vmware

Notice

NERC CIP

Achieving NERC CIP Compliance with Managed Security Services

The North American Electric Reliability Corporation (NERC) is a nonprofit corporation designed to “ensure that the bulk electric system in North America is reliable, adequate and secure.” As the federally designated Electric Reliability Organization (ERO) in North America, NERC maintains comprehensive reliability standards that define requirements for planning and operating the collective bulk power system. Among these are the Critical Infrastructure Protection (CIP) Cyber Security Standards, which are intended to ensure the protection of the Critical Cyber Assets that control or effect the reliability of North America’s bulk electric systems.

In 2006, the Federal Energy Regulatory Commission (FERC) approved the Security and Reliability Standards proposed by NERC, making the CIP Cyber Security Standards mandatory and enforceable across all users, owners and operators of the bulk-power system. After going into effect in June 2006, initial compliance auditing began in June 2007.

Global DataGuard has extensive experience in helping organizations improve their overall security and compliance posture while reducing costs. As described below, many of our Managed Security Services and Professional Services align directly with the NERC CIP Cyber Security Standards, allowing you to easily meet and exceed the requirements they set forth.

NERC CIP Cyber Security Standards

CIP-002-1 Critical Cyber Asset Identification

Summary of Requirements:
All network assets must be audited to identify Critical Cyber Assets. A risk-based assessment methodology should be utilized with annual reviews.

Solutions:
These requirements mandate the need to identify your Critical Cyber Assets through risk-based assessments of your network. Using a risk-based methodology aligned with CIP requirements, Global DataGuard's Professional Services team can help you regularly audit your IT systems and identify Critical Cyber Assets (CIP-002-1 R3).

How does Global DataGuard Help?
Professional Services

CIP-003-1 Security Management Controls
CIP-004-1 Personnel and Training
CIP-005-1 Electronic Security Protection
CIP-006-1 Physical Security Program
CIP-007-1 Systems Security Management
CIP-008-1 Incident Response and Reporting
CIP-009-1 Disaster Recovery


Contact us for more information on NERC CIP Compliance.

Additional information