, MANAGING INFORMATION
[5]  
*IEC TC, 65C IEC TC
[6]  
*ISA, SP99 ISA
[7]  
*ISA, ISATR9900022004
[8]  
*ISA, ISATR9900012004
[9]  
*ISO IEC, 10181 ISOIEC
[10]  
*ISO IEC, 17799 ISO IEC