Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Power/Utility Industry Standards/Groups #152

Open
ftuffner opened this issue Dec 20, 2023 · 0 comments
Open

Power/Utility Industry Standards/Groups #152

ftuffner opened this issue Dec 20, 2023 · 0 comments
Assignees
Labels
documentation Improvements or additions to documentation

Comments

@ftuffner
Copy link

Reached out to some cybersecurity experts asking if there were any Standards or Groups that deal with "software trust", namely to see if there was any template or framework that could make utility adoption easier. No solid answer came out, but some potential points:

  • NERC CIP was mentioned, but really only for documenting and justifying network access. Nothing specific on a software process
  • IEEE PES Power System Communication and Cybersecurity Committee is working on a standard for documenting configurations, but not best practices or the overall software.
  • Possible NIST or CISA ties as a Software Bill of Materials, but I couldn't find any solid references there.
  • IEC 62443 may have something, but it is hidden in 700+ pages of other stuff
  • ISO 26514 has some "Systems and Software" development standards that may be applicable.
  • ISO/IEC 5230:2020 is apparently a standard to "provide a benchmark that builds trust between organizations exchanging software solutions comprised of open source software"

The two ISO/IEC standards might have some -- I haven't had a chance to dig into them further.

@ftuffner ftuffner self-assigned this Dec 20, 2023
@ftuffner ftuffner added the documentation Improvements or additions to documentation label Dec 20, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
documentation Improvements or additions to documentation
Projects
Status: Issues
Development

No branches or pull requests

1 participant