The architecture program aims to develop and share knowledge with security architects and others responsible for technical security measures. It covers the design of secure systems and setting security requirements for procuring secure components.
We will work on secure connections from OT systems to the outside, and virtualization and containerization in substations and other field locations. We will also participate in the drafting of harmonized standards for the Cyber Resilience Act (CRA).
Securing connections from OT to the outside
Protecting the boundary between IT and OT, has always been the key strategy to protecting OT systems.
But the connections from OT to outside systems are increasing. For instance, we see:
- more connections to IT systems to get configuration data and software.
- connections to the SOC for collecting logs.
- connections to cloud systems used for market facilitation or collaboration between grid operators.
- connections to external DER operators for balancing and congestion management.
The question is how to effectively secure all these connections, without hindering the deployment of new systems needed for the transition to renewable energy.
In this activity, we will, together with experts from the members, analyze the possible use cases of connecting OT to external systems, the possible risks of these use cases, and the best practice architecture for them. We will, in particular, look at connections to external parties for flexibility and congestions management, and at the use of data diodes.
Virtualization and containerization in the field
Participation in CRA standardization
- Hardware Devices with Security Boxes
- Smart meter gateways and other devices for advanced security purposes
Become an ENCS member
Are you interested in our cyber security programs? As an ENCS member, you can contribute to and learn from all our programs. Click below to learn more about our memberships.